Vulnerability index

Browse CVEs

2,663 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Heap-based Buffer OverflowCWE-122 × clear
Hdf5 MEDIUM 5.5
CVE-2025-2924

A vulnerability, which was classified as problematic, was found in HDF5 up to 1.14.6. This affects the function H5HL__fl_deserialize of the file src/…

Fix: after 1.14.6
Fix from $1,600 2025-03-28
Fig2dev MEDIUM 6.6
CVE-2025-31164

heap-buffer overflow in fig2dev in version 3.2.9a allows an attacker to availability via local input manipulation via  create_line_with_spline.

No fix yet
Fix from $1,600 2025-03-28
Hdf5 MEDIUM 5.5
CVE-2025-2915

A vulnerability classified as problematic was found in HDF5 up to 1.14.6. This vulnerability affects the function H5F__accum_free of the file src/H5F…

Fix: after 1.14.6
Fix from $1,600 2025-03-28
Hdf5 MEDIUM 5.3
CVE-2025-2912

A vulnerability was found in HDF5 up to 1.14.6. It has been declared as problematic. Affected by this vulnerability is the function H5O_msg_flush of …

Fix: 2.0.0+
Fix from $1,600 2025-03-28
Upx MEDIUM 5.5
CVE-2025-2849

A vulnerability, which was classified as problematic, was found in UPX up to 5.0.0. Affected is the function PackLinuxElf64::un_DT_INIT of the file s…

Fix: after 5.0.0
Fix from $1,600 2025-03-27
Cryptolib CRITICAL 9.1
CVE-2025-30216

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communication…

Fix: 1.4.0+
Fix from $2,300 2025-03-25
Keyshot HIGH 7.8
CVE-2025-2531

Luxion KeyShot DAE File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute…

Fix: 2025.1+
Fix from $1,950 2025-03-25
Assimp HIGH 8.8
CVE-2025-2756

A vulnerability classified as critical has been found in Open Asset Import Library Assimp 5.4.3. This affects the function Assimp::AC3DImporter::Conv…

No fix yet
Fix from $1,950 2025-03-25
Assimp HIGH 8.8
CVE-2025-2757

A vulnerability classified as critical was found in Open Asset Import Library Assimp 5.4.3. This vulnerability affects the function AI_MD5_PARSE_STRI…

No fix yet
Fix from $1,950 2025-03-25
Assimp HIGH 8.8
CVE-2025-2754

A vulnerability was found in Open Asset Import Library Assimp 5.4.3. It has been declared as critical. Affected by this vulnerability is the function…

No fix yet
Fix from $1,950 2025-03-25
Dap 1620 Firmware CRITICAL 9.8
CVE-2025-2618

A vulnerability, which was classified as critical, has been found in D-Link DAP-1620 1.03. Affected by this issue is the function set_ws_action of th…

No fix yet
Fix from $2,300 2025-03-22
Assimp HIGH 8.8
CVE-2025-2592

A vulnerability, which was classified as critical, has been found in Open Asset Import Library Assimp 5.4.3. This issue affects the function CSMImpor…

Patch available
Fix from $1,950 2025-03-21
Wabt MEDIUM 6.8
CVE-2025-2584

A vulnerability was found in WebAssembly wabt 1.0.36. It has been declared as critical. This vulnerability affects the function BinaryReaderInterp::G…

No fix yet
Fix from $1,600 2025-03-21
Libbson HIGH 7.5
CVE-2025-0755

The various bson_append functions in the MongoDB C driver library may be susceptible to buffer overflow when performing operations that could result …

Fix: 1.27.5 / 7.0.16+
Fix from $1,950 2025-03-18
Cryptolib CRITICAL 9.8
CVE-2025-29911

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communication…

No fix yet
Fix from $2,300 2025-03-17
Cryptolib CRITICAL 9.8
CVE-2025-29912

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communication…

Fix: 1.4.0+
Fix from $2,300 2025-03-17
Wabt HIGH 8.8
CVE-2025-2368

A vulnerability was found in WebAssembly wabt 1.0.36 and classified as critical. This issue affects the function wabt::interp::(anonymous namespace):…

Patch available
Fix from $1,950 2025-03-17
Matio HIGH 8.1
CVE-2025-2338

A vulnerability, which was classified as critical, was found in tbeu matio 1.5.28. Affected is the function strdup_vprintf of the file src/io.c. The …

No fix yet
Fix from $1,950 2025-03-16
Matio HIGH 8.1
CVE-2025-2337

A vulnerability, which was classified as critical, has been found in tbeu matio 1.5.28. This issue affects the function Mat_VarPrint of the file src/…

No fix yet
Fix from $1,950 2025-03-16
Hdf5 HIGH 7.8
CVE-2025-2308

A vulnerability, which was classified as critical, was found in HDF5 1.14.6. This affects the function H5Z__scaleoffset_decompress_one_byte of the co…

No fix yet
Fix from $1,950 2025-03-14
Hdf5 HIGH 7.8
CVE-2025-2309

A vulnerability has been found in HDF5 1.14.6 and classified as critical. This vulnerability affects the function H5T__bit_copy of the component Type…

No fix yet
Fix from $1,950 2025-03-14
Hdf5 HIGH 7.8
CVE-2025-2310

A vulnerability was found in HDF5 1.14.6 and classified as critical. This issue affects the function H5MM_strndup of the component Metadata Attribute…

No fix yet
Fix from $1,950 2025-03-14
Autocad Mechanical HIGH 7.8
CVE-2025-1651

A maliciously crafted MODEL file, when parsed through Autodesk AutoCAD, can force a Heap-Based Overflow vulnerability. A malicious actor can leverage…

Fix: 2022.1.6 / 2023.1.7+
Fix from $1,950 2025-03-13
Autocad HIGH 7.8
CVE-2025-1429

A maliciously crafted MODEL file, when parsed through Autodesk AutoCAD, can force a Heap-Based Overflow vulnerability. A malicious actor can leverage…

Fix: 2022.1.6 / 2023.1.7+
Fix from $1,950 2025-03-13
Cobalt HIGH 7.8
CVE-2025-2019

Ashlar-Vellum Cobalt VC6 File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to e…

Mitigation only
Fix from $1,950 2025-03-11
Substance 3d Modeler HIGH 7.8
CVE-2025-27173

Substance3D - Modeler versions 1.15.0 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code exec…

Fix: after 1.15.0
Fix from $1,950 2025-03-11
Indesign HIGH 7.8
CVE-2025-27177

InDesign Desktop versions ID20.1, ID19.5.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code…

Fix: 19.5.3 / 20.2+
Fix from $1,950 2025-03-11
Indesign HIGH 7.8
CVE-2025-27171

InDesign Desktop versions ID20.1, ID19.5.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code…

Fix: 19.5.3 / 20.2+
Fix from $1,950 2025-03-11
Indesign HIGH 7.8
CVE-2025-24453

InDesign Desktop versions ID20.1, ID19.5.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code…

Fix: 19.5.3 / 20.2+
Fix from $1,950 2025-03-11
Substance 3d Sampler HIGH 7.8
CVE-2025-24443

Substance3D - Sampler versions 4.5.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execu…

Fix: 5.0+
Fix from $1,950 2025-03-11