Vulnerability index

Browse CVEs

8,440 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Chrome HIGH 8.8
CVE-2026-7995

Out of bounds read in AdFilter in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to execute arbitrary code inside a sandbox via a cra…

Fix: 148.0.7778.96+
Fix from $1,950 2026-05-06
Chrome HIGH 8.1
CVE-2026-7981

Out of bounds read in Codecs in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to obtain potentially sensitive information from proce…

Fix: 148.0.7778.96+
Fix from $1,950 2026-05-06
Chrome MEDIUM 5.4
CVE-2026-7950

Out of bounds read and write in GFX in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to perform arbitrary read/write via malicious n…

Fix: 148.0.7778.96+
Fix from $1,600 2026-05-06
Chrome HIGH 8.8
CVE-2026-7899

Out of bounds read and write in V8 in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to execute arbitrary code inside a sandbox via a…

Fix: 148.0.7778.96+
Fix from $1,950 2026-05-06
Chrome HIGH 8.8
CVE-2026-7902

Out of bounds memory access in V8 in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to execute arbitrary code inside a sandbox via a …

Fix: 148.0.7778.96+
Fix from $1,950 2026-05-06
Linux Kernel HIGH 7.1
CVE-2026-43280

In the Linux kernel, the following vulnerability has been resolved: drm/xe: Add bounds check on pat_index to prevent OOB kernel read in madvise Whe…

Fix: 6.18.16 / 6.19.6+
Fix from $1,950 2026-05-06
Linux Kernel HIGH 7.1
CVE-2026-43281

In the Linux kernel, the following vulnerability has been resolved: mailbox: Prevent out-of-bounds access in fw_mbox_index_xlate() Although it is g…

Fix: 6.1.167 / 6.6.130+
Fix from $1,950 2026-05-06
Linux Kernel HIGH 8.4
CVE-2026-43274

In the Linux kernel, the following vulnerability has been resolved: mailbox: mchp-ipc-sbi: fix out-of-bounds access in mchp_ipc_get_cluster_aggr_irq…

Fix: 6.18.16 / 6.19.6+
Fix from $1,950 2026-05-06
Linux Kernel HIGH 7.8
CVE-2026-43256

In the Linux kernel, the following vulnerability has been resolved: media: qcom: camss: vfe: Fix out-of-bounds access in vfe_isr_reg_update() vfe_i…

Fix: 6.1.167 / 6.6.128+
Fix from $1,950 2026-05-06
Linux Kernel HIGH 7.1
CVE-2026-43241

In the Linux kernel, the following vulnerability has been resolved: ntb: ntb_hw_switchtec: Fix array-index-out-of-bounds access Number of MW LUTs d…

Fix: 5.10.252 / 5.15.202+
Fix from $1,950 2026-05-06
Linux Kernel HIGH 8.2
CVE-2026-43233

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack_h323: fix OOB read in decode_choice() In decode_choice(…

Fix: 5.10.252 / 5.15.202+
Fix from $1,950 2026-05-06
Linux Kernel CRITICAL 9.1
CVE-2026-43197

In the Linux kernel, the following vulnerability has been resolved: netconsole: avoid OOB reads, msg is not nul-terminated msg passed to netconsole…

Fix: 6.18.16 / 6.19.6+
Fix from $2,300 2026-05-06
Linux Kernel HIGH 8.2
CVE-2026-43190

In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_tcpmss: check remaining length before reading optlen Quoting repo…

Fix: 5.10.252 / 5.15.202+
Fix from $1,950 2026-05-06
Linux Kernel HIGH 7.1
CVE-2026-43141

In the Linux kernel, the following vulnerability has been resolved: ntb: ntb_hw_switchtec: Fix shift-out-of-bounds for 0 mw lut Number of MW LUTs d…

Fix: 5.10.252 / 5.15.202+
Fix from $1,950 2026-05-06
Linux Kernel HIGH 8.8
CVE-2026-43112

In the Linux kernel, the following vulnerability has been resolved: fs/smb/client: fix out-of-bounds read in cifs_sanitize_prepath When cifs_saniti…

Fix: 6.6.136 / 6.12.83+
Fix from $1,950 2026-05-06
Linux Kernel CRITICAL 9.1
CVE-2026-43083

In the Linux kernel, the following vulnerability has been resolved: net: ioam6: fix OOB and missing lock When trace->type.bit6 is set: if (tra…

Fix: 6.18.24 / 6.19.14+
Fix from $2,300 2026-05-06
Modsecurity HIGH 7.5
CVE-2026-30923

ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and Nginx. Libmodsecurity is one component of the…

Fix: 3.0.15+
Fix from $1,950 2026-05-05
Linux Kernel HIGH 7.8
CVE-2026-43070

In the Linux kernel, the following vulnerability has been resolved: bpf: Reset register ID for BPF_END value tracking When a register undergoes a B…

Fix: 6.18.21 / 6.19.11+
Fix from $1,950 2026-05-05
Linux Kernel CRITICAL 9.1
CVE-2026-43071

In the Linux kernel, the following vulnerability has been resolved: dcache: Limit the minimal number of bucket to two There is an OOB read problem …

Fix: 3.11 / 3.13+
Fix from $2,300 2026-05-05
Enterprise Linux CRITICAL 9.1
CVE-2026-34000

A flaw was found in the X.Org X server. This out-of-bounds read vulnerability in the XKB geometry processing, specifically within the `CheckSetGeom()…

Mitigation only
Fix from $2,300 2026-05-05
Openj9 HIGH 7.5
CVE-2026-6918

In Eclipse Open9J versions 0.21 to 0.58, a pre-authentication remote attacker can crash JITServer by sending a 32-byte crafted TCP message.

Fix: 0.59.0+
Fix from $1,950 2026-05-05
Gobgp HIGH 7.5
CVE-2026-37461

An out-of-bounds read in the ParseIP6Extended function (/bgp/bgp.go) of gobgp v4.3.0 allows attackers to cause a Denial of Service (DoS) via supplyin…

Patch available
Fix from $1,950 2026-05-04
Fastconnect 6200 Firmware HIGH 7.5
CVE-2025-47401

Transient DOS when processing target power rate tables during channel configuration.

No fix yet
Fix from $1,950 2026-05-04
Snapdragon X65 5g Modem Rf Firmware HIGH 7.5
CVE-2025-47403

Transient DOS when processing a malformed Fast Transition response frame with an invalid header structure during wireless roaming.

Mitigation only
Fix from $1,950 2026-05-04
X2000086 Firmware MEDIUM 5.5
CVE-2025-47406

Information Disclosure while processing IOCTL handler callbacks without verifying buffer size.

Mitigation only
Fix from $1,600 2026-05-04
Unclassified MEDIUM 6.5
CVE-2025-70072

An issue in Assimp v.6.0.2 allows a remote attacker to cause a denial of service via the FBXConverter.cpp, FBXConverter::ConvertMeshMultiMaterial() c…

Mitigation only
Fix from $1,600 2026-05-04
HTTP Server MEDIUM 5.3
CVE-2026-33857

Out-of-bounds Read vulnerability in mod_proxy_ajp of Apache HTTP Server. This issue affects Apache HTTP Server: through 2.4.66. Users are recomme…

Fix: 2.4.67+
Fix from $1,600 2026-05-04
HTTP Server MEDIUM 5.3
CVE-2026-34032

Improper Null Termination, Out-of-bounds Read vulnerability in Apache HTTP Server. This issue affects Apache HTTP Server: through 2.4.66. Users are…

Fix: 2.4.67+
Fix from $1,600 2026-05-04
Ollama CRITICAL 9.1
CVE-2026-7482

Ollama before 0.17.1 contains a heap out-of-bounds read vulnerability in the GGUF model loader. The /api/create endpoint accepts an attacker-supplied…

Fix: 0.17.1+
Fix from $2,300 2026-05-04
Gobgp HIGH 7.5
CVE-2026-7737

A vulnerability was identified in osrg GoBGP up to 4.3.0. Affected by this issue is the function BMPPeerUpNotification.ParseBody/BMPStatisticsReport.…

Fix: 4.4.0+
Fix from $1,950 2026-05-04