Vulnerability index

Browse CVEs

2,663 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Heap-based Buffer OverflowCWE-122 × clear
Unclassified CRITICAL 9.8
CVE-2025-54949

A heap buffer overflow vulnerability in the loading of ExecuTorch models can potentially result in code execution or other undesirable effects. This …

Patch available
Fix from $2,300 2025-08-07
Unclassified CRITICAL 9.8
CVE-2025-54951

A group of related buffer overflow vulnerabilities in the loading of ExecuTorch models can cause the runtime to crash and potentially result in code …

Patch available
Fix from $2,300 2025-08-07
Tivoli Monitoring CRITICAL 9.8
CVE-2025-3320

IBM Tivoli Monitoring 6.3.0.7 through 6.3.0.7 Service Pack 20 is vulnerable to a heap-based buffer overflow, caused by improper bounds checking. A re…

Mitigation only
Fix from $2,300 2025-08-06
Tivoli Monitoring CRITICAL 9.8
CVE-2025-3354

IBM Tivoli Monitoring 6.3.0.7 through 6.3.0.7 Service Pack 20 is vulnerable to a heap-based buffer overflow, caused by improper bounds checking. A re…

Mitigation only
Fix from $2,300 2025-08-06
Triton Inference Server CRITICAL 9.8
CVE-2025-23317

NVIDIA Triton Inference Server contains a vulnerability in the HTTP server, where an attacker could start a reverse shell by sending a specially craf…

Fix: 25.07+
Fix from $2,300 2025-08-06
Harmonyos HIGH 7.5
CVE-2025-54630

:Vulnerability of insufficient data length verification in the DFA module. Impact: Successful exploitation of this vulnerability may affect availabil…

No fix yet
Fix from $1,950 2025-08-06
Arena HIGH 7.8
CVE-2025-7025

A memory abuse issue exists in the Rockwell Automation Arena® Simulation. A custom file can force Arena Simulation to read and write past the end of …

Fix: 16.20.10+
Fix from $1,950 2025-08-05
Arena HIGH 7.8
CVE-2025-7033

A memory abuse issue exists in the Rockwell Automation Arena® Simulation. A custom file can force Arena Simulation to read and write past the end of …

Fix: 16.20.10+
Fix from $1,950 2025-08-05
Squid CRITICAL 9.8
CVE-2025-54574EPSS 23%

Squid is a caching proxy for the Web. In versions 6.3 and below, Squid is vulnerable to a heap buffer overflow and possible remote code execution att…

Fix: 6.4+
Fix from $2,300 2025-08-01
Openexr HIGH 7.8
CVE-2025-48071

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. In v…

Fix: 3.3.3+
Fix from $1,950 2025-07-31
macOS HIGH 7.8
CVE-2025-31280

A memory corruption issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.6. Processing a maliciously crafted file ma…

Fix: 15.6+
Fix from $1,950 2025-07-30
Shared Components HIGH 7.8
CVE-2025-5043

A maliciously crafted 3DM file, when linked or imported into certain Autodesk products, can force a Heap-Based Overflow vulnerability. A malicious ac…

Mitigation only
Fix from $1,950 2025-07-29
Ac10 Firmware HIGH 8.8
CVE-2025-8178

A vulnerability classified as critical has been found in Tenda AC10 16.03.10.13. Affected is an unknown function of the file /goform/RequestsProcessL…

Mitigation only
Fix from $1,950 2025-07-26
Ac8 Firmware MEDIUM 6.5
CVE-2025-51089EPSS 5%

Tenda AC8V4 V16.03.34.06` was discovered to contain heap overflow at /goform/GetParentControlInfo.The manipulation of the argument `mac` leads to hea…

No fix yet
Fix from $1,600 2025-07-24
Sma 500v Firmware HIGH 7.5
CVE-2025-40597EPSS 28%

A Heap-based buffer overflow vulnerability in the SMA100 series web interface allows remote, unauthenticated attacker to cause Denial of Service (DoS…

Fix: 10.2.2.1-90sv+
Fix from $1,950 2025-07-23
Unclassified MEDIUM 6.7
CVE-2025-4657

A buffer overflow vulnerability was reported in the Lenovo Protection Driver, prior to version 5.1.1110.4231, used in Lenovo PC Manager, Lenovo Brows…

Mitigation only
Fix from $1,600 2025-07-17
7 Zip HIGH 7.5
CVE-2025-53816

7-Zip is a file archiver with a high compression ratio. Zeroes written outside heap buffer in RAR5 handler may lead to memory corruption and denial o…

Fix: 25.00+
Fix from $1,950 2025-07-17
Fortios MEDIUM 6.7
CVE-2025-24477

A heap-based buffer overflow vulnerability in Fortinet FortiOS 7.6.0 through 7.6.2, FortiOS 7.4.0 through 7.4.7, FortiOS 7.2.4 through 7.2.12 allows …

Fix: 7.2.12 / 7.4.8+
Fix from $1,600 2025-07-15
Nanomq MEDIUM 6.5
CVE-2024-42648

NanoMQ v0.22.10 was discovered to contain a heap overflow which allows attackers to cause a Denial of Service (DoS) via a crafted CONNECT message.

No fix yet
Fix from $1,600 2025-07-14
Binutils HIGH 7.8
CVE-2025-7545

A vulnerability classified as problematic was found in GNU Binutils 2.45. Affected by this vulnerability is the function copy_section of the file bin…

Mitigation only
Fix from $1,950 2025-07-13
Unclassified HIGH 8.9
CVE-2025-53630

llama.cpp is an inference of several LLM models in C/C++. Integer Overflow in the gguf_init_from_file_impl function in ggml/src/gguf.cpp can lead to …

Patch available
Fix from $1,950 2025-07-10
Revit HIGH 7.8
CVE-2025-5040

A maliciously crafted RTE file, when parsed through Autodesk Revit, can force a Heap-Based Overflow vulnerability. A malicious actor can leverage thi…

Fix: 2024.3.3 / 2025.4.2+
Fix from $1,950 2025-07-10
Openshift Container Platform HIGH 8.2
CVE-2025-32990

A heap-buffer-overflow (off-by-one) flaw was found in the GnuTLS software in the template parsing logic within the certtool utility. When it reads ce…

Mitigation only
Fix from $1,950 2025-07-10
Unclassified MEDIUM 5.4
CVE-2025-49604

For Realtek AmebaD devices, a heap-based buffer overflow was discovered in Ameba-AIoT ameba-arduino-d before version 3.1.9 and ameba-rtos-d before co…

Patch available
Fix from $1,600 2025-07-09
Mruby MEDIUM 5.5
CVE-2025-7207

A vulnerability, which was classified as problematic, was found in mruby up to 3.4.0-rc2. Affected is the function scope_new of the file mrbgems/mrub…

Fix: 3.4.0+
Fix from $1,600 2025-07-09
Plan9port CRITICAL 9.8
CVE-2025-7208

A vulnerability was found in 9fans plan9port up to 9da5b44. It has been classified as critical. This affects the function edump in the library /src/p…

Fix: after 2025-03-29
Fix from $2,300 2025-07-09
Framemaker HIGH 7.8
CVE-2025-47131

Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code e…

Fix: 2020.9 / 2022.7+
Fix from $1,950 2025-07-08
Framemaker HIGH 7.8
CVE-2025-47125

Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code e…

Fix: 2020.9 / 2022.7+
Fix from $1,950 2025-07-08
Incopy HIGH 7.8
CVE-2025-47099

InCopy versions 20.3, 19.5.3 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in …

Fix: 19.5.4 / 20.4+
Fix from $1,950 2025-07-08
Framemaker HIGH 7.8
CVE-2025-47122

Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code e…

Fix: 2020.9 / 2022.7+
Fix from $1,950 2025-07-08