Top technology
Linux 13140
Google 12530
Microsoft 12379
Oracle 6737
Apple 6692
Adobe 6387
Ibm 6330
Cisco 5757
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 6.8
CVE-2024-0145
NVIDIA nvJPEG2000 library contains a vulnerability where an attacker can cause a heap-based buffer overflow issue by means of a specially crafted JPE…
Mitigation only
HIGH 8.8
CVE-2025-1052
Mintty Sixel Image Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbi…
Mintty
3.7.5+
HIGH 8.8
CVE-2025-0903
PDF-XChange Editor RTF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to exe…
Pdf Xchange Editor
10.4.2.390+
HIGH 7.8
CVE-2025-21418 KEV
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
Windows 10 1607
10.0.10240.20915 / 10.0.17763.6893+
HIGH 8.8
CVE-2025-21407
Windows Telephony Service Remote Code Execution Vulnerability
Windows 10 1507
10.0.10240.20915 / 10.0.14393.7785+
HIGH 8.8
CVE-2025-21410
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
Windows Server 2008
10.0.14393.7785 / 10.0.17763.6893+
HIGH 7.0
CVE-2025-21414
Windows Core Messaging Elevation of Privileges Vulnerability
Windows 10 1507
10.0.10240.20915 / 10.0.14393.7785+
HIGH 7.8
CVE-2025-21390
Microsoft Excel Remote Code Execution Vulnerability
365 Apps
16.0.10416.20058+
HIGH 8.1
CVE-2025-21376EPSS 9%
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
Windows 10 1507
10.0.10240.20915 / 10.0.14393.7785+
HIGH 8.8
CVE-2025-21368
Microsoft Digest Authentication Remote Code Execution Vulnerability
Windows 10 1507
10.0.10240.20915 / 10.0.14393.7785+
HIGH 8.8
CVE-2025-21369
Microsoft Digest Authentication Remote Code Execution Vulnerability
Windows 10 1507
10.0.10240.20915 / 10.0.14393.7785+
HIGH 8.8
CVE-2025-21371
Windows Telephony Service Remote Code Execution Vulnerability
Windows 10 1507
10.0.10240.20915 / 10.0.14393.7785+
HIGH 7.8
CVE-2025-21375
Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability
Windows 10 1507
10.0.10240.20915 / 10.0.14393.7785+
HIGH 8.8
CVE-2025-21200
Windows Telephony Service Remote Code Execution Vulnerability
Windows 10 1507
10.0.10240.20915 / 10.0.14393.7785+
HIGH 8.8
CVE-2025-21208
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
Windows Server 2008
10.0.14393.7785 / 10.0.17763.6893+
HIGH 7.0
CVE-2025-21184
Windows Core Messaging Elevation of Privileges Vulnerability
Windows 10 1507
10.0.10240.20915 / 10.0.14393.7785+
HIGH 8.8
CVE-2025-21190
Windows Telephony Service Remote Code Execution Vulnerability
Windows 10 1507
10.0.10240.20915 / 10.0.14393.7785+
HIGH 7.8
CVE-2025-21123
InDesign Desktop versions ID20.0, ID19.5.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code…
Indesign
19.5.2+
MEDIUM 5.0
CVE-2025-1176
A vulnerability was found in GNU Binutils 2.43 and classified as critical. This issue affects the function _bfd_elf_gc_mark_rsec of the file elflink.…
Binutils
Patch available
HIGH 7.8
CVE-2025-22880
Delta Electronics CNCSoft-G2 lacks proper validation of the length of user-supplied data prior to copying it to a fixed-length heap-based buffer. If …
Cncsoft G2
2.1.0.20+
HIGH 7.8
CVE-2023-40222
In Ashlar-Vellum Cobalt versions prior to v12 SP2 Build (1204.200), the affected application lacks proper validation of user-supplied data when parsi…
Cobalt
12.4.1204.200+
MEDIUM 5.9
CVE-2025-0870
A vulnerability was found in Axiomatic Bento4 up to 1.6.0-641. It has been rated as critical. Affected by this issue is the function AP4_DataBuffer::…
Bento4
after 1.6.0-641
MEDIUM 6.5
CVE-2025-0753
A vulnerability classified as critical was found in Axiomatic Bento4 up to 1.6.0. This vulnerability affects the function AP4_StdcFileByteStream::Rea…
Bento4
after 1.6.0
MEDIUM 6.5
CVE-2025-0751
A vulnerability classified as critical has been found in Axiomatic Bento4 up to 1.6.0. This affects the function AP4_BitReader::ReadBits of the compo…
Bento4
after 1.6.0
CRITICAL 9.8
CVE-2024-50698
SunGrow WiNet-SV200.001.00.P027 and earlier versions is vulnerable to heap-based buffer overflow due to bounds checks of the MQTT message content.
Winet S Firmware
200.001.00.p027+
HIGH 8.8
CVE-2019-15690
LibVNCServer 0.9.12 release and earlier contains heap buffer overflow vulnerability within the HandleCursorShape() function in libvncclient/cursor.c.…
Mitigation only
CRITICAL 9.8
CVE-2024-55192
OpenImageIO v3.1.0.0dev was discovered to contain a heap overflow via the component OpenImageIO_v3_1_0::farmhash::inlined::Fetch64(char const*).
Openimageio
No fix yet
HIGH 8.2
CVE-2025-0611
Object corruption in V8 in Google Chrome prior to 132.0.6834.110 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …
Chrome
132.0.6834.110+
HIGH 7.5
CVE-2025-20128
A vulnerability in the Object Linking and Embedding 2 (OLE2) decryption routine of ClamAV could allow an unauthenticated, remote attacker to cause a …
Secure Endpoint
1.0.8 / 1.4.2+
HIGH 8.8
CVE-2023-50739
A buffer overflow vulnerability has been identified in the Internet Printing Protocol (IPP) in various Lexmark devices. The vulnerability can be leve…
Mitigation only