Vulnerability index

Browse CVEs

2,652 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Heap-based Buffer OverflowCWE-122 × clear
M3 Firmware HIGH 8.8
CVE-2025-15233

A security flaw has been discovered in Tenda M3 1.0.0.13(4903). This issue affects the function formSetAdInfoDetails of the file /goform/setAdInfoDet…

No fix yet
Fix from $1,950 2025-12-30
M3 Firmware HIGH 8.8
CVE-2025-15230

A vulnerability was found in Tenda M3 1.0.0.13(4903). Affected by this issue is the function formSetVlanPolicy of the file /goform/setVlanPolicyData.…

No fix yet
Fix from $1,950 2025-12-30
Binutils HIGH 7.5
CVE-2025-66862

A buffer overflow vulnerability in function gnu_special in file cplus-dem.c in BinUtils 2.26 allows attackers to cause a denial of service via crafte…

No fix yet
Fix from $1,950 2025-12-29
Libming HIGH 7.5
CVE-2025-66869

Buffer overflow vulnerability in function strcat in asan_interceptors.cpp in libming 0.4.8.

No fix yet
Fix from $1,950 2025-12-29
Gimp HIGH 7.8
CVE-2025-14425

GIMP JP2 File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary…

Patch available
Fix from $1,950 2025-12-23
Openexr HIGH 7.8
CVE-2025-12495

Academy Software Foundation OpenEXR EXR File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote…

Fix: 3.4.3+
Fix from $1,950 2025-12-23
Openexr HIGH 7.8
CVE-2025-12839

Academy Software Foundation OpenEXR EXR File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote…

Fix: 3.4.3+
Fix from $1,950 2025-12-23
Openexr HIGH 7.8
CVE-2025-12840

Academy Software Foundation OpenEXR EXR File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote…

Fix: 3.4.3+
Fix from $1,950 2025-12-23
Netcdf HIGH 7.8
CVE-2025-14935

NSF Unidata NetCDF-C Dimension Name Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to exe…

Mitigation only
Fix from $1,950 2025-12-23
Sokol HIGH 7.8
CVE-2025-14958

A security flaw has been discovered in floooh sokol up to 33e2271c431bf21de001e972f72da17a984da932. This vulnerability affects the function _sg_pipel…

Fix: after 2025-12-13
Fix from $1,950 2025-12-19
Binaryen HIGH 7.1
CVE-2025-14956

A vulnerability was determined in WebAssembly Binaryen up to 125. Affected by this issue is the function WasmBinaryReader::readExport of the file src…

Fix: after 125
Fix from $1,950 2025-12-19
Capstone HIGH 7.8
CVE-2025-67873

Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prior, Skipdata length is not bounds-checked, so a user-provided skipdata callback …

Fix: 6.0.0+
Fix from $1,950 2025-12-17
Shared Components HIGH 7.8
CVE-2025-9457

A maliciously crafted PRT file, when parsed through certain Autodesk products, can force a Memory corruption vulnerability. A malicious actor can lev…

Fix: 2026.5+
Fix from $1,950 2025-12-16
Shared Components HIGH 7.8
CVE-2025-10881

A maliciously crafted CATPRODUCT file, when parsed through certain Autodesk products, can force a Heap-Based Overflow vulnerability. A malicious acto…

Fix: 2026.5+
Fix from $1,950 2025-12-16
Snap7 Rs CRITICAL 9.8
CVE-2025-14673

A vulnerability has been found in gmg137 snap7-rs up to 1.142.1. Affected is the function snap7_rs::client::S7Client::as_ct_write of the file /tests/…

Fix: after 1.142.1
Fix from $2,300 2025-12-14
Snap7 Rs CRITICAL 9.8
CVE-2025-14672

A flaw has been found in gmg137 snap7-rs up to 1.142.1. This impacts the function TSnap7MicroClient::opWriteArea of the file s7_micro_client.cpp. Exe…

Fix: after 1.142.1
Fix from $2,300 2025-12-14
Exim CRITICAL 9.8
CVE-2025-67896

Exim before 4.99.1, with certain non-default rate-limit configurations, allows a remote heap-based buffer overflow because database records are cast …

Fix: 4.99.1+
Fix from $2,300 2025-12-14
Android HIGH 8.0
CVE-2025-36923

In NrmmDecoder::DecodeSORTransparentContext of cn_NrmmDecoder.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could …

Mitigation only
Fix from $1,950 2025-12-11
Windows 10 1507 HIGH 7.8
CVE-2025-64679

Heap-based buffer overflow in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.

Fix: 10.0.10240.21161 / 10.0.14393.8519+
Fix from $1,950 2025-12-09
Windows 10 1507 HIGH 7.8
CVE-2025-64680

Heap-based buffer overflow in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.

Fix: 10.0.10240.21161 / 10.0.14393.8519+
Fix from $1,950 2025-12-09
Dng Software Development Kit HIGH 7.1
CVE-2025-64784

DNG SDK versions 1.7.0 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could lead to memory exposure or application denia…

Fix: after 1.7.0
Fix from $1,950 2025-12-09
Windows 10 1607 HIGH 8.8
CVE-2025-64678

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.

Fix: 10.0.14393.8594 / 10.0.17763.8027+
Fix from $1,950 2025-12-09
Windows 10 1607 HIGH 7.8
CVE-2025-62470

Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.8688 / 10.0.17763.8146+
Fix from $1,950 2025-12-09
Windows 11 23h2 HIGH 8.8
CVE-2025-62456

Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an authorized attacker to execute code over a network.

Fix: 10.0.20348.4467 / 10.0.22631.6345+
Fix from $1,950 2025-12-09
Windows 10 1607 HIGH 7.8
CVE-2025-62458

Heap-based buffer overflow in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.8688 / 10.0.17763.8146+
Fix from $1,950 2025-12-09
Windows 10 1809 HIGH 7.8
CVE-2025-62454

Heap-based buffer overflow in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.

Fix: 10.0.17763.8146 / 10.0.19044.6691+
Fix from $1,950 2025-12-09
Android HIGH 7.5
CVE-2025-48592

In initDecoder of C2SoftDav1dDec.cpp, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information dis…

Patch available
Fix from $1,950 2025-12-08
Pepper HIGH 8.4
CVE-2025-50360

A heap buffer overflow in compiler.c and compiler.h in Pepper language 0.1.1commit 961a5d9988c5986d563310275adad3fd181b2bb7. Malicious execution of a…

No fix yet
Fix from $1,950 2025-12-03
Sge Plc1000 Firmware CRITICAL 9.8
CVE-2025-11788

Heap-based buffer overflow vulnerability in Circutor SGE-PLC1000/SGE-PLC50 v9.0.2. In the 'ShowSupervisorParameters()' function, there is an unlimite…

Mitigation only
Fix from $2,300 2025-12-02
Sge Plc1000 Firmware CRITICAL 9.8
CVE-2025-11778

Stack-based buffer overflow in Circutor SGE-PLC1000/SGE-PLC50 v0.9.2. This vulnerability allows an attacker to remotely exploit memory corruption thr…

Mitigation only
Fix from $2,300 2025-12-02