Vulnerability index

Browse CVEs

3,242 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
Osslsigncode MEDIUM 5.5
CVE-2026-39855

osslsigncode is a tool that implements Authenticode signing and timestamping. Prior to 2.13, an integer underflow vulnerability exists in osslsigncod…

Fix: 2.13+
Fix from $1,600 2026-04-09
Chrome HIGH 8.8
CVE-2026-5870

Integer overflow in Skia in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted H…

Fix: 147.0.7727.55+
Fix from $1,950 2026-04-08
Triton Inference Server HIGH 7.5
CVE-2026-24173

NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server crash by sending a malformed request to the server. A …

Fix: 26.02+
Fix from $1,950 2026-04-07
Libraw CRITICAL 9.8
CVE-2026-24450

An integer overflow vulnerability exists in the uncompressed_fp_dng_load_raw functionality of LibRaw Commit 8dc68e2. A specially crafted malicious fi…

Mitigation only
Fix from $2,300 2026-04-07
Libraw HIGH 8.1
CVE-2026-24660

A heap-based buffer overflow vulnerability exists in the x3f_load_huffman functionality of LibRaw Commit d20315b. A specially crafted malicious file …

No fix yet
Fix from $1,950 2026-04-07
Libraw CRITICAL 9.8
CVE-2026-20884

An integer overflow vulnerability exists in the deflate_dng_load_raw functionality of LibRaw Commit 8dc68e2. A specially crafted malicious file can l…

Mitigation only
Fix from $2,300 2026-04-07
Libraw CRITICAL 9.8
CVE-2026-20889

A heap-based buffer overflow vulnerability exists in the x3f_thumb_loader functionality of LibRaw Commit d20315b. A specially crafted malicious file …

Mitigation only
Fix from $2,300 2026-04-07
Firefox HIGH 8.8
CVE-2026-5732

Incorrect boundary conditions, integer overflow in the Graphics: Text component. This vulnerability was fixed in Firefox 149.0.2, Firefox ESR 140.9.1…

Fix: 140.9.1 / 149.0.2+
Fix from $1,950 2026-04-07
Openexr MEDIUM 5.0
CVE-2026-34589

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From…

Fix: 3.2.7 / 3.3.9+
Fix from $1,600 2026-04-06
Openexr MEDIUM 6.5
CVE-2026-34378

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From…

Fix: 3.4.9+
Fix from $1,600 2026-04-06
Openexr MEDIUM 5.9
CVE-2026-34380

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From…

Fix: 3.2.7 / 3.3.9+
Fix from $1,600 2026-04-06
Openexr HIGH 7.8
CVE-2026-34588

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From…

Fix: 3.2.7 / 3.3.9+
Fix from $1,950 2026-04-06
5g Fixed Wireless Access Platform Firmware HIGH 8.8
CVE-2025-47392

Memory corruption when decoding corrupted satellite data files with invalid signature offsets.

Mitigation only
Fix from $1,950 2026-04-06
macOS MEDIUM 6.2
CVE-2025-43238

An integer overflow was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.6, macOS Sonoma 14.7.7, macOS Ventura 13.7.…

Fix: 13.7.7 / 14.7.7+
Fix from $1,600 2026-04-02
Openexr HIGH 7.3
CVE-2026-34544

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From…

Fix: 3.2.7 / 3.3.9+
Fix from $1,950 2026-04-01
Openexr HIGH 7.3
CVE-2026-34545

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From…

Fix: 3.4.7+
Fix from $1,950 2026-04-01
Openshift HIGH 7.5
CVE-2026-35092

A flaw was found in Corosync. An integer overflow vulnerability in Corosync's join message sanity validation allows a remote, unauthenticated attacke…

No fix yet
Fix from $1,950 2026-04-01
Libp2p Gossipsub MEDIUM 5.9
CVE-2026-34219

libp2p-rust is the official rust language Implementation of the libp2p networking stack. Prior to version 0.49.4, the Rust libp2p Gossipsub implement…

Fix: 0.49.4+
Fix from $1,600 2026-03-31
Unclassified HIGH 7.8
CVE-2026-3308

An integer overflow vulnerability in 'pdf-image.c' in Artifex's MuPDF version 1.27.0 allows an attacker to maliciously craft a PDF that can trigger a…

Patch available
Fix from $1,950 2026-03-31
Freerdp MEDIUM 6.5
CVE-2026-33983

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, progressive_decompress_tile_upgrade() detects a mismatch vi…

Fix: 3.24.2+
Fix from $1,600 2026-03-30
Hardened Images HIGH 7.5
CVE-2026-5121

A flaw was found in libarchive. On 32-bit systems, an integer overflow vulnerability exists in the zisofs block pointer allocation logic. A remote at…

Patch available
Fix from $1,950 2026-03-30
Unclassified HIGH 7.5
CVE-2026-3945

An integer overflow vulnerability in the HTTP chunked transfer encoding parser in tinyproxy up to and including version 1.11.3 allows an unauthentica…

Patch available
Fix from $1,950 2026-03-30
Ocaml MEDIUM 5.1
CVE-2026-34353

In OCaml through 4.14.3, Bigarray.reshape allows an integer overflow, and resultant reading of arbitrary memory, when untrusted data is processed.

Fix: after 4.14.3
Fix from $1,600 2026-03-27
Gimp MEDIUM 5.5
CVE-2026-2271

A flaw was found in GIMP's PSP (Paint Shop Pro) file parser. A remote attacker could exploit an integer overflow vulnerability in the read_creator_bl…

No fix yet
Fix from $1,600 2026-03-26
Enterprise Linux MEDIUM 6.5
CVE-2026-2272

A flaw was found in GIMP. An integer overflow vulnerability exists when processing ICO image files, specifically in the `ico_read_info` and `ico_read…

No fix yet
Fix from $1,600 2026-03-26
Nats Server HIGH 7.5
CVE-2026-27889

NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Starting in version 2.2.0 and prior to versions 2.11.…

Fix: 2.11.14 / 2.12.5+
Fix from $1,950 2026-03-25
macOS HIGH 7.5
CVE-2026-20639

An integer overflow was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonoma 14.8.5, macOS Tahoe 26.3.…

Fix: 14.8.5 / 15.7.5+
Fix from $1,950 2026-03-25
Hardened Images HIGH 7.8
CVE-2026-4775

A flaw was found in the libtiff library. A remote attacker could exploit a signed integer overflow vulnerability in the putcontig8bitYCbCr44tile func…

Mitigation only
Fix from $1,950 2026-03-24
Nginx Open Source HIGH 7.8
CVE-2026-27784

The 32-bit implementation of NGINX Open Source has a vulnerability in the ngx_http_mp4_module module, which might allow an attacker to over-read or o…

Fix: 1.28.3 / 1.29.7+
Fix from $1,950 2026-03-24
Firefox HIGH 7.5
CVE-2026-4694

Incorrect boundary conditions, integer overflow in the Graphics component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox E…

Fix: 115.34.0 / 140.9.0+
Fix from $1,950 2026-03-24