Vulnerability index

Browse CVEs

2,635 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Heap-based Buffer OverflowCWE-122 × clear
Unclassified HIGH 7.5
CVE-2026-12844

List::SomeUtils::XS versions before 0.59 for Perl have a heap buffer overflow in the pairwise function. pairwise() collects the values returned by t…

Patch available
Fix from $1,950 2026-06-25
Unclassified CRITICAL 10.0
CVE-2026-46752

Redis Lua HEAP overflow in cjson library vulnerability in Apache Kvrocks. This issue affects Apache Kvrocks: from 2.0.4 through 2.15.0. Users are r…

Mitigation only
Fix from $2,300 2026-06-25
Nsd HIGH 8.8
CVE-2026-12244

If NSD is configured as secondary for a zone, the primary of that zone can crash NSD with an AXFR containing a DNS message with a special crafted SVC…

Fix: 4.14.3+
Fix from $1,950 2026-06-25
Gimp HIGH 7.8
CVE-2026-2050

GIMP HDR File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary…

Mitigation only
Fix from $1,950 2026-06-24
Gpac MEDIUM 5.5
CVE-2025-60468

GPAC Multimedia Open Source Project GPAC Project/MP4Box 2.5-DEV-rev1593-gfe88c3545-master is affected by: Buffer Overflow. The impact is: cause a den…

Fix: 26.02.0+
Fix from $1,600 2026-06-24
Openshift Container Platform MEDIUM 5.9
CVE-2026-12725

A heap-based buffer overflow was found in dnsmasq. When DNSSEC validation and query logging are both enabled, logging of DS or DNSKEY replies contain…

Fix: 2.93+
Fix from $1,600 2026-06-22
Unclassified MEDIUM 6.3
CVE-2026-12805

A flaw has been found in OFFIS DCMTK up to 3.7.0. The affected element is the function XMLNode::parseFile in the library ofstd/libsrc/ofxml.cc. Execu…

Patch available
Fix from $1,600 2026-06-21
Unclassified HIGH 7.6
CVE-2026-56208

A heap buffer overflow vulnerability was found in libaom, the reference AV1 codec implementation. A flaw in the AV1 encoder's Look-Ahead Processing (…

Mitigation only
Fix from $1,950 2026-06-19
Unclassified HIGH 7.4
CVE-2026-3195

A flaw was found in QEMU. When reading input audio in the virtio-snd device input callback, the `virtio_snd_pcm_in_cb` function did not check whether…

Mitigation only
Fix from $1,950 2026-06-19
Openexr MEDIUM 6.5
CVE-2026-45696

OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture industry. In versions 3.4.0 thr…

Fix: 3.4.12+
Fix from $1,600 2026-06-18
Connext Professional HIGH 8.1
CVE-2026-2467

Heap-based Buffer Overflow vulnerability in RTI Connext Professional (Core Libraries) allows Overflow Variables and Tags.This issue affects Connext P…

Fix: 7.7.0+
Fix from $1,950 2026-06-17
Dos HIGH 8.1
CVE-2026-42055

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_proxy_v2_module and ngx_http_grpc_module modules. This vulnerability exists whe…

Fix: 37.0.2.1+
Fix from $1,950 2026-06-17
Chrome HIGH 8.8
CVE-2026-12466

Heap buffer overflow in WebRTC in Google Chrome on Windows prior to 149.0.7827.155 allowed a remote attacker to execute arbitrary code via a crafted …

Fix: 149.0.7827.155+
Fix from $1,950 2026-06-17
Chrome HIGH 8.8
CVE-2026-12447

Heap buffer overflow in WebRTC in Google Chrome prior to 149.0.7827.155 allowed a remote attacker to execute arbitrary code inside a sandbox via a cr…

Fix: 149.0.7827.155+
Fix from $1,950 2026-06-17
Stable Diffusion.cpp HIGH 7.8
CVE-2026-47747

stable-diffusion.cpp is a pure C/C++ library for running diffusion model (Stable Diffusion, Flux, Wan, Qwen Image, Z-Image, and more) inference. In v…

Patch available
Fix from $1,950 2026-06-16
Android HIGH 8.8
CVE-2026-0149

In RtpSession::rtpSendRtcpPacket, there is a possible OOB write due to a heap buffer overflow. This could lead to remote code execution with no addit…

Mitigation only
Fix from $1,950 2026-06-16
Android HIGH 8.8
CVE-2026-0132

In Modem, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote code execution with no additional executio…

Mitigation only
Fix from $1,950 2026-06-16
Dng Software Development Kit HIGH 7.8
CVE-2026-47964

DNG SDK versions 1.7.1 2536 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in t…

Fix: 1.7.1.2611+
Fix from $1,950 2026-06-16
Stable Diffusion.cpp HIGH 7.8
CVE-2026-47749

stable-diffusion.cpp is a pure C/C++ library for running diffusion model (Stable Diffusion, Flux, Wan, Qwen Image, Z-Image, and more) inference. Vers…

Patch available
Fix from $1,950 2026-06-16
Unclassified HIGH 8.8
CVE-2026-52720

A heap buffer overflow vulnerability was found in GStreamer's librfb (RFB/VNC client). The rectangle bounds check incorrectly validates area rather t…

Mitigation only
Fix from $1,950 2026-06-15
Gpac MEDIUM 5.5
CVE-2025-55652

A heap buffer overflow in the gf_isom_vp_config_new function (isomedia/avc_ext.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial of Service (…

Fix: 26.02.0+
Fix from $1,600 2026-06-15
Gpac MEDIUM 5.5
CVE-2025-55661

A heap buffer overflow in the Opus audio stream parser component of GPAC MP4Box v2.4 allows attackers to cause a Denial of Service (DoS) via supplyin…

Fix: 26.02.0+
Fix from $1,600 2026-06-15
Gpac MEDIUM 5.5
CVE-2025-55645

A heap buffer overflow in the gf_cenc_set_pssh function (isomedia/drm_sample.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial of Service (Do…

Fix: 26.02.0+
Fix from $1,600 2026-06-15
Gpac MEDIUM 5.5
CVE-2025-55648

A heap buffer overflow in the gf_opus_parse_packet_header function (media_tools/av_parsers.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial …

Fix: 26.02.0+
Fix from $1,600 2026-06-15
Unclassified HIGH 7.8
CVE-2026-12193

A vulnerability was identified in VS Revo RevoUninstaller 2.5.x/2.6.x. The affected element is the function IOCtl_Handler in the library RevoDetector…

Mitigation only
Fix from $1,950 2026-06-15
Unclassified MEDIUM 6.7
CVE-2026-48914

A flaw was found in QEMU's virtio-blk device. The issue arises because the device does not properly validate the size of input descriptors before wri…

Mitigation only
Fix from $1,600 2026-06-12
Chrome HIGH 8.3
CVE-2026-12030

Out of bounds write in GPU in Google Chrome on Android prior to 149.0.7827.115 allowed a remote attacker who had compromised the renderer process to …

Fix: 149.0.7827.115+
Fix from $1,950 2026-06-11
Chrome HIGH 8.3
CVE-2026-12010

Heap buffer overflow in GPU in Google Chrome on Android prior to 149.0.7827.115 allowed a remote attacker who had compromised the renderer process to…

Fix: 149.0.7827.115+
Fix from $1,950 2026-06-11
Imagemagick MEDIUM 6.2
CVE-2026-53465

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-25, a crafted multi-frame can r…

Fix: 7.1.2-25+
Fix from $1,600 2026-06-10
Imagemagick MEDIUM 5.9
CVE-2026-48994

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-24, a missing ch…

Fix: 6.9.13-48 / 7.1.2-24+
Fix from $1,600 2026-06-10