Vulnerability index

Browse CVEs

8,423 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Unclassified CRITICAL 9.1
CVE-2026-59145

Data::Intern::Shared versions before 0.02 for Perl allow an out-of-bounds read via unvalidated slot, reverse and arena indices in si_idx_find. The a…

No fix yet
Fix from $2,300 2026-07-21
Unclassified HIGH 7.8
CVE-2026-59146

Data::SpatialHash::Shared versions before 0.02 for Perl allow out-of-bounds reads and writes via unvalidated bucket, link and free-list indices in sp…

No fix yet
Fix from $1,950 2026-07-21
Unclassified CRITICAL 9.8
CVE-2026-59147

Data::DisjointSet::Shared versions before 0.02 for Perl allow out-of-bounds reads and writes via an unvalidated parent index in dsu_find. The attach…

No fix yet
Fix from $2,300 2026-07-21
Unclassified HIGH 7.5
CVE-2026-46600

Parsing an invalid SVCB or HTTPS RR can panic when the size of a parameter value overflows the message buffer.

No fix yet
Fix from $1,950 2026-07-21
Unclassified CRITICAL 9.1
CVE-2026-59139

Data::ReqRep::Shared versions before 0.05 for Perl allow an out-of-bounds read via an unvalidated arena offset and length in reqrep_recv_locked. The…

Mitigation only
Fix from $2,300 2026-07-21
Unclassified CRITICAL 9.1
CVE-2026-59140

Data::SortedSet::Shared versions before 0.03 for Perl allow an out-of-bounds read via unvalidated node indices in the rank and min/max query paths. …

No fix yet
Fix from $2,300 2026-07-21
Unclassified CRITICAL 9.1
CVE-2026-59141

Data::RadixTree::Shared versions before 0.02 for Perl allow an out-of-bounds read via unvalidated node and arena indices in rdx_find_locked. The att…

No fix yet
Fix from $2,300 2026-07-21
Unclassified CRITICAL 9.1
CVE-2026-59142

Data::HashMap::Shared versions before 0.14 for Perl allow an out-of-bounds read via an unvalidated arena offset and length in shm_str_copy. The atta…

No fix yet
Fix from $2,300 2026-07-21
Omr HIGH 7.5
CVE-2026-16243

In Eclipse OMR versions up to 0.11, the arraycmp SIMD implementation for Z and P does not check if the number of bytes to compare is zero.

Fix: after 0.10.0
Fix from $1,950 2026-07-21
Unclassified MEDIUM 6.3
CVE-2026-9499

An out-of-bounds read (buffer over-read) vulnerability exists in QTextCodec::codecForName() in Qt. When the function is called with a QByteArray that…

No fix yet
Fix from $1,600 2026-07-21
Hardened Images MEDIUM 5.3
CVE-2026-59842

A flaw was found in libssh. During server-side GSSAPI key exchange, a client-supplied Curve25519 public key shorter than the expected length is copie…

No fix yet
Fix from $1,600 2026-07-21
Fory CRITICAL 9.1
CVE-2026-64609

Out-of-bounds read via sun.misc.Unsafe in Apache Fory. When out-of-band zero-copy deserialization is used, readAlignedVarUint() can read beyond the b…

Fix: 1.4.0+
Fix from $2,300 2026-07-21
Chrome HIGH 8.8
CVE-2026-15903

Out of bounds read and write in V8 in Google Chrome prior to 150.0.7871.128 allowed a remote attacker to execute arbitrary code inside a sandbox via …

Fix: 150.0.7871.128+
Fix from $1,950 2026-07-20
Unclassified MEDIUM 6.5
CVE-2026-44510

Rsync is a file-copying tool that uses a delta-transfer algorithm to synchronize remote and local files. In versions prior to 3.4.3, the receiver-sid…

No fix yet
Fix from $1,600 2026-07-20
Xrdp MEDIUM 5.3
CVE-2026-55639

xrdp is an open source RDP server. Versions 0.10.6 and prior contain a vulnerability concerning the parsing of Client Security Data within the Client…

Fix: 0.10.6.1+
Fix from $1,600 2026-07-20
Linux Kernel HIGH 7.8
CVE-2026-64191

In the Linux kernel, the following vulnerability has been resolved: i2c: stub: Reject I2C block transfers with invalid length The I2C_SMBUS_I2C_BLO…

Fix: 5.10.260 / 5.15.211+
Fix from $1,950 2026-07-20
Xrdp MEDIUM 6.5
CVE-2026-55645

xrdp is an open source RDP server. Versions 0.10.6 and prior contain a vulnerability concerning the processing of Client Control PDUs. During the RDP…

Fix: 0.10.6.1+
Fix from $1,600 2026-07-20
Xrdp MEDIUM 5.3
CVE-2026-44978

xrdp is an open source RDP server. Versions 0.10.6 and prior contain a heap out-of-bounds read vulnerability within the FIPS-specific receive paths. …

Fix: 0.10.6.1+
Fix from $1,600 2026-07-20
Unclassified MEDIUM 6.5
CVE-2026-35217

NanoMQ contains a protocol-semantics flaw in its MQTT v5 `SUBSCRIBE` handling: if a subscription entry is missing the final 1-byte `Subscription Opti…

No fix yet
Fix from $1,600 2026-07-20
Hdf5 HIGH 7.5
CVE-2026-26197

HDF5 is a high-performance library and a file format specification that implements the HDF5 data model. If a file is corrupted such that an array dat…

Fix: 2.1.0+
Fix from $1,950 2026-07-20
Linux Kernel HIGH 7.1
CVE-2026-64186

In the Linux kernel, the following vulnerability has been resolved: iommu/amd: Remove latent out-of-bounds access in IOMMU debugfs In iommu_mmio_wr…

Fix: 6.18.34 / 7.0.11+
Fix from $1,950 2026-07-19
Linux Kernel HIGH 7.8
CVE-2026-64133

In the Linux kernel, the following vulnerability has been resolved: ALSA: asihpi: Fix potential OOB array access at reading cache find_control() to…

Fix: 5.10.258 / 5.15.209+
Fix from $1,950 2026-07-19
Linux Kernel HIGH 7.3
CVE-2026-64126

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: validate Add Extended Advertising Data length MGMT_OP_ADD_EXT_…

Fix: 5.15.210 / 6.1.175+
Fix from $1,950 2026-07-19
Linux Kernel HIGH 7.1
CVE-2026-64121

In the Linux kernel, the following vulnerability has been resolved: net: ifb: report ethtool stats over num_tx_queues ifb_dev_init() allocates dp->…

Fix: 6.1.175 / 6.6.142+
Fix from $1,950 2026-07-19
Linux Kernel HIGH 7.8
CVE-2026-64114

In the Linux kernel, the following vulnerability has been resolved: ipv4: raw: reject IP_HDRINCL packets with ihl < 5 raw_send_hdrinc() validates t…

Fix: 5.10.258 / 5.15.209+
Fix from $1,950 2026-07-19
Linux Kernel CRITICAL 9.8
CVE-2026-64102

In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: Reject MPA FPDU length underflow before signed receive math A malicio…

Fix: 5.10.258 / 5.15.209+
Fix from $2,300 2026-07-19
Linux Kernel HIGH 8.8
CVE-2026-63807

In the Linux kernel, the following vulnerability has been resolved: KVM: x86/mmu: Ensure hugepage is in by slot before checking max mapping level W…

Fix: 5.15.211 / 6.1.177+
Fix from $1,950 2026-07-19
Linux Kernel HIGH 8.8
CVE-2026-63796

In the Linux kernel, the following vulnerability has been resolved: ocfs2: reject oversized group bitmap descriptors ocfs2_validate_gd_parent() onl…

Fix: 5.10.260 / 5.15.211+
Fix from $1,950 2026-07-19
Linux Kernel HIGH 7.8
CVE-2026-63799

In the Linux kernel, the following vulnerability has been resolved: sched/mmcid: Fix OOB clear_bit when CID is MM_CID_UNSET in fixup path In mm_cid…

Fix: 7.1.3+
Fix from $1,950 2026-07-19
Linux Kernel HIGH 7.1
CVE-2026-53402

In the Linux kernel, the following vulnerability has been resolved: fbdev: fbcon: fix out-of-bounds read in err_out of fbcon_do_set_font() When fbc…

Fix: 5.10.261 / 5.15.212+
Fix from $1,950 2026-07-19