Vulnerability index

Browse CVEs

2,663 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Heap-based Buffer OverflowCWE-122 × clear
Unclassified HIGH 8.4
CVE-2025-49850

A Heap-based Buffer Overflow vulnerability exists within the parsing of PRJ files. The issues result from the lack of proper validation of user-suppl…

Mitigation only
Fix from $1,950 2025-06-17
Assimp MEDIUM 5.3
CVE-2025-6120

A vulnerability classified as critical was found in Open Asset Import Library Assimp up to 5.4.3. Affected by this vulnerability is the function read…

Fix: after 5.4.3
Fix from $1,600 2025-06-16
Nuttx CRITICAL 9.8
CVE-2025-47868

Out-of-bounds Write resulting in possible Heap-based Buffer Overflow vulnerability was discovered in tools/bdf-converter font conversion utility that…

Fix: 12.9.0+
Fix from $2,300 2025-06-16
365 Apps HIGH 8.4
CVE-2025-32717

Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.

Mitigation only
Fix from $1,950 2025-06-11
Incopy HIGH 7.8
CVE-2025-47107

InCopy versions 20.2, 19.5.3 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in …

Fix: 19.5.4 / 20.3+
Fix from $1,950 2025-06-10
365 Apps HIGH 7.8
CVE-2025-47174

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

Mitigation only
Fix from $1,950 2025-06-10
365 Apps HIGH 7.8
CVE-2025-47169

Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.

Mitigation only
Fix from $1,950 2025-06-10
365 Apps HIGH 8.4
CVE-2025-47162

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

No fix yet
Fix from $1,950 2025-06-10
Windows 10 1507 HIGH 8.8
CVE-2025-33066

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.

Fix: 10.0.10240.21034 / 10.0.14393.8148+
Fix from $1,950 2025-06-10
Windows 10 1507 HIGH 8.8
CVE-2025-33064

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over a network.

Fix: 10.0.10240.21034 / 10.0.14393.8148+
Fix from $1,950 2025-06-10
Windows 10 1507 HIGH 7.8
CVE-2025-32718

Integer overflow or wraparound in Windows SMB allows an authorized attacker to elevate privileges locally.

Fix: 10.0.10240.21034 / 10.0.14393.8148+
Fix from $1,950 2025-06-10
Windows 10 1507 HIGH 7.8
CVE-2025-32713

Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.

Fix: 10.0.10240.21034 / 10.0.14393.8148+
Fix from $1,950 2025-06-10
Indesign HIGH 7.8
CVE-2025-30317

InDesign Desktop versions ID20.2, ID19.5.3 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code…

Fix: 19.5.4 / 20.3+
Fix from $1,950 2025-06-10
Openshift Container Platform MEDIUM 6.6
CVE-2025-5915

A vulnerability has been identified in the libarchive library. This flaw can lead to a heap buffer over-read due to the size of a filter block potent…

Fix: 3.8.0+
Fix from $1,600 2025-06-09
Level 2 Ev Charger Firmware HIGH 8.8
CVE-2025-5750

WOLFBOX Level 2 EV Charger tuya_svc_devos_activate_result_parse Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability al…

Mitigation only
Fix from $1,950 2025-06-06
Qts MEDIUM 5.4
CVE-2024-56805

A buffer overflow vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remot…

Mitigation only
Fix from $1,600 2025-06-06
Harmonyos MEDIUM 5.5
CVE-2025-48910

Buffer overflow vulnerability in the DFile module Impact: Successful exploitation of this vulnerability may affect availability.

No fix yet
Fix from $1,600 2025-06-06
Era 300 Firmware HIGH 8.8
CVE-2025-1051

Sonos Era 300 Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitra…

Mitigation only
Fix from $1,950 2025-06-02
Unclassified HIGH 8.6
CVE-2025-48990

NeKernal is a free and open-source operating system stack. Version 0.0.2 has a 1-byte heap overflow in `rt_copy_memory`, which unconditionally wrote …

Patch available
Fix from $1,950 2025-06-02
Mt7902 Firmware CRITICAL 9.8
CVE-2025-20672

In Bluetooth driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with …

Fix: after 3.6
Fix from $2,300 2025-06-02
Hdf5 HIGH 8.8
CVE-2025-44905

hdf5 v1.14.6 was discovered to contain a heap buffer overflow via the H5Z__filter_scaleoffset function.

No fix yet
Fix from $1,950 2025-05-30
Hdf5 HIGH 8.8
CVE-2025-44904

hdf5 v1.14.6 was discovered to contain a heap buffer overflow via the H5VM_memcpyvv function.

No fix yet
Fix from $1,950 2025-05-30
Unclassified HIGH 7.3
CVE-2025-48797

A flaw was found in GIMP when processing certain TGA image files. If a user opens one of these image files that has been specially crafted by an atta…

Mitigation only
Fix from $1,950 2025-05-27
Unclassified CRITICAL 10.0
CVE-2025-23123

A malicious actor with access to the management network could execute a remote code execution (RCE) by exploiting a heap buffer overflow vulnerabilit…

Mitigation only
Fix from $2,300 2025-05-19
Unclassified CRITICAL 9.8
CVE-2025-40906

BSON::XS versions 0.8.4 and earlier for Perl includes a bundled libbson 1.1.7, which has several vulnerabilities. Those include CVE-2017-14227, CVE-…

Mitigation only
Fix from $2,300 2025-05-16
Fcgi MEDIUM 5.3
CVE-2025-40907

FCGI versions 0.44 through 0.82, for Perl, include a vulnerable version of the FastCGI fcgi2 (aka fcgi) library. The included FastCGI library is aff…

Fix: after 0.82
Fix from $1,600 2025-05-16
Semeru Runtime HIGH 7.5
CVE-2025-2900

IBM Semeru Runtime 8.0.302.0 through 8.0.442.0, 11.0.12.0 through 11.0.26.0, 17.0.0.0 through 17.0.14.0, and 21.0.0.0 through 12.0.6.0 is vulnerable …

Fix: after 21.0.6.0
Fix from $1,950 2025-05-14
Orc CRITICAL 9.8
CVE-2025-47436

Heap-based Buffer Overflow vulnerability in Apache ORC. A vulnerability has been identified in the ORC C++ LZO decompression logic, where specially …

Fix: 1.8.9 / 1.9.6+
Fix from $2,300 2025-05-14
Illustrator HIGH 7.8
CVE-2025-30330

Illustrator versions 29.3, 28.7.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code executio…

Fix: 28.7.6 / 29.4+
Fix from $1,950 2025-05-13
365 Copilot HIGH 7.8
CVE-2025-30388

Heap-based buffer overflow in Windows Win32K - GRFX allows an unauthorized attacker to execute code locally.

Fix: 10.0.10240.21014 / 10.0.14393.8066+
Fix from $1,950 2025-05-13