Vulnerability index

Browse CVEs

2,635 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Heap-based Buffer OverflowCWE-122 × clear
HIGH 7.5 CVE-2026-46520 ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, when reading… Imagemagick 6.9.13-48 / 7.1.2-23+ Fix from $1,9502026-06-10 HIGH 7.8 CVE-2026-2049 GIMP HDR File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary… Mitigation only Fix from $1,9502026-06-10 MEDIUM 6.5 CVE-2026-11604 An incorrect buffer size calculation in the epoch key generator in OpenVPN ovpn-dco-win version 2.0.0 through 2.8.3 allows a remote authenticated pee… Openvpn after 2.8.3 Fix from $1,6002026-06-10 MEDIUM 6.5 CVE-2026-11884 A heap buffer overflow flaw was found in 389 Directory Server. When serializing objectclass definitions, the oc_superior (SUP) field length is omitte… Mitigation only Fix from $1,6002026-06-10 HIGH 7.1 CVE-2026-45542 ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. In versions 5.2.6, 5.3.5, 5.4.4, 5.5.4, and 6.0, a heap buffer overflow exis… Esp Idf Patch available Fix from $1,9502026-06-10 HIGH 7.8 CVE-2026-48291 Format Plugins versions 1.1.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in… Format Plugins 1.1.3+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-48292 Format Plugins versions 1.1.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in… Format Plugins 1.1.3+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-47952 Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitr… Acrobat Dc 24.001.30383 / 26.001.21662+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-11822 SQLite before 3.53.2 contains memory corruption vulnerabilities in the FTS5 full-text search extension that allow attackers to cause process crashes,… SQLite 3.53.2+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-11824 SQLite before 3.53.2 contains a heap-based buffer overflow vulnerability in the FTS5 full-text search extension that allows attackers to cause a cras… SQLite 3.53.2+ Fix from $1,9502026-06-09 HIGH 7.5 CVE-2023-43688 An issue was discovered in Malwarebytes 4.x and 5.x (and Nebula 2020-10-21 and later). There is a Heap buffer overflow in various buffer encryption u… Mitigation only Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-34707 InCopy versions 21.3, 20.5.3 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in … Incopy 20.5.4 / 21.4+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-34698 InDesign Desktop versions 21.3, 20.5.3 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code exe… Indesign 20.5.4 / 21.4+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-34699 InDesign Desktop versions 21.3, 20.5.3 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code exe… Indesign 20.5.4 / 21.4+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-34701 InDesign Desktop versions 21.3, 20.5.3 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code exe… Indesign 20.5.4 / 21.4+ Fix from $1,9502026-06-09 CRITICAL 9.1 CVE-2026-49840 FreeSWITCH is a Software Defined Telecom Stack enabling the digital transformation from proprietary telecom switches to a software implementation tha… Freeswitch 1.11.1+ Fix from $2,3002026-06-09 CRITICAL 9.8 CVE-2026-49841 FreeSWITCH is a Software Defined Telecom Stack enabling the digital transformation from proprietary telecom switches to a software implementation tha… Freeswitch 1.11.1+ Fix from $2,3002026-06-09 HIGH 7.8 CVE-2026-48574 Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code locally. Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 HIGH 8.2 CVE-2026-47652 Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to execute code locally. Windows 11 23h2 10.0.20348.5256 / 10.0.22631.7219+ Fix from $1,9502026-06-09 HIGH 8.4 CVE-2026-47635 Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. Office 2024 Mitigation only Fix from $1,9502026-06-09 HIGH 8.8 CVE-2026-47289 Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network. Windows App 2.0.1193.0 / 10.0.14393.9234+ Fix from $1,9502026-06-09 CRITICAL 9.8 CVE-2026-47291EPSS 23% Integer overflow or wraparound in Windows HTTP.sys allows an unauthorized attacker to execute code over a network. Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $2,3002026-06-09 CRITICAL 9.8 CVE-2026-45657EPSS 15% Use after free in Windows Kernel allows an unauthorized attacker to execute code over a network. Windows 11 23h2 10.0.20348.5256 / 10.0.22631.7219+ Fix from $2,3002026-06-09 HIGH 7.0 CVE-2026-45653 Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-45636 Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally. Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-45638 Heap-based buffer overflow in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-45475 Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. 365 Apps 16.0.19725.20384+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-45469 Integer underflow (wrap or wraparound) in Microsoft Office Excel allows an unauthorized attacker to execute code locally. 365 Apps Mitigation only Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-44819 Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. 365 Apps 16.0.19725.20384+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-44824 Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. 365 Apps 16.0.19725.20384+ Fix from $1,9502026-06-09