Vulnerability index

Browse CVEs

2,635 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Heap-based Buffer OverflowCWE-122 × clear
Imagemagick HIGH 7.5
CVE-2026-46520

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, when reading…

Fix: 6.9.13-48 / 7.1.2-23+
Fix from $1,950 2026-06-10
Unclassified HIGH 7.8
CVE-2026-2049

GIMP HDR File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary…

Mitigation only
Fix from $1,950 2026-06-10
Openvpn MEDIUM 6.5
CVE-2026-11604

An incorrect buffer size calculation in the epoch key generator in OpenVPN ovpn-dco-win version 2.0.0 through 2.8.3 allows a remote authenticated pee…

Fix: after 2.8.3
Fix from $1,600 2026-06-10
Unclassified MEDIUM 6.5
CVE-2026-11884

A heap buffer overflow flaw was found in 389 Directory Server. When serializing objectclass definitions, the oc_superior (SUP) field length is omitte…

Mitigation only
Fix from $1,600 2026-06-10
Esp Idf HIGH 7.1
CVE-2026-45542

ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. In versions 5.2.6, 5.3.5, 5.4.4, 5.5.4, and 6.0, a heap buffer overflow exis…

Patch available
Fix from $1,950 2026-06-10
Format Plugins HIGH 7.8
CVE-2026-48291

Format Plugins versions 1.1.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in…

Fix: 1.1.3+
Fix from $1,950 2026-06-09
Format Plugins HIGH 7.8
CVE-2026-48292

Format Plugins versions 1.1.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in…

Fix: 1.1.3+
Fix from $1,950 2026-06-09
Acrobat Dc HIGH 7.8
CVE-2026-47952

Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitr…

Fix: 24.001.30383 / 26.001.21662+
Fix from $1,950 2026-06-09
SQLite HIGH 7.8
CVE-2026-11822

SQLite before 3.53.2 contains memory corruption vulnerabilities in the FTS5 full-text search extension that allow attackers to cause process crashes,…

Fix: 3.53.2+
Fix from $1,950 2026-06-09
SQLite HIGH 7.8
CVE-2026-11824

SQLite before 3.53.2 contains a heap-based buffer overflow vulnerability in the FTS5 full-text search extension that allows attackers to cause a cras…

Fix: 3.53.2+
Fix from $1,950 2026-06-09
Unclassified HIGH 7.5
CVE-2023-43688

An issue was discovered in Malwarebytes 4.x and 5.x (and Nebula 2020-10-21 and later). There is a Heap buffer overflow in various buffer encryption u…

Mitigation only
Fix from $1,950 2026-06-09
Incopy HIGH 7.8
CVE-2026-34707

InCopy versions 21.3, 20.5.3 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in …

Fix: 20.5.4 / 21.4+
Fix from $1,950 2026-06-09
Indesign HIGH 7.8
CVE-2026-34698

InDesign Desktop versions 21.3, 20.5.3 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code exe…

Fix: 20.5.4 / 21.4+
Fix from $1,950 2026-06-09
Indesign HIGH 7.8
CVE-2026-34699

InDesign Desktop versions 21.3, 20.5.3 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code exe…

Fix: 20.5.4 / 21.4+
Fix from $1,950 2026-06-09
Indesign HIGH 7.8
CVE-2026-34701

InDesign Desktop versions 21.3, 20.5.3 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code exe…

Fix: 20.5.4 / 21.4+
Fix from $1,950 2026-06-09
Freeswitch CRITICAL 9.1
CVE-2026-49840

FreeSWITCH is a Software Defined Telecom Stack enabling the digital transformation from proprietary telecom switches to a software implementation tha…

Fix: 1.11.1+
Fix from $2,300 2026-06-09
Freeswitch CRITICAL 9.8
CVE-2026-49841

FreeSWITCH is a Software Defined Telecom Stack enabling the digital transformation from proprietary telecom switches to a software implementation tha…

Fix: 1.11.1+
Fix from $2,300 2026-06-09
Windows 10 1607 HIGH 7.8
CVE-2026-48574

Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code locally.

Fix: 10.0.14393.9234 / 10.0.17763.8880+
Fix from $1,950 2026-06-09
Windows 11 23h2 HIGH 8.2
CVE-2026-47652

Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to execute code locally.

Fix: 10.0.20348.5256 / 10.0.22631.7219+
Fix from $1,950 2026-06-09
Office 2024 HIGH 8.4
CVE-2026-47635

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

Mitigation only
Fix from $1,950 2026-06-09
Windows App HIGH 8.8
CVE-2026-47289

Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

Fix: 2.0.1193.0 / 10.0.14393.9234+
Fix from $1,950 2026-06-09
Windows 10 1607 CRITICAL 9.8
CVE-2026-47291EPSS 23%

Integer overflow or wraparound in Windows HTTP.sys allows an unauthorized attacker to execute code over a network.

Fix: 10.0.14393.9234 / 10.0.17763.8880+
Fix from $2,300 2026-06-09
Windows 11 23h2 CRITICAL 9.8
CVE-2026-45657EPSS 15%

Use after free in Windows Kernel allows an unauthorized attacker to execute code over a network.

Fix: 10.0.20348.5256 / 10.0.22631.7219+
Fix from $2,300 2026-06-09
Windows 10 1607 HIGH 7.0
CVE-2026-45653

Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.9234 / 10.0.17763.8880+
Fix from $1,950 2026-06-09
Windows 10 1607 HIGH 7.8
CVE-2026-45636

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

Fix: 10.0.14393.9234 / 10.0.17763.8880+
Fix from $1,950 2026-06-09
Windows 10 1607 HIGH 7.8
CVE-2026-45638

Heap-based buffer overflow in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.9234 / 10.0.17763.8880+
Fix from $1,950 2026-06-09
365 Apps HIGH 7.8
CVE-2026-45475

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

Fix: 16.0.19725.20384+
Fix from $1,950 2026-06-09
365 Apps HIGH 7.8
CVE-2026-45469

Integer underflow (wrap or wraparound) in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

Mitigation only
Fix from $1,950 2026-06-09
365 Apps HIGH 7.8
CVE-2026-44819

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

Fix: 16.0.19725.20384+
Fix from $1,950 2026-06-09
365 Apps HIGH 7.8
CVE-2026-44824

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

Fix: 16.0.19725.20384+
Fix from $1,950 2026-06-09