Vulnerability index

Browse CVEs

8,423 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Windows 11 24h2 MEDIUM 5.5
CVE-2026-50420

Out-of-bounds read in Windows HTTP.sys allows an unauthorized attacker to disclose information locally.

Fix: 10.0.26100.8875 / 10.0.26100.33158+
Fix from $1,600 2026-07-14
Windows 10 1607 HIGH 7.8
CVE-2026-50422

Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.9339 / 10.0.17763.9020+
Fix from $1,950 2026-07-14
365 Apps MEDIUM 5.5
CVE-2026-50408

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

Fix: 16.0.10417.20175+
Fix from $1,600 2026-07-14
Windows 10 21h2 HIGH 7.8
CVE-2026-50399

Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally.

Fix: 10.0.19044.7548 / 10.0.19045.7548+
Fix from $1,950 2026-07-14
Windows 10 1809 MEDIUM 5.5
CVE-2026-50401

Out-of-bounds read in Windows Cloud Files Mini Filter Driver allows an authorized attacker to disclose information locally.

Fix: 10.0.17763.9020 / 10.0.19044.7548+
Fix from $1,600 2026-07-14
Windows 10 1607 HIGH 7.8
CVE-2026-50388

Out-of-bounds read in Windows NTFS allows an unauthorized attacker to execute code locally.

Fix: 10.0.14393.9339 / 10.0.17763.9020+
Fix from $1,950 2026-07-14
Windows 10 1607 HIGH 7.8
CVE-2026-50377

Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.9339 / 10.0.17763.9020+
Fix from $1,950 2026-07-14
Windows 10 1607 MEDIUM 5.5
CVE-2026-49177

Out-of-bounds read in Windows TCP/IP allows an authorized attacker to disclose information locally.

Fix: 10.0.14393.9339 / 10.0.17763.9020+
Fix from $1,600 2026-07-14
Audition MEDIUM 5.5
CVE-2026-47969

Audition is affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulner…

Fix: 25.6.6 / 26.3+
Fix from $1,600 2026-07-14
Windows 10 1607 HIGH 7.8
CVE-2026-58609

Out-of-bounds read in Microsoft Graphics Component allows an unauthorized attacker to execute code locally.

Fix: 10.0.14393.9339 / 10.0.17763.9020+
Fix from $1,950 2026-07-14
Windows 10 1607 MEDIUM 5.5
CVE-2026-58614

Out-of-bounds read in Windows Kernel allows an authorized attacker to bypass a security feature locally.

Fix: 10.0.14393.9339 / 10.0.17763.9020+
Fix from $1,600 2026-07-14
Windows 10 1607 HIGH 7.5
CVE-2026-57979

Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network.

Fix: 10.0.14393.9339 / 10.0.17763.9020+
Fix from $1,950 2026-07-14
Unclassified HIGH 7.1
CVE-2026-56193

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

Mitigation only
Fix from $1,950 2026-07-14
Windows 11 24h2 HIGH 7.0
CVE-2026-54996

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver allows an authorized attacker…

Fix: 10.0.26100.8875 / 10.0.26100.33158+
Fix from $1,950 2026-07-14
365 Apps MEDIUM 6.1
CVE-2026-54988

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

Fix: 16.0.10417.20175+
Fix from $1,600 2026-07-14
Windows 11 24h2 HIGH 7.0
CVE-2026-54991

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver allows an authorized attacker…

Fix: 10.0.26100.8875 / 10.0.26100.33158+
Fix from $1,950 2026-07-14
Windows 11 24h2 HIGH 7.0
CVE-2026-54111

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver allows an authorized attacker…

Fix: 10.0.26100.8875 / 10.0.26100.33158+
Fix from $1,950 2026-07-14
Pillow CRITICAL 9.1
CVE-2026-54058

Pillow is a Python imaging library. Prior to 12.3.0, when Pillow loads an uncompressed McIdas AREA image from a filename through the mmap raw codec p…

Fix: 12.3.0+
Fix from $2,300 2026-07-14
Windows 10 1607 MEDIUM 5.5
CVE-2026-50300

Integer underflow (wrap or wraparound) in Windows Kernel allows an authorized attacker to disclose information locally.

Fix: 10.0.14393.9339 / 10.0.17763.9020+
Fix from $1,600 2026-07-14
Unclassified CRITICAL 9.1
CVE-2026-60082

DBI versions before 1.651 for Perl do not enforce statement handle consistency with the row. When the statement handle had no fields but the source …

Mitigation only
Fix from $2,300 2026-07-14
Pillow HIGH 7.5
CVE-2026-59198

Pillow is a Python imaging library. From 5.2.0 until 12.3.0, Pillow's TGA RLE encoder reads past its packed row buffer when saving a mode 1 image wit…

Fix: 12.3.0+
Fix from $1,950 2026-07-14
Fortiauthenticator HIGH 7.5
CVE-2025-53379

A out-of-bounds read vulnerability in Fortinet FortiAuthenticator 6.6.0 through 6.6.2, FortiAuthenticator 6.5 all versions may allow a remote unauthe…

Fix: after 6.6.2
Fix from $1,950 2026-07-14
Zephyr CRITICAL 9.1
CVE-2026-10672

subsys/net/lib/lwm2m/lwm2m_pull_context.c copied the firmware-update Package URI into a fixed static buffer (context.uri, size CONFIG_LWM2M_SWMGMT_PA…

Mitigation only
Fix from $2,300 2026-07-14
Unclassified MEDIUM 6.8
CVE-2026-53566

Out-of-bounds read vulnerability in Citrix Citrix Secure Access Client for Windows. This issue affects Citrix Secure Access Client for Windows: befo…

Mitigation only
Fix from $1,600 2026-07-14
Crypt\ CRITICAL 9.1
CVE-2026-58102

Crypt::OpenSSL::X509 versions before 2.1.3 for Perl allow a heap out-of-bounds read via a long certificate extension OID in hv_exts. When building t…

Fix: 2.1.3+
Fix from $2,300 2026-07-13
Opener CRITICAL 9.1
CVE-2026-51537

EIPStackGroup OpENer 2.3.0 (commit 76b95cf) has an out-of-bounds read issue in Connection Manager handling of ForwardOpen requests when processing sh…

Mitigation only
Fix from $2,300 2026-07-13
Opener CRITICAL 9.1
CVE-2026-51541

OpENer 2.3.0 (commit 76b95cf) has an out-of-bounds read issue in CIP message parsing when handling malformed explicit requests with a forged EPath si…

Mitigation only
Fix from $2,300 2026-07-13
Unclassified MEDIUM 6.1
CVE-2026-60103

Blender 3.0.0 through 5.1.2 contains an out-of-bounds read vulnerability that allows attackers to trigger a crash or read adjacent heap memory by sup…

Mitigation only
Fix from $1,600 2026-07-13
Perl HIGH 8.4
CVE-2026-57432

Perl versions through 5.43.10 have an integer overflow in S_measure_struct leading to an out-of-bounds heap read in pack and unpack. S_measure_struc…

Fix: after 5.43.10
Fix from $1,950 2026-07-13
Freerdp MEDIUM 6.5
CVE-2026-57157

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.28.0, FreeRDP server implementations with the MS-RDPECAM camera device en…

Fix: 3.28.0+
Fix from $1,600 2026-07-10