Vulnerability index

Browse CVEs

8,440 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
HIGH 7.8 CVE-2026-23288 In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: Fix out-of-bounds memset in command slot handling The remaining … Linux Kernel 6.19.7+ Fix from $1,9502026-03-25 MEDIUM 5.5 CVE-2026-28890 An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in Xcode 26.4. An app may be able to cause unexpected system t… Xcode 26.4+ Fix from $1,6002026-03-25 MEDIUM 6.5 CVE-2026-28857 The issue was addressed with improved memory handling. This issue is fixed in Safari 26.4, iOS 26.4 and iPadOS 26.4, macOS Tahoe 26.4, visionOS 26.4.… Safari 26.4+ Fix from $1,6002026-03-25 HIGH 8.4 CVE-2026-28832 An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonoma 14.8.5, macOS Tahoe 26.4… macOS 14.8.5 / 15.7.5+ Fix from $1,9502026-03-25 MEDIUM 6.5 CVE-2026-20690 An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS 26.4 and iPadOS 2… Ipados 14.8.5 / 15.7.5+ Fix from $1,6002026-03-25 MEDIUM 6.5 CVE-2026-20657 A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS 26.4 and iPadOS 26.4, m… Ipados 14.8.5 / 15.7.5+ Fix from $1,6002026-03-25 HIGH 8.1 CVE-2026-32853 LibVNCServer versions 0.9.15 and prior (fixed in commit 009008e) contain a heap out-of-bounds read vulnerability in the UltraZip encoding handler tha… Libvncserver 0.9.15+ Fix from $1,9502026-03-24 HIGH 7.8 CVE-2026-32647 NGINX Open Source and NGINX Plus have a vulnerability in the ngx_http_mp4_module module, which might allow an attacker to trigger a buffer over-read … Nginx Plus 1.28.3 / 1.29.7+ Fix from $1,9502026-03-24 CRITICAL 9.1 CVE-2026-4750 Out-of-bounds Read vulnerability in fabiangreffrath woof.This issue affects woof: before woof_15.3.0. Patch available Fix from $2,3002026-03-24 CRITICAL 9.1 CVE-2026-4753 Out-of-bounds Read vulnerability in slajerek RetroDebugger.This issue affects RetroDebugger: before v0.64.72. Patch available Fix from $2,3002026-03-24 CRITICAL 9.3 CVE-2026-4744 Out-of-bounds Read vulnerability in rizonesoft Notepad3 (‎scintilla/oniguruma/src modules). This vulnerability is associated with program files regco… Patch available Fix from $2,3002026-03-24 HIGH 8.4 CVE-2026-4732 Out-of-bounds Read vulnerability in tildearrow furnace (‎extern/libsndfile-modified/src modules). This vulnerability is associated with program files… Patch available Fix from $1,9502026-03-24 HIGH 8.8 CVE-2026-4677 Inappropriate implementation in WebAudio in Google Chrome prior to 146.0.7680.165 allowed a remote attacker to perform an out of bounds memory read v… Chrome 146.0.7680.164+ Fix from $1,9502026-03-24 HIGH 8.8 CVE-2026-4674 Out of bounds read in CSS in Google Chrome prior to 146.0.7680.165 allowed a remote attacker to perform out of bounds memory access via a crafted HTM… Chrome 146.0.7680.164+ Fix from $1,9502026-03-24 HIGH 7.5 CVE-2026-1940 An incomplete fix for CVE-2024-47778 allows an out-of-bounds read in gst_wavparse_adtl_chunk() function. The patch added a size validation check lsiz… Debian Linux 1.28.1+ Fix from $1,9502026-03-23 CRITICAL 9.8 CVE-2026-3055 KEVEPSS 84% Insufficient input validation in NetScaler ADC and NetScaler Gateway when configured as a SAML IDP leading to memory overread Netscaler Application Delivery Controller 13.1-37.262 / 13.1-62.23+ Fix from $2,3002026-03-23 MEDIUM 6.1 CVE-2026-4647 A flaw was found in the GNU Binutils BFD library, a widely used component for handling binary files such as object files and executables. The issue o… Openshift Container Platform Mitigation only Fix from $1,6002026-03-23 HIGH 7.5 CVE-2026-4437 Calling gethostbyaddr or gethostbyaddr_r with a configured nsswitch.conf that specifies the library's DNS backend in the GNU C Library version 2.34 t… Glibc after 2.43 Fix from $1,9502026-03-20 HIGH 7.5 CVE-2026-33069 PJSIP is a free and open source multimedia communication library written in C. Versions 2.16 and below have a cascading out-of-bounds heap read in pj… Pjsip 2.17+ Fix from $1,9502026-03-20 HIGH 8.8 CVE-2026-4459 Out of bounds read and write in WebAudio in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap corruption vi… Chrome 146.0.7680.153+ Fix from $1,9502026-03-20 HIGH 8.8 CVE-2026-4460 Out of bounds read in Skia in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to perform an out of bounds memory read via a crafted H… Chrome 146.0.7680.153+ Fix from $1,9502026-03-20 HIGH 8.8 CVE-2026-4462 Out of bounds read in Blink in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to perform an out of bounds memory read via a crafted … Chrome 146.0.7680.153+ Fix from $1,9502026-03-20 HIGH 8.8 CVE-2026-4439 Out of bounds memory access in WebGL in Google Chrome on Android prior to 146.0.7680.153 allowed a remote attacker to potentially perform a sandbox e… Chrome 146.0.7680.153+ Fix from $1,9502026-03-20 HIGH 8.8 CVE-2026-4440 Out of bounds read and write in WebGL in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to perform arbitrary read/write via a crafte… Chrome 146.0.7680.153+ Fix from $1,9502026-03-20 HIGH 7.5 CVE-2026-3547 Out-of-bounds read in ALPN parsing due to incomplete validation. wolfSSL 5.8.4 and earlier contained an out-of-bounds read in ALPN handling when buil… Wolfssl 5.9.0+ Fix from $1,9502026-03-19 HIGH 7.5 CVE-2026-4424 A flaw was found in libarchive. This heap out-of-bounds read vulnerability exists in the RAR archive processing logic due to improper validation of t… Hardened Images Patch available Fix from $1,9502026-03-19 CRITICAL 9.1 CVE-2026-31966 HTSlib is a library for reading and writing bioinformatics file formats. CRAM is a compressed format which stores DNA sequence alignment data. As one… Htslib 1.21.1 / 1.22.2+ Fix from $2,3002026-03-18 CRITICAL 9.1 CVE-2026-31967 HTSlib is a library for reading and writing bioinformatics file formats. CRAM is a compressed format which stores DNA sequence alignment data. In the… Htslib 1.21.1 / 1.22.2+ Fix from $2,3002026-03-18 HIGH 8.2 CVE-2026-31965 HTSlib is a library for reading and writing bioinformatics file formats. CRAM is a compressed format which stores DNA sequence alignment data. In the… Htslib 1.21.1 / 1.22.2+ Fix from $1,9502026-03-18 HIGH 8.8 CVE-2026-31962 HTSlib is a library for reading and writing bioinformatics file formats. CRAM is a compressed format which stores DNA sequence alignment data. While … Htslib 1.21.1 / 1.22.2+ Fix from $1,9502026-03-18