Vulnerability index

Browse CVEs

8,440 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Linux Kernel HIGH 7.8
CVE-2026-23288

In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: Fix out-of-bounds memset in command slot handling The remaining …

Fix: 6.19.7+
Fix from $1,950 2026-03-25
Xcode MEDIUM 5.5
CVE-2026-28890

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in Xcode 26.4. An app may be able to cause unexpected system t…

Fix: 26.4+
Fix from $1,600 2026-03-25
Safari MEDIUM 6.5
CVE-2026-28857

The issue was addressed with improved memory handling. This issue is fixed in Safari 26.4, iOS 26.4 and iPadOS 26.4, macOS Tahoe 26.4, visionOS 26.4.…

Fix: 26.4+
Fix from $1,600 2026-03-25
macOS HIGH 8.4
CVE-2026-28832

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonoma 14.8.5, macOS Tahoe 26.4…

Fix: 14.8.5 / 15.7.5+
Fix from $1,950 2026-03-25
Ipados MEDIUM 6.5
CVE-2026-20690

An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS 26.4 and iPadOS 2…

Fix: 14.8.5 / 15.7.5+
Fix from $1,600 2026-03-25
Ipados MEDIUM 6.5
CVE-2026-20657

A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS 26.4 and iPadOS 26.4, m…

Fix: 14.8.5 / 15.7.5+
Fix from $1,600 2026-03-25
Libvncserver HIGH 8.1
CVE-2026-32853

LibVNCServer versions 0.9.15 and prior (fixed in commit 009008e) contain a heap out-of-bounds read vulnerability in the UltraZip encoding handler tha…

Fix: 0.9.15+
Fix from $1,950 2026-03-24
Nginx Plus HIGH 7.8
CVE-2026-32647

NGINX Open Source and NGINX Plus have a vulnerability in the ngx_http_mp4_module module, which might allow an attacker to trigger a buffer over-read …

Fix: 1.28.3 / 1.29.7+
Fix from $1,950 2026-03-24
Unclassified CRITICAL 9.1
CVE-2026-4750

Out-of-bounds Read vulnerability in fabiangreffrath woof.This issue affects woof: before woof_15.3.0.

Patch available
Fix from $2,300 2026-03-24
Unclassified CRITICAL 9.1
CVE-2026-4753

Out-of-bounds Read vulnerability in slajerek RetroDebugger.This issue affects RetroDebugger: before v0.64.72.

Patch available
Fix from $2,300 2026-03-24
Unclassified CRITICAL 9.3
CVE-2026-4744

Out-of-bounds Read vulnerability in rizonesoft Notepad3 (‎scintilla/oniguruma/src modules). This vulnerability is associated with program files regco…

Patch available
Fix from $2,300 2026-03-24
Unclassified HIGH 8.4
CVE-2026-4732

Out-of-bounds Read vulnerability in tildearrow furnace (‎extern/libsndfile-modified/src modules). This vulnerability is associated with program files…

Patch available
Fix from $1,950 2026-03-24
Chrome HIGH 8.8
CVE-2026-4677

Inappropriate implementation in WebAudio in Google Chrome prior to 146.0.7680.165 allowed a remote attacker to perform an out of bounds memory read v…

Fix: 146.0.7680.164+
Fix from $1,950 2026-03-24
Chrome HIGH 8.8
CVE-2026-4674

Out of bounds read in CSS in Google Chrome prior to 146.0.7680.165 allowed a remote attacker to perform out of bounds memory access via a crafted HTM…

Fix: 146.0.7680.164+
Fix from $1,950 2026-03-24
Debian Linux HIGH 7.5
CVE-2026-1940

An incomplete fix for CVE-2024-47778 allows an out-of-bounds read in gst_wavparse_adtl_chunk() function. The patch added a size validation check lsiz…

Fix: 1.28.1+
Fix from $1,950 2026-03-23
Netscaler Application Delivery Controller CRITICAL 9.8
CVE-2026-3055 KEVEPSS 84%

Insufficient input validation in NetScaler ADC and NetScaler Gateway when configured as a SAML IDP leading to memory overread

Fix: 13.1-37.262 / 13.1-62.23+
Fix from $2,300 2026-03-23
Openshift Container Platform MEDIUM 6.1
CVE-2026-4647

A flaw was found in the GNU Binutils BFD library, a widely used component for handling binary files such as object files and executables. The issue o…

Mitigation only
Fix from $1,600 2026-03-23
Glibc HIGH 7.5
CVE-2026-4437

Calling gethostbyaddr or gethostbyaddr_r with a configured nsswitch.conf that specifies the library's DNS backend in the GNU C Library version 2.34 t…

Fix: after 2.43
Fix from $1,950 2026-03-20
Pjsip HIGH 7.5
CVE-2026-33069

PJSIP is a free and open source multimedia communication library written in C. Versions 2.16 and below have a cascading out-of-bounds heap read in pj…

Fix: 2.17+
Fix from $1,950 2026-03-20
Chrome HIGH 8.8
CVE-2026-4459

Out of bounds read and write in WebAudio in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap corruption vi…

Fix: 146.0.7680.153+
Fix from $1,950 2026-03-20
Chrome HIGH 8.8
CVE-2026-4460

Out of bounds read in Skia in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to perform an out of bounds memory read via a crafted H…

Fix: 146.0.7680.153+
Fix from $1,950 2026-03-20
Chrome HIGH 8.8
CVE-2026-4462

Out of bounds read in Blink in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to perform an out of bounds memory read via a crafted …

Fix: 146.0.7680.153+
Fix from $1,950 2026-03-20
Chrome HIGH 8.8
CVE-2026-4439

Out of bounds memory access in WebGL in Google Chrome on Android prior to 146.0.7680.153 allowed a remote attacker to potentially perform a sandbox e…

Fix: 146.0.7680.153+
Fix from $1,950 2026-03-20
Chrome HIGH 8.8
CVE-2026-4440

Out of bounds read and write in WebGL in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to perform arbitrary read/write via a crafte…

Fix: 146.0.7680.153+
Fix from $1,950 2026-03-20
Wolfssl HIGH 7.5
CVE-2026-3547

Out-of-bounds read in ALPN parsing due to incomplete validation. wolfSSL 5.8.4 and earlier contained an out-of-bounds read in ALPN handling when buil…

Fix: 5.9.0+
Fix from $1,950 2026-03-19
Hardened Images HIGH 7.5
CVE-2026-4424

A flaw was found in libarchive. This heap out-of-bounds read vulnerability exists in the RAR archive processing logic due to improper validation of t…

Patch available
Fix from $1,950 2026-03-19
Htslib CRITICAL 9.1
CVE-2026-31966

HTSlib is a library for reading and writing bioinformatics file formats. CRAM is a compressed format which stores DNA sequence alignment data. As one…

Fix: 1.21.1 / 1.22.2+
Fix from $2,300 2026-03-18
Htslib CRITICAL 9.1
CVE-2026-31967

HTSlib is a library for reading and writing bioinformatics file formats. CRAM is a compressed format which stores DNA sequence alignment data. In the…

Fix: 1.21.1 / 1.22.2+
Fix from $2,300 2026-03-18
Htslib HIGH 8.2
CVE-2026-31965

HTSlib is a library for reading and writing bioinformatics file formats. CRAM is a compressed format which stores DNA sequence alignment data. In the…

Fix: 1.21.1 / 1.22.2+
Fix from $1,950 2026-03-18
Htslib HIGH 8.8
CVE-2026-31962

HTSlib is a library for reading and writing bioinformatics file formats. CRAM is a compressed format which stores DNA sequence alignment data. While …

Fix: 1.21.1 / 1.22.2+
Fix from $1,950 2026-03-18