Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 8.8
CVE-2026-11091
Inappropriate implementation in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform out of bounds memory ac…
Chrome
149.0.7827.53+
MEDIUM 6.5
CVE-2026-11096
Out of bounds read in WebRTC in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to obtain potentially sensitive information from proce…
Chrome
149.0.7827.53+
MEDIUM 6.5
CVE-2026-11090
Uninitialized Use in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chro…
Chrome
149.0.7827.53+
MEDIUM 6.5
CVE-2026-11075
Out of bounds read in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to obtain potentially sensitive information from process m…
Chrome
149.0.7827.53+
HIGH 8.8
CVE-2026-11077
Bad cast in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page…
Chrome
149.0.7827.53+
CRITICAL 9.6
CVE-2026-11061
Type Confusion in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML …
Chrome
149.0.7827.53+
MEDIUM 6.5
CVE-2026-11051
Out of bounds read in ANGLE in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker to obtain potentially sensitive information fr…
Chrome
149.0.7827.53+
HIGH 8.1
CVE-2026-11015
Out of bounds read in WebGPU in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to perform an out of bounds memory read via a crafted …
Chrome
149.0.7827.53+
MEDIUM 5.3
CVE-2026-11004
Out of bounds read in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to obtain pote…
Chrome
149.0.7827.53+
MEDIUM 5.3
CVE-2026-11005
Out of bounds read in ANGLE in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to …
Chrome
149.0.7827.53+
MEDIUM 6.5
CVE-2026-11006
Out of bounds read in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to perform an out of bounds memory read via a crafted HT…
Chrome
149.0.7827.53+
MEDIUM 6.5
CVE-2026-10999
Integer overflow in ANGLE in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to ob…
Chrome
149.0.7827.53+
MEDIUM 6.5
CVE-2026-10979
Out of bounds read in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to obtain potentially sensitive information from proces…
Chrome
149.0.7827.53+
MEDIUM 6.5
CVE-2026-10985
Out of bounds read in Skia in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chro…
Chrome
149.0.7827.53+
HIGH 8.8
CVE-2026-10941
Out of bounds memory access in Skia in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via …
Chrome
149.0.7827.53+
HIGH 8.3
CVE-2026-10927
Out of bounds read in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially …
Chrome
149.0.7827.53+
HIGH 8.1
CVE-2026-10930
Out of bounds read in ANGLE in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker to perform an out of bounds memory read via a cr…
Chrome
149.0.7827.53+
HIGH 8.3
CVE-2026-10889
Out of bounds read in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially…
Chrome
149.0.7827.53+
CRITICAL 9.6
CVE-2026-10881
Out of bounds read and write in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a…
Chrome
149.0.7827.53+
CRITICAL 9.1
CVE-2026-48040
The netty incubator codec.bhttp is a java language binary http parser. The library implements Oblivious HTTP (RFC 9458) using BoringSSL's HPKE C libr…
Netty Incubator Codec Ohttp
0.0.22+
HIGH 7.5
CVE-2026-38570
bacnet_stack 1.3.1 contains an Out-of-bounds Read in bacnet_tag_number_decode which allows attackers to cause a denial of service.
Mitigation only
MEDIUM 6.1
CVE-2026-10305
Out-of-bounds read vulnerability in Samsung Open Source rlottie allows Overread Buffers.
This issue affects rlottie: before 223a2a41ba4f462e4abe767b…
Patch available
MEDIUM 6.8
CVE-2026-7764
An out-of-bounds read vulnerability in the morse.ko HaLow Wi-Fi kernel driver in Morse Micro HaLowLink 2 software versions prior to 2.11.12 allows an…
Halowlink 2 Firmware
2.11.12+
HIGH 7.8
CVE-2026-46260
In the Linux kernel, the following vulnerability has been resolved:
ipv6: Fix out-of-bound access in fib6_add_rt2node().
syzbot reported out-of-bou…
Linux Kernel
6.6.128 / 6.12.75+
HIGH 7.8
CVE-2026-46263
In the Linux kernel, the following vulnerability has been resolved:
drm/amd/display: Fix out-of-bounds stream encoder index v3
eng_id can be negati…
Linux Kernel
6.12.75 / 6.18.14+
MEDIUM 6.5
CVE-2025-70101
An out-of-bounds read in the ext4_ext_binsearch_idx function in src/ext4_extent.c of the lwext4 1.0.0 library allows attackers to cause a denial of s…
Lwext4
Patch available
MEDIUM 5.9
CVE-2026-48682
FastNetMon Community Edition through 1.2.9 contains an out-of-bounds read in the IPv4 packet parser. In src/simple_packet_parser_ng.cpp, after valida…
Mitigation only
MEDIUM 5.9
CVE-2026-45681
OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, the per-CPU message-buf…
Ebpf Instrumentation
0.9.0+
HIGH 7.8
CVE-2026-25258
Memory corruption while processing IOCTL calls for escape operations.
Cologne Firmware
Mitigation only
HIGH 7.8
CVE-2026-0076
In validateNode of ResourceTypes.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local escalation of…
Android
Mitigation only