Vulnerability index

Browse CVEs

8,440 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Android MEDIUM 6.5
CVE-2026-0128

In RtcpFbPacket::decodeRtcpFbPacket, there is a possible out of bounds read due to an integer overflow. This could lead to remote information disclos…

Mitigation only
Fix from $1,600 2026-06-16
Android HIGH 7.3
CVE-2026-0131

In RtpPacket::decodePacket, there is a possible out of bounds access due to an integer overflow. This could lead to local escalation of privilege wit…

Mitigation only
Fix from $1,950 2026-06-16
Unclassified MEDIUM 5.5
CVE-2026-4367

A flaw was found in libXpm. A local user with low privileges could exploit an Out-of-Bounds Read vulnerability in the `xpmNextWord()` function by pro…

Mitigation only
Fix from $1,600 2026-06-16
Dng Software Development Kit MEDIUM 5.5
CVE-2026-47927

DNG SDK versions 1.7.1 2536 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An att…

Fix: 1.7.1.2611+
Fix from $1,600 2026-06-16
Dng Software Development Kit MEDIUM 5.5
CVE-2026-47934

DNG SDK versions 1.7.1 2536 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An att…

Fix: 1.7.1.2611+
Fix from $1,600 2026-06-16
Dng Software Development Kit MEDIUM 5.5
CVE-2026-47963

DNG SDK versions 1.7.1 2536 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An att…

Fix: 1.7.1.2611+
Fix from $1,600 2026-06-16
Stable Diffusion.cpp MEDIUM 5.5
CVE-2026-47748

stable-diffusion.cpp is a pure C/C++ library for running diffusion model (Stable Diffusion, Flux, Wan, Qwen Image, Z-Image, and more) inference. Vers…

Patch available
Fix from $1,600 2026-06-16
Firefox HIGH 7.5
CVE-2026-12314

Memory safety bug fixed in Firefox 152. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12.

Fix: 140.12.0 / 152.0.0+
Fix from $1,950 2026-06-16
Firefox HIGH 7.5
CVE-2026-12310

Memory safety bug fixed in Firefox 152. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12.

Fix: 140.12.0 / 152.0.0+
Fix from $1,950 2026-06-16
Firefox MEDIUM 5.4
CVE-2026-12298

Memory safety bug fixed in Firefox 152. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12.

Fix: 140.12.0 / 152.0+
Fix from $1,600 2026-06-16
Unclassified MEDIUM 5.6
CVE-2026-1765

A flaw was found in the `tracker-extract-mp3` component of GNOME localsearch (previously known as tracker-miners). This vulnerability, a heap buffer …

Mitigation only
Fix from $1,600 2026-06-16
Enterprise Linux MEDIUM 5.6
CVE-2026-1764

A flaw was found in GNOME localsearch (previously known as tracker-miners) MP3 Extractor. When processing specially crafted MP3 files containing ID3v…

No fix yet
Fix from $1,600 2026-06-16
Unclassified CRITICAL 9.1
CVE-2026-12087

Socket versions before 2.041 for Perl have an out-of-bounds heap read. In Socket.xs, pack_ip_mreq_source() checks the length of its source argument …

Patch available
Fix from $2,300 2026-06-15
Unclassified HIGH 7.1
CVE-2026-53703

A vulnerability was found in the GStreamer RealMedia demuxer (gst-plugins-ugly). When processing a RealMedia (.rm) file, the demuxer parses MDPR (med…

Mitigation only
Fix from $1,950 2026-06-15
Unclassified HIGH 7.1
CVE-2026-53704

A flaw was found in GStreamer's RealMedia demuxer in the gst-plugins-ugly package. When processing a RealMedia file containing a specially crafted FI…

Mitigation only
Fix from $1,950 2026-06-15
Unclassified HIGH 7.1
CVE-2026-52719

An out-of-bounds read vulnerability was found in the VA JPEG decoder in GStreamer's gst-plugins-bad. The JPEG parser reads a segment length value fro…

Mitigation only
Fix from $1,950 2026-06-15
Unclassified MEDIUM 5.3
CVE-2026-52721

Multiple out-of-bounds read vulnerabilities were found in GStreamer's pcapparse element. Malformed PCAP records can trigger reads beyond buffer bound…

Mitigation only
Fix from $1,600 2026-06-15
Unclassified HIGH 8.2
CVE-2026-54412

LiamBindle MQTT-C through version 1.1.6 contains a heap-based out-of-bounds read and integer underflow in the mqtt_unpack_publish_response function i…

Mitigation only
Fix from $1,950 2026-06-14
Unclassified HIGH 8.2
CVE-2026-54413

driftregion iso14229 through 0.9.0 contains an integer underflow and downstream out-of-bounds read in the Handle_0x27_SecurityAccess function in iso1…

Mitigation only
Fix from $1,950 2026-06-14
Unclassified HIGH 7.8
CVE-2025-9033

Heap buffer out-of-bounds read vulnerability in Avira Antivirus engine when scanning a malformed PDF file may allow Local Execution of Code or Denial…

Mitigation only
Fix from $1,950 2026-06-12
Unclassified HIGH 7.8
CVE-2025-9032

Heap buffer out-of-bounds read vulnerability in Avira Antivirus engine when scanning a malformed Windows PE file may allow Local Execution of Code or…

Mitigation only
Fix from $1,950 2026-06-12
Unclassified HIGH 7.8
CVE-2025-7011

Heap out-of-bounds read vulnerability in Avast Antivirus when scanning a malformed zip file containing XML may allow Local Execution of Code or Denia…

Mitigation only
Fix from $1,950 2026-06-12
Unclassified HIGH 7.8
CVE-2025-7017

Heap buffer out-of-bounds read vulnerability in Avira Antivirus engine when scanning a malformed Windows MSI file may allow Local Execution of Code o…

Mitigation only
Fix from $1,950 2026-06-12
Unclassified HIGH 7.8
CVE-2025-7002

Heap buffer out-of-bounds read vulnerability in Avira Antivirus engine when scanning a malformed PDF file may allow Local Execution of Code or Denial…

Mitigation only
Fix from $1,950 2026-06-12
Unclassified HIGH 7.8
CVE-2025-7003

Heap buffer out-of-bounds read vulnerability in Avira Antivirus engine when scanning a malformed PDF file may allow Local Execution of Code or Denial…

Mitigation only
Fix from $1,950 2026-06-12
Unclassified HIGH 7.8
CVE-2025-7008

Heap buffer out-of-bounds read vulnerability in Avast Antivirus when scanning a malformed Windows PE file with .NET metadata may allow Local Executio…

Mitigation only
Fix from $1,950 2026-06-12
Unclassified HIGH 7.8
CVE-2025-7009

Heap buffer out-of-bounds read vulnerability in Avast Antivirus when scanning a malformed Windows PE file may allow Local Execution of Code or Denial…

Mitigation only
Fix from $1,950 2026-06-12
Unclassified MEDIUM 5.4
CVE-2026-47223

NanaZip is the 7-Zip derivative intended for the modern Windows experience. From version 3.0.1000.0 to before version 6.0.1698.0, a heap out-of-bound…

Mitigation only
Fix from $1,600 2026-06-12
Unclassified MEDIUM 5.4
CVE-2026-47222

NanaZip is the 7-Zip derivative intended for the modern Windows experience. From version 3.0.1000.0 to before version 6.0.1698.0, a heap out-of-bound…

Mitigation only
Fix from $1,600 2026-06-12
Unbounded Spsc MEDIUM 5.8
CVE-2026-46690

unbounded_spsc is an "unbounded" extension of bounded_spsc_queue. In versions 0.2.0 and prior, sender::send pointer-as-value transmute causes OOB rea…

Fix: after 0.2.0
Fix from $1,600 2026-06-12