Vulnerability index

Browse CVEs

8,423 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
MEDIUM 5.5 CVE-2026-50420 Out-of-bounds read in Windows HTTP.sys allows an unauthorized attacker to disclose information locally. Windows 11 24h2 10.0.26100.8875 / 10.0.26100.33158+ Fix from $1,6002026-07-14 HIGH 7.8 CVE-2026-50422 Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 MEDIUM 5.5 CVE-2026-50408 Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally. 365 Apps 16.0.10417.20175+ Fix from $1,6002026-07-14 HIGH 7.8 CVE-2026-50399 Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally. Windows 10 21h2 10.0.19044.7548 / 10.0.19045.7548+ Fix from $1,9502026-07-14 MEDIUM 5.5 CVE-2026-50401 Out-of-bounds read in Windows Cloud Files Mini Filter Driver allows an authorized attacker to disclose information locally. Windows 10 1809 10.0.17763.9020 / 10.0.19044.7548+ Fix from $1,6002026-07-14 HIGH 7.8 CVE-2026-50388 Out-of-bounds read in Windows NTFS allows an unauthorized attacker to execute code locally. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-50377 Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 MEDIUM 5.5 CVE-2026-49177 Out-of-bounds read in Windows TCP/IP allows an authorized attacker to disclose information locally. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,6002026-07-14 MEDIUM 5.5 CVE-2026-47969 Audition is affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulner… Audition 25.6.6 / 26.3+ Fix from $1,6002026-07-14 HIGH 7.8 CVE-2026-58609 Out-of-bounds read in Microsoft Graphics Component allows an unauthorized attacker to execute code locally. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 MEDIUM 5.5 CVE-2026-58614 Out-of-bounds read in Windows Kernel allows an authorized attacker to bypass a security feature locally. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,6002026-07-14 HIGH 7.5 CVE-2026-57979 Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 HIGH 7.1 CVE-2026-56193 Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally. Mitigation only Fix from $1,9502026-07-14 HIGH 7.0 CVE-2026-54996 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver allows an authorized attacker… Windows 11 24h2 10.0.26100.8875 / 10.0.26100.33158+ Fix from $1,9502026-07-14 MEDIUM 6.1 CVE-2026-54988 Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally. 365 Apps 16.0.10417.20175+ Fix from $1,6002026-07-14 HIGH 7.0 CVE-2026-54991 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver allows an authorized attacker… Windows 11 24h2 10.0.26100.8875 / 10.0.26100.33158+ Fix from $1,9502026-07-14 HIGH 7.0 CVE-2026-54111 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver allows an authorized attacker… Windows 11 24h2 10.0.26100.8875 / 10.0.26100.33158+ Fix from $1,9502026-07-14 CRITICAL 9.1 CVE-2026-54058 Pillow is a Python imaging library. Prior to 12.3.0, when Pillow loads an uncompressed McIdas AREA image from a filename through the mmap raw codec p… Pillow 12.3.0+ Fix from $2,3002026-07-14 MEDIUM 5.5 CVE-2026-50300 Integer underflow (wrap or wraparound) in Windows Kernel allows an authorized attacker to disclose information locally. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,6002026-07-14 CRITICAL 9.1 CVE-2026-60082 DBI versions before 1.651 for Perl do not enforce statement handle consistency with the row. When the statement handle had no fields but the source … Mitigation only Fix from $2,3002026-07-14 HIGH 7.5 CVE-2026-59198 Pillow is a Python imaging library. From 5.2.0 until 12.3.0, Pillow's TGA RLE encoder reads past its packed row buffer when saving a mode 1 image wit… Pillow 12.3.0+ Fix from $1,9502026-07-14 HIGH 7.5 CVE-2025-53379 A out-of-bounds read vulnerability in Fortinet FortiAuthenticator 6.6.0 through 6.6.2, FortiAuthenticator 6.5 all versions may allow a remote unauthe… Fortiauthenticator after 6.6.2 Fix from $1,9502026-07-14 CRITICAL 9.1 CVE-2026-10672 subsys/net/lib/lwm2m/lwm2m_pull_context.c copied the firmware-update Package URI into a fixed static buffer (context.uri, size CONFIG_LWM2M_SWMGMT_PA… Zephyr Mitigation only Fix from $2,3002026-07-14 MEDIUM 6.8 CVE-2026-53566 Out-of-bounds read vulnerability in Citrix Citrix Secure Access Client for Windows. This issue affects Citrix Secure Access Client for Windows: befo… Mitigation only Fix from $1,6002026-07-14 CRITICAL 9.1 CVE-2026-58102 Crypt::OpenSSL::X509 versions before 2.1.3 for Perl allow a heap out-of-bounds read via a long certificate extension OID in hv_exts. When building t… Crypt\ 2.1.3+ Fix from $2,3002026-07-13 CRITICAL 9.1 CVE-2026-51537 EIPStackGroup OpENer 2.3.0 (commit 76b95cf) has an out-of-bounds read issue in Connection Manager handling of ForwardOpen requests when processing sh… Opener Mitigation only Fix from $2,3002026-07-13 CRITICAL 9.1 CVE-2026-51541 OpENer 2.3.0 (commit 76b95cf) has an out-of-bounds read issue in CIP message parsing when handling malformed explicit requests with a forged EPath si… Opener Mitigation only Fix from $2,3002026-07-13 MEDIUM 6.1 CVE-2026-60103 Blender 3.0.0 through 5.1.2 contains an out-of-bounds read vulnerability that allows attackers to trigger a crash or read adjacent heap memory by sup… Mitigation only Fix from $1,6002026-07-13 HIGH 8.4 CVE-2026-57432 Perl versions through 5.43.10 have an integer overflow in S_measure_struct leading to an out-of-bounds heap read in pack and unpack. S_measure_struc… Perl after 5.43.10 Fix from $1,9502026-07-13 MEDIUM 6.5 CVE-2026-57157 FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.28.0, FreeRDP server implementations with the MS-RDPECAM camera device en… Freerdp 3.28.0+ Fix from $1,6002026-07-10