Vulnerability index

Browse CVEs

2,635 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Heap-based Buffer OverflowCWE-122 × clear
HIGH 7.8 CVE-2026-44811 Heap-based buffer overflow in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. Windows 11 26h1 10.0.28000.2269+ Fix from $1,9502026-06-09 MEDIUM 5.5 CVE-2026-44814 Out-of-bounds read in Windows DWM Core Library allows an authorized attacker to disclose information locally. Windows 11 26h1 10.0.28000.2269+ Fix from $1,6002026-06-09 HIGH 7.8 CVE-2026-44808 Heap-based buffer overflow in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. Windows 11 26h1 10.0.28000.2269+ Fix from $1,9502026-06-09 HIGH 7.5 CVE-2026-42992 Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network. Windows App 2.0.1193.0 / 10.0.14393.9234+ Fix from $1,9502026-06-09 HIGH 7.5 CVE-2026-42993 Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network. Windows 10 21h2 10.0.19044.7417 / 10.0.19045.7417+ Fix from $1,9502026-06-09 HIGH 7.5 CVE-2026-44799 Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network. Remote Desktop Client 1.2.7214 / 2.0.1193.0+ Fix from $1,9502026-06-09 HIGH 7.8 CVE-2026-42980EPSS 7% Integer underflow (wrap or wraparound) in Windows NT OS Kernel allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 CRITICAL 9.6 CVE-2026-42904 Heap-based buffer overflow in Windows TCP/IP allows an unauthorized attacker to elevate privileges over an adjacent network. Windows 10 21h2 10.0.19044.7417 / 10.0.19045.7417+ Fix from $2,3002026-06-09 HIGH 7.8 CVE-2026-40404 Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 HIGH 7.0 CVE-2026-41108 Heap-based buffer overflow in Microsoft Windows DNS allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9234 / 10.0.17763.8880+ Fix from $1,9502026-06-09 HIGH 7.3 CVE-2026-24180 NVIDIA DALI contains a vulnerability in a component where an attacker could cause a heap-based buffer overflow. A successful exploit of this vulnerab… Mitigation only Fix from $1,9502026-06-09 MEDIUM 5.3 CVE-2026-41981 Out-of-bounds write vulnerability in the IPC module. Impact: Successful exploitation of this vulnerability may affect availability. No fix yet Fix from $1,6002026-06-09 HIGH 7.5 CVE-2026-42536 Heap-based Buffer Overflow vulnerability in Apache HTTP Server with mod_xml2enc, xml2StartParse, and untrusted content This issue affects Apache HTT… HTTP Server 2.4.68+ Fix from $1,9502026-06-08 HIGH 7.5 CVE-2026-34355 A buffer overflow in mod_proxy_html in Apache HTTP Server 2.4.67 and earlier allows an attack by an untrusted backend. Users are recommended to upgra… HTTP Server 2.4.68+ Fix from $1,9502026-06-08 HIGH 7.5 CVE-2026-34356 Heap-based Buffer Overflow vulnerability in Apache HTTP Server with malicious backend servers and ProxyPassReverseCookie* This issue affects Apache … HTTP Server 2.4.68+ Fix from $1,9502026-06-08 HIGH 7.5 CVE-2026-22164 Software installed and run as a non-privileged user may conduct improper GPU system calls to corrupt kernel heap memory. By creating resources of … Mitigation only Fix from $1,9502026-06-08 MEDIUM 6.5 CVE-2026-11143 Out of bounds read in Extensions in Google Chrome on Linux prior to 149.0.7827.53 allowed an attacker who convinced a user to install a malicious ext… Chrome 149.0.7827.53+ Fix from $1,6002026-06-04 HIGH 8.8 CVE-2026-11124 Integer overflow in Skia in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML … Chrome 149.0.7827.53+ Fix from $1,9502026-06-04 HIGH 8.8 CVE-2026-10995 Heap buffer overflow in TabStrip in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gest… Chrome 149.0.7827.53+ Fix from $1,9502026-06-04 HIGH 8.8 CVE-2026-10989 Inappropriate implementation in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI ge… Chrome 149.0.7827.53+ Fix from $1,9502026-06-04 MEDIUM 6.5 CVE-2026-10993 Heap buffer overflow in Skia in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to obtain potentially sensitive information from proce… Chrome 149.0.7827.53+ Fix from $1,6002026-06-04 HIGH 7.5 CVE-2026-10946 Heap buffer overflow in Media in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gesture… Chrome 149.0.7827.53+ Fix from $1,9502026-06-04 HIGH 8.3 CVE-2026-10949 Heap buffer overflow in Video in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potential… Chrome 149.0.7827.53+ Fix from $1,9502026-06-04 HIGH 8.3 CVE-2026-10929 Heap buffer overflow in ANGLE in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process t… Chrome 149.0.7827.53+ Fix from $1,9502026-06-04 HIGH 7.8 CVE-2026-0100 In Load of LoadedArsc.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege wi… Android Mitigation only Fix from $1,9502026-06-01 HIGH 8.0 CVE-2026-0059 In multiple functions of sdp_discovery.cc, there is a possible way to achieve code execution due to a heap buffer overflow. This could lead to remote… Android Mitigation only Fix from $1,9502026-06-01 MEDIUM 5.5 CVE-2025-55664 A heap buffer overflow in the m2tsdmx_send_packet function (filters/dmx_m2ts.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial of Service (Do… Patch available Fix from $1,6002026-06-01 MEDIUM 5.3 CVE-2026-10229 A vulnerability was determined in Assimp up to 6.0.4. This affects the function HL1MDLLoader::read_meshes of the file HL1MDLLoader.cpp of the compone… No fix yet Fix from $1,6002026-06-01 MEDIUM 5.3 CVE-2026-10230 A vulnerability was identified in Assimp up to 6.0.4. This impacts the function Assimp::MDL::HalfLife::HL1MDLLoader::read_animations of the file HL1M… Mitigation only Fix from $1,6002026-06-01 MEDIUM 5.3 CVE-2026-10231 A security flaw has been discovered in Assimp up to 6.0.4. Affected is the function HL1MDLLoader::extract_anim_value of the file HL1MDLLoader.cpp of … No fix yet Fix from $1,6002026-06-01