Vulnerability index

Browse CVEs

2,652 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Heap-based Buffer OverflowCWE-122 × clear
Unclassified MEDIUM 6.5
CVE-2026-24829

Out-of-bounds Write, Heap-based Buffer Overflow vulnerability in Is-Daouda is-Engine.This issue affects is-Engine: before 3.3.4.

Patch available
Fix from $1,600 2026-01-27
Unclassified CRITICAL 10.0
CVE-2026-24822

Out-of-bounds Write, Heap-based Buffer Overflow vulnerability in ttttupup wxhelper (src modules). This vulnerability is associated with program files…

Patch available
Fix from $2,300 2026-01-27
Unclassified HIGH 7.8
CVE-2026-1283

A Heap-based Buffer Overflow vulnerability affecting the EPRT file reading procedure in SOLIDWORKS eDrawings from Release SOLIDWORKS Desktop 2025 thr…

Mitigation only
Fix from $1,950 2026-01-26
Iccdev HIGH 8.8
CVE-2026-24412

iccDEV provides libraries and tools for interacting with, manipulating, and applying ICC color management profiles. Versions 2.3.1.1 and below have a…

Fix: 2.3.1.2+
Fix from $1,950 2026-01-24
Iccdev HIGH 8.8
CVE-2026-24406

iccDEV provides libraries and tools for interacting with, manipulating, and applying ICC color management profiles. Versions 2.3.1.1 and below have a…

Fix: 2.3.1.2+
Fix from $1,950 2026-01-24
Iccdev HIGH 8.8
CVE-2026-24405

iccDEV provides libraries and tools for interacting with, manipulating, and applying ICC color management profiles. Versions 2.3.1.1 and below have a…

Fix: 2.3.1.2+
Fix from $1,950 2026-01-24
8180 Ip Audio Alerter Firmware CRITICAL 9.8
CVE-2026-0793

ALGO 8180 IP Audio Alerter InformaCast Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to …

Mitigation only
Fix from $2,300 2026-01-23
Gimp HIGH 7.8
CVE-2025-15059

GIMP PSP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary…

Patch available
Fix from $1,950 2026-01-23
Imagemagick CRITICAL 9.8
CVE-2026-23876

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-13 and 6.9.13-38, a heap buffe…

Fix: 6.9.13-38 / 7.1.2-13+
Fix from $2,300 2026-01-20
Freerdp CRITICAL 9.8
CVE-2026-23533

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.21.0, a client-side heap buffer overflow occurs in the RDPGFX Cle…

Fix: 3.21.0+
Fix from $2,300 2026-01-19
Freerdp CRITICAL 9.8
CVE-2026-23534

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.21.0, a client-side heap buffer overflow occurs in the ClearCodec…

Fix: 3.21.0+
Fix from $2,300 2026-01-19
Freerdp HIGH 7.5
CVE-2026-23732

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.21.0, FastGlyph parsing trusts `cbData`/remaining length and neve…

Fix: 3.21.0+
Fix from $1,950 2026-01-19
Freerdp CRITICAL 9.8
CVE-2026-23532

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.21.0, a client-side heap buffer overflow occurs in the FreeRDP c…

Fix: 3.21.0+
Fix from $2,300 2026-01-19
Freerdp CRITICAL 9.8
CVE-2026-23530

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.21.0,`freerdp_bitmap_decompress_planar` does not validate `nSrcWi…

Fix: 3.21.0+
Fix from $2,300 2026-01-19
Freerdp CRITICAL 9.8
CVE-2026-23531

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.21.0, in ClearCodec, when `glyphData` is present, `clear_decompre…

Fix: 3.21.0+
Fix from $2,300 2026-01-19
Quickjs HIGH 8.8
CVE-2026-1145

A flaw has been found in quickjs-ng quickjs up to 0.11.0. Affected by this vulnerability is the function js_typed_array_constructor_ta of the file qu…

Fix: after 0.11.0
Fix from $1,950 2026-01-19
Mapnik MEDIUM 5.5
CVE-2025-15537

A security vulnerability has been detected in Mapnik up to 4.2.0. This issue affects the function mapnik::dbf_file::string_value of the file plugins/…

Fix: after 4.2.0
Fix from $1,600 2026-01-18
Open Chinese Convert MEDIUM 5.5
CVE-2025-15536

A weakness has been identified in BYVoid OpenCC up to 1.1.9. This vulnerability affects the function opencc::MaxMatchSegmentation of the file src/Max…

Fix: after 1.1.9
Fix from $1,600 2026-01-18
Raylib HIGH 7.8
CVE-2025-15533

A vulnerability was determined in raysan5 raylib up to 909f040. Affected by this vulnerability is the function GenImageFontAtlas of the file src/rtex…

Fix: 2026-01-01+
Fix from $1,950 2026-01-18
Gpac MEDIUM 5.5
CVE-2025-70302

A heap overflow in the ghi_dmx_declare_opid_bin() function of GPAC v2.4.0 allows attackers to cause a Denial of Service (DoS) via a crafted input.

No fix yet
Fix from $1,600 2026-01-15
Gpac MEDIUM 5.5
CVE-2025-70303

A heap overflow in the uncv_parse_config() function of GPAC v2.4.0 allows attackers to cause a Denial of Service (DoS) via a crafted MP4 file.

No fix yet
Fix from $1,600 2026-01-15
Gpac MEDIUM 6.5
CVE-2025-70299

A heap overflow in the avi_parse_input_file() function of GPAC v2.4.0 allows attackers to cause a Denial of Service (DoS) via a crafted AVI file.

No fix yet
Fix from $1,600 2026-01-15
Gpac MEDIUM 5.5
CVE-2025-70310

A heap overflow in the vorbis_to_intern() function of GPAC v2.4.0 allows attackers to cause a Denial of Service (DoS) via a crafted .ogg file.

No fix yet
Fix from $1,600 2026-01-15
Freerdp CRITICAL 9.8
CVE-2026-22854

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.20.1, a heap-buffer-overflow occurs in drive read when a server-controlle…

Fix: 3.20.1+
Fix from $2,300 2026-01-14
Bridge HIGH 7.8
CVE-2026-21283

Bridge versions 15.1.2, 16.0 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in …

Fix: 15.1.3+
Fix from $1,950 2026-01-13
Indesign HIGH 7.8
CVE-2026-21304

InDesign Desktop versions 21.0, 19.5.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code exe…

Fix: 20.5.1 / 21.1+
Fix from $1,950 2026-01-13
Indesign HIGH 7.8
CVE-2026-21277

InDesign Desktop versions 21.0, 19.5.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code exe…

Fix: 20.5.1 / 21.1+
Fix from $1,950 2026-01-13
Incopy HIGH 7.8
CVE-2026-21281

InCopy versions 21.0, 19.5.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in …

Fix: 20.5.1+
Fix from $1,950 2026-01-13
365 Apps HIGH 7.8
CVE-2026-20957

Integer underflow (wrap or wraparound) in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

Fix: 16.0.10417.20083+
Fix from $1,950 2026-01-13
Windows 10 1607 HIGH 7.8
CVE-2026-20922

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.

Fix: 10.0.14393.8783 / 10.0.17763.8276+
Fix from $1,950 2026-01-13