Vulnerability index

Browse CVEs

2,663 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Heap-based Buffer OverflowCWE-122 × clear
HIGH 8.4 CVE-2025-49850 A Heap-based Buffer Overflow vulnerability exists within the parsing of PRJ files. The issues result from the lack of proper validation of user-suppl… Mitigation only Fix from $1,9502025-06-17 MEDIUM 5.3 CVE-2025-6120 A vulnerability classified as critical was found in Open Asset Import Library Assimp up to 5.4.3. Affected by this vulnerability is the function read… Assimp after 5.4.3 Fix from $1,6002025-06-16 CRITICAL 9.8 CVE-2025-47868 Out-of-bounds Write resulting in possible Heap-based Buffer Overflow vulnerability was discovered in tools/bdf-converter font conversion utility that… Nuttx 12.9.0+ Fix from $2,3002025-06-16 HIGH 8.4 CVE-2025-32717 Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally. 365 Apps Mitigation only Fix from $1,9502025-06-11 HIGH 7.8 CVE-2025-47107 InCopy versions 20.2, 19.5.3 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in … Incopy 19.5.4 / 20.3+ Fix from $1,9502025-06-10 HIGH 7.8 CVE-2025-47174 Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. 365 Apps Mitigation only Fix from $1,9502025-06-10 HIGH 7.8 CVE-2025-47169 Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally. 365 Apps Mitigation only Fix from $1,9502025-06-10 HIGH 8.4 CVE-2025-47162 Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. 365 Apps No fix yet Fix from $1,9502025-06-10 HIGH 8.8 CVE-2025-33066 Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network. Windows 10 1507 10.0.10240.21034 / 10.0.14393.8148+ Fix from $1,9502025-06-10 HIGH 8.8 CVE-2025-33064 Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over a network. Windows 10 1507 10.0.10240.21034 / 10.0.14393.8148+ Fix from $1,9502025-06-10 HIGH 7.8 CVE-2025-32718 Integer overflow or wraparound in Windows SMB allows an authorized attacker to elevate privileges locally. Windows 10 1507 10.0.10240.21034 / 10.0.14393.8148+ Fix from $1,9502025-06-10 HIGH 7.8 CVE-2025-32713 Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally. Windows 10 1507 10.0.10240.21034 / 10.0.14393.8148+ Fix from $1,9502025-06-10 HIGH 7.8 CVE-2025-30317 InDesign Desktop versions ID20.2, ID19.5.3 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code… Indesign 19.5.4 / 20.3+ Fix from $1,9502025-06-10 MEDIUM 6.6 CVE-2025-5915 A vulnerability has been identified in the libarchive library. This flaw can lead to a heap buffer over-read due to the size of a filter block potent… Openshift Container Platform 3.8.0+ Fix from $1,6002025-06-09 HIGH 8.8 CVE-2025-5750 WOLFBOX Level 2 EV Charger tuya_svc_devos_activate_result_parse Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability al… Level 2 Ev Charger Firmware Mitigation only Fix from $1,9502025-06-06 MEDIUM 5.4 CVE-2024-56805 A buffer overflow vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remot… Qts Mitigation only Fix from $1,6002025-06-06 MEDIUM 5.5 CVE-2025-48910 Buffer overflow vulnerability in the DFile module Impact: Successful exploitation of this vulnerability may affect availability. Harmonyos No fix yet Fix from $1,6002025-06-06 HIGH 8.8 CVE-2025-1051 Sonos Era 300 Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitra… Era 300 Firmware Mitigation only Fix from $1,9502025-06-02 HIGH 8.6 CVE-2025-48990 NeKernal is a free and open-source operating system stack. Version 0.0.2 has a 1-byte heap overflow in `rt_copy_memory`, which unconditionally wrote … Patch available Fix from $1,9502025-06-02 CRITICAL 9.8 CVE-2025-20672 In Bluetooth driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with … Mt7902 Firmware after 3.6 Fix from $2,3002025-06-02 HIGH 8.8 CVE-2025-44905 hdf5 v1.14.6 was discovered to contain a heap buffer overflow via the H5Z__filter_scaleoffset function. Hdf5 No fix yet Fix from $1,9502025-05-30 HIGH 8.8 CVE-2025-44904 hdf5 v1.14.6 was discovered to contain a heap buffer overflow via the H5VM_memcpyvv function. Hdf5 No fix yet Fix from $1,9502025-05-30 HIGH 7.3 CVE-2025-48797 A flaw was found in GIMP when processing certain TGA image files. If a user opens one of these image files that has been specially crafted by an atta… Mitigation only Fix from $1,9502025-05-27 CRITICAL 10.0 CVE-2025-23123 A malicious actor with access to the management network could execute a remote code execution (RCE) by exploiting a heap buffer overflow vulnerabilit… Mitigation only Fix from $2,3002025-05-19 CRITICAL 9.8 CVE-2025-40906 BSON::XS versions 0.8.4 and earlier for Perl includes a bundled libbson 1.1.7, which has several vulnerabilities. Those include CVE-2017-14227, CVE-… Mitigation only Fix from $2,3002025-05-16 MEDIUM 5.3 CVE-2025-40907 FCGI versions 0.44 through 0.82, for Perl, include a vulnerable version of the FastCGI fcgi2 (aka fcgi) library. The included FastCGI library is aff… Fcgi after 0.82 Fix from $1,6002025-05-16 HIGH 7.5 CVE-2025-2900 IBM Semeru Runtime 8.0.302.0 through 8.0.442.0, 11.0.12.0 through 11.0.26.0, 17.0.0.0 through 17.0.14.0, and 21.0.0.0 through 12.0.6.0 is vulnerable … Semeru Runtime after 21.0.6.0 Fix from $1,9502025-05-14 CRITICAL 9.8 CVE-2025-47436 Heap-based Buffer Overflow vulnerability in Apache ORC. A vulnerability has been identified in the ORC C++ LZO decompression logic, where specially … Orc 1.8.9 / 1.9.6+ Fix from $2,3002025-05-14 HIGH 7.8 CVE-2025-30330 Illustrator versions 29.3, 28.7.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code executio… Illustrator 28.7.6 / 29.4+ Fix from $1,9502025-05-13 HIGH 7.8 CVE-2025-30388 Heap-based buffer overflow in Windows Win32K - GRFX allows an unauthorized attacker to execute code locally. 365 Copilot 10.0.10240.21014 / 10.0.14393.8066+ Fix from $1,9502025-05-13