Vulnerability index

Browse CVEs

8,440 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Firefox CRITICAL 9.8
CVE-2026-2771

Undefined behavior in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird…

Fix: 115.33.0 / 140.8.0+
Fix from $2,300 2026-02-24
Desktop HIGH 7.8
CVE-2026-2664

An out of bounds read vulnerability in the grpcfuse kernel module present in the Linux VM in Docker Desktop for Windows, Linux and macOS up to versio…

Fix: 4.62.0+
Fix from $1,950 2026-02-24
Imagemagick CRITICAL 9.1
CVE-2026-26284

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, ImageMagick …

Fix: 6.9.13-40 / 7.1.2-15+
Fix from $2,300 2026-02-24
Imagemagick MEDIUM 6.5
CVE-2026-25982

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, a heap out-o…

Fix: 6.9.13-40 / 7.1.2-15+
Fix from $1,600 2026-02-24
Imagemagick CRITICAL 9.1
CVE-2026-25987

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, a heap buffe…

Fix: 6.9.13-40 / 7.1.2-15+
Fix from $2,300 2026-02-24
Imagemagick CRITICAL 9.1
CVE-2026-25898

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, the UIL and …

Fix: 6.9.13-40 / 7.1.2-15+
Fix from $2,300 2026-02-24
Imagemagick HIGH 7.5
CVE-2026-24481

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, a heap infor…

Fix: 6.9.13-40 / 7.1.2-15+
Fix from $1,950 2026-02-24
Chrome CRITICAL 9.1
CVE-2026-3061

Out of bounds read in Media in Google Chrome prior to 145.0.7632.116 allowed a remote attacker to perform an out of bounds memory read via a crafted …

Fix: 145.0.7632.116 / 145.0.7632.117+
Fix from $2,300 2026-02-23
Chrome CRITICAL 9.8
CVE-2026-3062

Out of bounds read and write in Tint in Google Chrome on Mac prior to 145.0.7632.116 allowed a remote attacker to perform out of bounds memory access…

Fix: 145.0.7632.116 / 145.0.7632.117+
Fix from $2,300 2026-02-23
Valkey HIGH 7.5
CVE-2026-21863

Valkey is a distributed key-value database. Prior to versions 9.0.2, 8.1.6, 8.0.7, and 7.2.12, a malicious actor with access to the Valkey clusterbus…

Fix: 7.2.12 / 8.0.7+
Fix from $1,950 2026-02-23
Janet MEDIUM 5.5
CVE-2026-2869

A vulnerability was identified in janet-lang janet up to 1.40.1. Affected by this vulnerability is the function janetc_varset of the file src/core/sp…

Fix: after 1.40.1
Fix from $1,600 2026-02-21
Wren HIGH 7.1
CVE-2026-2858

A vulnerability was identified in wren-lang wren up to 0.4.0. This affects the function peekChar of the file src/vm/wren_compiler.c of the component …

Fix: after 0.4.0
Fix from $1,950 2026-02-20
Nanazip MEDIUM 6.6
CVE-2026-26282

NanaZip is an open source file archive Starting in version 5.0.1252.0 and prior to version 6.0.1630.0, NanaZip has an out-of-bounds heap read in `.NE…

Fix: 6.0.1630.0+
Fix from $1,600 2026-02-19
Unclassified MEDIUM 5.1
CVE-2026-2243

A flaw was found in QEMU. A specially crafted VMDK image could trigger an out-of-bounds read vulnerability, potentially leading to a 12-byte leak of …

Mitigation only
Fix from $1,600 2026-02-19
Open Babel HIGH 8.1
CVE-2026-2704

A security vulnerability has been detected in Open Babel up to 3.1.1. The affected element is the function OpenBabel::transform3d::DescribeAsString o…

Fix: after 3.1.1
Fix from $1,950 2026-02-19
Open Babel HIGH 8.1
CVE-2026-2705

A vulnerability was detected in Open Babel up to 3.1.1. The impacted element is the function OBAtom::SetFormalCharge in the library include/openbabel…

Fix: after 3.1.1
Fix from $1,950 2026-02-19
Lily HIGH 7.8
CVE-2026-2662

A weakness has been identified in FascinatedBox lily up to 2.3. This vulnerability affects the function count_transforms of the file src/lily_emitter…

Fix: after 2.3
Fix from $1,950 2026-02-18
Squirrel HIGH 7.8
CVE-2026-2659

A vulnerability was determined in Squirrel up to 3.2. Affected by this vulnerability is the function SQFuncState::PopTarget of the file src/squirrel/…

Fix: after 3.2
Fix from $1,950 2026-02-18
Linux Kernel HIGH 7.1
CVE-2025-71231

In the Linux kernel, the following vulnerability has been resolved: crypto: iaa - Fix out-of-bounds index in find_empty_iaa_compression_mode The lo…

Fix: 6.12.72 / 6.18.11+
Fix from $1,950 2026-02-18
Minisat HIGH 7.8
CVE-2026-2644

A weakness has been identified in niklasso minisat up to 2.2.0. This issue affects the function Solver::value in the library core/SolverTypes.h of th…

Fix: after 2.2.0
Fix from $1,950 2026-02-18
Solidworks Edrawings HIGH 7.8
CVE-2026-1334

An Out-Of-Bounds Read vulnerability affecting the EPRT file reading procedure in SOLIDWORKS eDrawings from Release SOLIDWORKS Desktop 2025 through Re…

Mitigation only
Fix from $1,950 2026-02-16
Linux Kernel HIGH 7.1
CVE-2026-23204

In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_u32: use skb_header_pointer_careful() skb_header_pointer() does …

Fix: 6.6.124 / 6.12.70+
Fix from $1,950 2026-02-14
Linux Kernel HIGH 7.1
CVE-2026-23187

In the Linux kernel, the following vulnerability has been resolved: pmdomain: imx8m-blk-ctrl: fix out-of-range access of bc->domains Fix out-of-ran…

Fix: 6.1.163 / 6.6.124+
Fix from $1,950 2026-02-14
Linux Kernel HIGH 7.1
CVE-2025-71201

In the Linux kernel, the following vulnerability has been resolved: netfs: Fix early read unlock of page with EOF in middle The read result collect…

Fix: 6.18.6+
Fix from $1,950 2026-02-14
Bacnet Stack HIGH 8.1
CVE-2026-26264

BACnet Stack is a BACnet open source protocol stack C library for embedded systems. Prior to 1.5.0rc4 and 1.4.3rc2, a malformed WriteProperty request…

Fix: 1.4.3+
Fix from $1,950 2026-02-13
Free5gc HIGH 7.5
CVE-2025-70121

An array index out of bounds vulnerability in the AMF component of free5GC v4.0.1 allows remote attackers to cause a denial of service via a crafted …

No fix yet
Fix from $1,950 2026-02-13
Enterprise Linux MEDIUM 5.3
CVE-2026-2443

A flaw was identified in libsoup, a widely used HTTP library in GNOME-based systems. When processing specially crafted HTTP Range headers, the librar…

Mitigation only
Fix from $1,600 2026-02-13
Bareiron HIGH 7.5
CVE-2025-69806

p2r3 bareiron commit: 8e4d4020d contains an Out-of-bounds Read, which allows unauthenticated remote attackers to get relative information leakage via…

No fix yet
Fix from $1,950 2026-02-12
Ipados MEDIUM 5.5
CVE-2026-20675

The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.3 and iPadOS 26.3, macOS Sequoia 15.…

Fix: 14.8.4 / 15.7.4+
Fix from $1,600 2026-02-11
macOS HIGH 7.7
CVE-2026-20620

An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.7.4, macOS Sonoma 14.8.4, macOS Tah…

Fix: 14.8.4 / 15.7.4+
Fix from $1,950 2026-02-11