Vulnerability index

Browse CVEs

3,540 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Stack-based Buffer OverflowCWE-121 × clear
HIGH 7.5 CVE-2026-71265 Domoticz's MochadTCP::MatchLine handler for MOCHAD_RFSEC messages (hardware/MochadTCP.cpp) copies network-received data from the up-to-1028-byte m_mo… No fix yet Fix from $1,9502026-08-05 HIGH 7.8 CVE-2026-71266 tinyobjloader-c's tinyobj_parse_and_index_mtl_file (tinyobj_loader_c.h) reads each line of a .mtl material file into a fixed 4096-byte stack buffer v… No fix yet Fix from $1,9502026-08-05 CRITICAL 9.8 CVE-2026-71267 microtar's mtar_write_file_header and mtar_write_dir_header functions (src/microtar.c) copy a caller-supplied entry name into the 100-byte field of a… No fix yet Fix from $2,3002026-08-05 CRITICAL 9.8 CVE-2026-61486 ** UNSUPPORTED WHEN ASSIGNED ** Stack-based Buffer Overflow vulnerability in Apache Lucy. This issue affects Apache Lucy: all versions. As this pro… Lucy No fix yet Fix from $2,3002026-08-05 HIGH 8.8 CVE-2026-18898 A security flaw has been discovered in UTT HiPER 1200GW up to v2.5.3-170306. This affects the function strcpy of the file /goform/ConfigAdvideo. The … No fix yet Fix from $1,9502026-08-05 HIGH 8.8 CVE-2026-18895 A vulnerability was found in UTT HiPER 1250GW up to 3.2.7-210907-180535. Impacted is the function strcpy of the file /goform/APSecurity_5g. Performin… No fix yet Fix from $1,9502026-08-05 HIGH 8.8 CVE-2026-18897 A vulnerability was identified in UTT HiPER 1250GW up to v3.2.7-210907-180535. The impacted element is the function strcpy of the file /goform/getOne… No fix yet Fix from $1,9502026-08-05 HIGH 8.7 CVE-2026-45809 OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Versions prior to 3.6.6 and 4.0.0-rc1 contain a denial of service vulnerabilit… No fix yet Fix from $1,9502026-08-05 CRITICAL 9.8 CVE-2026-45538 OpenSIPS is a Session Initiation Protocol (SIP) server implementation. In versions 4.0.0 and prior, processing a SIP message with a header name longe… No fix yet Fix from $2,3002026-08-04 CRITICAL 9.8 CVE-2026-49435 Keysight IxChariot Endpoint and associated products contain a stack-based buffer overflow. An unauthenticated remote attacker can send a specially cr… No fix yet Fix from $2,3002026-08-04 CRITICAL 9.8 CVE-2017-20242 Keysight IxChariot Endpoint before 9.5.102 contains a stack-based buffer overflow. An unauthenticated remote attacker can send a specially crafted pa… No fix yet Fix from $2,3002026-08-04 CRITICAL 9.6 CVE-2026-25289 Memory Corruption when processing Device Capability Extended attributes in certain NAN Service Discovery Frames with invalid length values. Sm7550p Firmware No fix yet Fix from $2,3002026-08-04 HIGH 7.8 CVE-2026-10709 A maliciously crafted FBX file, when parsed through Autodesk FBX SDK, can trigger a stack-based buffer overflow vulnerability in fbxsdk::FbxIO::Binar… No fix yet Fix from $1,9502026-08-04 HIGH 7.8 CVE-2026-10710 A maliciously crafted FBX file, when parsed through Autodesk FBX SDK, can trigger a stack-based buffer overflow vulnerability in fbxsdk::ExtractDrive… No fix yet Fix from $1,9502026-08-04 HIGH 8.8 CVE-2026-18607 A security vulnerability has been detected in Wavlink WN572, WN570H, WN573, WN529, WN530, WN531, WN535, etc. WN529, WN530, WN531, WN535, WN536, WN551… No fix yet Fix from $1,9502026-08-03 CRITICAL 9.8 CVE-2026-18588 A vulnerability has been found in Wavlink WL-NU516U1 708c073-mt7628. This affects the function fgets of the file nas.cgi. The manipulation of the arg… No fix yet Fix from $2,3002026-08-03 CRITICAL 9.8 CVE-2026-18589 A vulnerability was found in Wavlink WL-NU516U1 708c073-mt7628. This impacts the function change_password of the file nas.cgi. The manipulation of th… No fix yet Fix from $2,3002026-08-03 CRITICAL 9.8 CVE-2026-67822 Tenda W6-S 1.0.0.4(510) contains a stack-based buffer overflow vulnerability in the /goform/wifiSSIDset endpoint. The function formwrlSSIDset uses sp… No fix yet Fix from $2,3002026-07-31 HIGH 7.5 CVE-2026-15722 A stack buffer overflow flaw was found in 389 Directory Server (389-ds-base). The get_ruvelement_from_berval() function in repl5_ruv.c copies digit c… Directory Server No fix yet Fix from $1,9502026-07-31 HIGH 7.5 CVE-2026-43832 Full details and mitigation steps are currently restricted and will be published at a later date. No fix yet Fix from $1,9502026-07-31 HIGH 7.5 CVE-2026-43831 Full details and mitigation steps are currently restricted and will be published at a later date. No fix yet Fix from $1,9502026-07-31 HIGH 7.5 CVE-2026-43829 Full details and mitigation steps are currently restricted and will be published at a later date. No fix yet Fix from $1,9502026-07-31 HIGH 7.8 CVE-2026-10535 IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 is vulnerable to buffer overflow in setgid helper db2flacc. Db2 12.1.5+ Fix from $1,9502026-07-30 HIGH 7.5 CVE-2026-11771 OpenVPN version 2.1.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows attackers via an off-by-one buffer write in the NTLM proxy authentication to… Openvpn 2.6.21 / 2.7.5+ Fix from $1,9502026-07-30 MEDIUM 5.5 CVE-2026-7260 Circular symbolic links in phar archives could lead to unbounded recursion, exhausting the C stack and crashing the PHP process, in PHP versions from… PHP 8.2.33 / 8.3.33+ Fix from $1,6002026-07-30 HIGH 8.8 CVE-2026-67248 A stack-based buffer overflow vulnerability was found in the File Explorer on the ADM. The vulnerability occurs because user-controlled input is not … Data Master 5.1.4.rjv2+ Fix from $1,9502026-07-30 MEDIUM 6.8 CVE-2026-13309 Autel MaxiCharger AC Elite Home NFC Stack-based Buffer Overflow Arbitrary Code Execution Vulnerability. This vulnerability allows physically present … No fix yet Fix from $1,6002026-07-29 HIGH 7.8 CVE-2026-5056 GStreamer qtdemux Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary co… No fix yet Fix from $1,9502026-07-29 HIGH 8.7 CVE-2026-12935 The TL-WR940N v6 router contains a vulnerability in its RTSP connection tracking module that can lead to a stack-based buffer overflow. The issue occ… No fix yet Fix from $1,9502026-07-29 HIGH 8.1 CVE-2026-67192 Xlight FTP Server before 3.9.5 contains a pre-authentication stack buffer overflow vulnerability that allows unauthenticated attackers to corrupt sta… No fix yet Fix from $1,9502026-07-29