Vulnerability index

Browse CVEs

2,652 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Heap-based Buffer OverflowCWE-122 × clear
HTTP Server HIGH 7.5
CVE-2026-34355

A buffer overflow in mod_proxy_html in Apache HTTP Server 2.4.67 and earlier allows an attack by an untrusted backend. Users are recommended to upgra…

Fix: 2.4.68+
Fix from $1,950 2026-06-08
HTTP Server HIGH 7.5
CVE-2026-34356

Heap-based Buffer Overflow vulnerability in Apache HTTP Server with malicious backend servers and ProxyPassReverseCookie* This issue affects Apache …

Fix: 2.4.68+
Fix from $1,950 2026-06-08
Unclassified HIGH 7.5
CVE-2026-22164

Software installed and run as a non-privileged user may conduct improper GPU system calls to corrupt kernel heap memory. By creating resources of …

Mitigation only
Fix from $1,950 2026-06-08
Chrome MEDIUM 6.5
CVE-2026-11143

Out of bounds read in Extensions in Google Chrome on Linux prior to 149.0.7827.53 allowed an attacker who convinced a user to install a malicious ext…

Fix: 149.0.7827.53+
Fix from $1,600 2026-06-04
Chrome HIGH 8.8
CVE-2026-11124

Integer overflow in Skia in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 149.0.7827.53+
Fix from $1,950 2026-06-04
Chrome HIGH 8.8
CVE-2026-10995

Heap buffer overflow in TabStrip in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gest…

Fix: 149.0.7827.53+
Fix from $1,950 2026-06-04
Chrome HIGH 8.8
CVE-2026-10989

Inappropriate implementation in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI ge…

Fix: 149.0.7827.53+
Fix from $1,950 2026-06-04
Chrome MEDIUM 6.5
CVE-2026-10993

Heap buffer overflow in Skia in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to obtain potentially sensitive information from proce…

Fix: 149.0.7827.53+
Fix from $1,600 2026-06-04
Chrome HIGH 7.5
CVE-2026-10946

Heap buffer overflow in Media in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gesture…

Fix: 149.0.7827.53+
Fix from $1,950 2026-06-04
Chrome HIGH 8.3
CVE-2026-10949

Heap buffer overflow in Video in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potential…

Fix: 149.0.7827.53+
Fix from $1,950 2026-06-04
Chrome HIGH 8.3
CVE-2026-10929

Heap buffer overflow in ANGLE in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process t…

Fix: 149.0.7827.53+
Fix from $1,950 2026-06-04
Android HIGH 7.8
CVE-2026-0100

In Load of LoadedArsc.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege wi…

Mitigation only
Fix from $1,950 2026-06-01
Android HIGH 8.0
CVE-2026-0059

In multiple functions of sdp_discovery.cc, there is a possible way to achieve code execution due to a heap buffer overflow. This could lead to remote…

Mitigation only
Fix from $1,950 2026-06-01
Unclassified MEDIUM 5.5
CVE-2025-55664

A heap buffer overflow in the m2tsdmx_send_packet function (filters/dmx_m2ts.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial of Service (Do…

Patch available
Fix from $1,600 2026-06-01
Unclassified MEDIUM 5.3
CVE-2026-10229

A vulnerability was determined in Assimp up to 6.0.4. This affects the function HL1MDLLoader::read_meshes of the file HL1MDLLoader.cpp of the compone…

No fix yet
Fix from $1,600 2026-06-01
Unclassified MEDIUM 5.3
CVE-2026-10230

A vulnerability was identified in Assimp up to 6.0.4. This impacts the function Assimp::MDL::HalfLife::HL1MDLLoader::read_animations of the file HL1M…

Mitigation only
Fix from $1,600 2026-06-01
Unclassified MEDIUM 5.3
CVE-2026-10231

A security flaw has been discovered in Assimp up to 6.0.4. Affected is the function HL1MDLLoader::extract_anim_value of the file HL1MDLLoader.cpp of …

No fix yet
Fix from $1,600 2026-06-01
Mt6890 Firmware HIGH 8.0
CVE-2026-20452

In wlan AP driver, there is a possible memory corruption due to a heap buffer overflow. This could lead to remote (proximal/adjacent) code execution …

Mitigation only
Fix from $1,950 2026-06-01
Unclassified MEDIUM 5.3
CVE-2026-10200

A vulnerability was found in Assimp up to 6.0.4. This affects the function glTFCommon::CopyValue in the library glTFCommon.h of the component 4x4 Mat…

No fix yet
Fix from $1,600 2026-05-31
Unclassified MEDIUM 6.3
CVE-2026-10194

A weakness has been identified in OFFIS DCMTK 3.7.0. This affects the function DcmQueryRetrieveIndexDatabaseHandle::deleteOldestImages of the file dc…

Mitigation only
Fix from $1,600 2026-05-31
Freerdp HIGH 8.8
CVE-2026-44420

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.26.0, a malicious RDP client can trigger a heap-buffer-overflow write in …

Fix: 3.26.0+
Fix from $1,950 2026-05-29
Freerdp HIGH 8.8
CVE-2026-44421

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.26.0, a malicious RDP server can trigger a heap-buffer-overflow write in …

Fix: 3.26.0+
Fix from $1,950 2026-05-29
Opensc HIGH 7.8
CVE-2026-40528

OpenSC before 0.27.0, fixed in commit 0358817, contains a stack and heap buffer overrun vulnerability in the do_key_value() function in src/pkcs15ini…

Fix: 0.27.0+
Fix from $1,950 2026-05-29
Chrome HIGH 8.8
CVE-2026-9939

Heap buffer overflow in WebCodecs in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code inside a sandbox via a…

Fix: 148.0.7778.215 / 148.0.7778.216+
Fix from $1,950 2026-05-28
Chrome HIGH 8.8
CVE-2026-9940

Heap buffer overflow in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to potentially exploit heap corruption via a crafted…

Fix: 148.0.7778.216+
Fix from $1,950 2026-05-28
Chrome HIGH 8.3
CVE-2026-9924

Heap buffer overflow in ANGLE in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process …

Fix: 148.0.7778.216+
Fix from $1,950 2026-05-28
Chrome HIGH 8.3
CVE-2026-9926

Heap buffer overflow in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentia…

Fix: 148.0.7778.215 / 148.0.7778.216+
Fix from $1,950 2026-05-28
Chrome HIGH 8.3
CVE-2026-9915

Heap buffer overflow in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentia…

Fix: 148.0.7778.216+
Fix from $1,950 2026-05-28
Unclassified MEDIUM 6.7
CVE-2026-48065

pam_usb provides hardware authentication for Linux using ordinary removable media. Prior to 0.9.1, src/conf.c allocates heap memory proportional to n…

Mitigation only
Fix from $1,600 2026-05-27
Unclassified MEDIUM 5.3
CVE-2026-4391

A security vulnerability has been detected in TeamSpeak 3 Server up to 3.13.7. This vulnerability affects unknown code of the component ECC Key Parse…

Mitigation only
Fix from $1,600 2026-05-27