Vulnerability index

Browse CVEs

2,652 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Heap-based Buffer OverflowCWE-122 × clear
Linux Diagnostic Extension HIGH 7.8
CVE-2026-23665

Heap-based buffer overflow in Azure Linux Virtual Machines allows an authorized attacker to elevate privileges locally.

Fix: 2.1.24+
Fix from $1,950 2026-03-10
Imagemagick HIGH 7.8
CVE-2026-30931

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16, a heap-based buffer overfl…

Fix: 7.1.2-16+
Fix from $1,950 2026-03-10
Imagemagick MEDIUM 5.5
CVE-2026-30936

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, a crafted im…

Fix: 6.9.13-41 / 7.1.2-16+
Fix from $1,600 2026-03-10
Imagemagick MEDIUM 6.1
CVE-2026-30937

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, a 32-bit uns…

Fix: 6.9.13-41 / 7.1.2-16+
Fix from $1,600 2026-03-10
Imagemagick MEDIUM 6.8
CVE-2026-28686

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, A heap-buffe…

Fix: 6.9.13-41 / 7.1.2-16+
Fix from $1,600 2026-03-10
Unclassified MEDIUM 5.3
CVE-2026-3713

A flaw has been found in pnggroup libpng up to 1.6.55. Affected by this vulnerability is the function do_pnm2png of the file contrib/pngminus/pnm2png…

Mitigation only
Fix from $1,600 2026-03-08
Harmonyos MEDIUM 5.5
CVE-2026-28546

Buffer overflow vulnerability in the scanning module. Impact: Successful exploitation of this vulnerability may affect availability.

No fix yet
Fix from $1,600 2026-03-05
Chrome HIGH 8.8
CVE-2026-3544

Heap buffer overflow in WebCodecs in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to perform an out of bounds memory write via a c…

Fix: 145.0.7632.159 / 145.0.7632.160+
Fix from $1,950 2026-03-04
Unclassified MEDIUM 5.8
CVE-2026-20053

Multiple Cisco products are affected by a vulnerability in the Snort 3 VBA feature that could allow an unauthenticated, remote attacker to cause the …

Mitigation only
Fix from $1,600 2026-03-04
Dr Libs HIGH 7.8
CVE-2026-29022

dr_libs dr_wav.h version 0.14.4 and earlier (fixed in commit 8a7258c) contain a heap buffer overflow vulnerability in the drwav__read_smpl_to_metadat…

Fix: after 0.14.4
Fix from $1,950 2026-03-03
Libbiosig HIGH 8.1
CVE-2026-20777

A heap-based buffer overflow vulnerability exists in the Nicolet WFT parsing functionality of The Biosig Project libbiosig 3.9.2 and Master Branch (d…

No fix yet
Fix from $1,950 2026-03-03
Libbiosig CRITICAL 9.8
CVE-2026-22891

A heap-based buffer overflow vulnerability exists in the Intan CLP parsing functionality of The Biosig Project libbiosig 3.9.2 and Master Branch (db9…

Mitigation only
Fix from $2,300 2026-03-03
Xlnt HIGH 7.8
CVE-2026-3463

A weakness has been identified in xlnt-community xlnt up to 1.6.1. Impacted is the function xlnt::detail::binary_writer::append of the file source/de…

Fix: after 1.6.1
Fix from $1,950 2026-03-03
Android CRITICAL 9.8
CVE-2026-0006

In multiple locations, there is a possible out of bounds read and write due to a heap buffer overflow. This could lead to remote code execution with …

Mitigation only
Fix from $2,300 2026-03-02
Soloud HIGH 7.8
CVE-2026-3393

A security vulnerability has been detected in jarikomppa soloud up to 20200207. The impacted element is the function SoLoud::Wav::loadflac of the fil…

Fix: after 2020-02-07
Fix from $1,950 2026-03-01
Vim MEDIUM 5.5
CVE-2026-28418

Vim is an open source, command line text editor. Prior to version 9.2.0074, a heap-based buffer overflow out-of-bounds read exists in Vim's Emacs-sty…

Fix: 9.2.0074+
Fix from $1,600 2026-02-27
Vim HIGH 7.8
CVE-2026-28421

Vim is an open source, command line text editor. Versions prior to 9.2.0077 have a heap-buffer-overflow and a segmentation fault (SEGV) exist in Vim'…

Fix: 9.2.0077+
Fix from $1,950 2026-02-27
Libvips HIGH 7.8
CVE-2026-3281

A vulnerability was detected in libvips 8.19.0. This affects the function vips_bandrank_build of the file libvips/conversion/bandrank.c. Performing a…

Patch available
Fix from $1,950 2026-02-27
Crypt\ HIGH 7.5
CVE-2026-2597

Crypt::SysRandom::XS versions before 0.010 for Perl is vulnerable to a heap buffer overflow in the XS function random_bytes(). The function does not…

Fix: 0.010+
Fix from $1,950 2026-02-27
Unclassified HIGH 8.1
CVE-2026-23750

Golioth Pouch version 0.1.0, prior to commit 1b2219a1, contains a heap-based buffer overflow in BLE GATT server certificate handling. server_cert_wri…

Patch available
Fix from $1,950 2026-02-26
Libvips HIGH 7.8
CVE-2026-3147

A vulnerability was found in libvips up to 8.18.0. This affects the function vips_foreign_load_csv_build of the file libvips/foreign/csvload.c. The m…

Fix: after 8.18.0
Fix from $1,950 2026-02-25
Imagemagick CRITICAL 9.1
CVE-2026-26284

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, ImageMagick …

Fix: 6.9.13-40 / 7.1.2-15+
Fix from $2,300 2026-02-24
Imagemagick CRITICAL 9.8
CVE-2026-25897

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, an Integer O…

Fix: 6.9.13-40 / 7.1.2-15+
Fix from $2,300 2026-02-24
Imagemagick MEDIUM 5.5
CVE-2026-25576

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, a heap buffe…

Fix: 6.9.13-40 / 7.1.2-15+
Fix from $1,600 2026-02-24
Imagemagick HIGH 8.2
CVE-2026-25794

ImageMagick is free and open-source software used for editing and manipulating digital images. `WriteUHDRImage` in `coders/uhdr.c` uses `int` arithme…

Fix: 7.1.2-15+
Fix from $1,950 2026-02-24
Go Upf HIGH 7.5
CVE-2025-69247

free5GC go-upf is the User Plane Function (UPF) implementation for 5G networks that is part of the free5GC project. Versions prior to 1.2.8 have a He…

Fix: 1.2.8+
Fix from $1,950 2026-02-23
Unclassified HIGH 7.2
CVE-2025-14905

A flaw was found in the 389-ds-base server. A heap buffer overflow vulnerability exists in the `schema_attr_enum_callback` function within the `schem…

Mitigation only
Fix from $1,950 2026-02-23
Libvips HIGH 7.0
CVE-2026-2913

A vulnerability was determined in libvips up to 8.19.0. The affected element is the function vips_source_read_to_memory of the file libvips/iofuncs/s…

Fix: after 8.19.0
Fix from $1,950 2026-02-22
Sail CRITICAL 9.8
CVE-2026-27168

SAIL is a cross-platform library for loading and saving images with support for animation, metadata, and ICC profiles. All versions are vulnerable to…

Fix: after 0.9.10
Fix from $2,300 2026-02-21
Gimp HIGH 7.8
CVE-2026-2047

GIMP ICNS File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrar…

Patch available
Fix from $1,950 2026-02-20