Vulnerability index

Browse CVEs

3,242 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
Firefox CRITICAL 10.0
CVE-2026-4689

Sandbox escape due to incorrect boundary conditions, integer overflow in the XPCOM component. This vulnerability was fixed in Firefox 149, Firefox ES…

Fix: 115.34.0 / 140.9.0+
Fix from $2,300 2026-03-24
Firefox HIGH 8.6
CVE-2026-4690

Sandbox escape due to incorrect boundary conditions, integer overflow in the XPCOM component. This vulnerability was fixed in Firefox 149, Firefox ES…

Fix: 115.34.0 / 140.9.0+
Fix from $1,950 2026-03-24
Android Imagemagick7 HIGH 7.5
CVE-2026-33855

Integer Overflow or Wraparound vulnerability in MolotovCherry Android-ImageMagick7.This issue affects Android-ImageMagick7: before 7.1.2-11.

Fix: 7.1.2-11+
Fix from $1,950 2026-03-24
Unclassified CRITICAL 9.4
CVE-2026-4739

Integer Overflow or Wraparound vulnerability in InsightSoftwareConsortium ITK (‎Modules/ThirdParty/Expat/src/expat modules).This issue affects ITK: b…

Patch available
Fix from $2,300 2026-03-24
Unclassified HIGH 8.5
CVE-2026-4731

Integer Overflow or Wraparound vulnerability in artraweditor ART (‎rtengine‎ modules). This vulnerability is associated with program files dcraw.C. …

Patch available
Fix from $1,950 2026-03-24
Chrome HIGH 8.8
CVE-2026-4679

Integer overflow in Fonts in Google Chrome prior to 146.0.7680.165 allowed a remote attacker to perform an out of bounds memory write via a crafted H…

Fix: 146.0.7680.164+
Fix from $1,950 2026-03-24
Bcrypt Ruby HIGH 7.5
CVE-2026-33306

bcrypt-ruby is a Ruby binding for the OpenBSD bcrypt() password hashing algorithm. Prior to version 3.1.22, an integer overflow in the Java BCrypt im…

Fix: 3.1.22+
Fix from $1,950 2026-03-24
Llama.cpp HIGH 7.8
CVE-2026-33298

llama.cpp is an inference of several LLM models in C/C++. Prior to b7824, an integer overflow vulnerability in the `ggml_nbytes` function allows an a…

No fix yet
Fix from $1,950 2026-03-24
Unclassified HIGH 8.4
CVE-2026-32845

cgltf version 1.15 and prior contain an integer overflow vulnerability in the cgltf_validate() function when validating sparse accessors that allows …

Patch available
Fix from $1,950 2026-03-23
Bitcoin Core HIGH 7.5
CVE-2025-46597

Bitcoin Core 0.13.0 through 29.x has an integer overflow.

Fix: 0.30.0+
Fix from $1,950 2026-03-20
Libp2p Gossipsub HIGH 7.5
CVE-2026-33040

libp2p-rust is the official rust language Implementation of the libp2p networking stack. In versions prior to 0.49.3, the Gossipsub implementation ac…

Fix: 0.49.3+
Fix from $1,950 2026-03-20
Chrome HIGH 8.8
CVE-2026-4464

Integer overflow in ANGLE in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM…

Fix: 146.0.7680.153+
Fix from $1,950 2026-03-20
Chrome HIGH 8.8
CVE-2026-4452

Integer overflow in ANGLE in Google Chrome on Windows prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap corruption via a …

Fix: 146.0.7680.153+
Fix from $1,950 2026-03-20
Ultrajson HIGH 7.5
CVE-2026-32875

UltraJSON is a fast JSON encoder and decoder written in pure C with bindings for Python 3.7+. Versions 5.10 through 5.11.0 are vulnerable to buffer o…

Fix: 5.12.0+
Fix from $1,950 2026-03-20
Filebrowser HIGH 8.1
CVE-2026-32759

File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a specified directory. In versions …

Fix: after 2.61.2
Fix from $1,950 2026-03-20
Htslib HIGH 8.1
CVE-2026-31970

HTSlib is a library for reading and writing bioinformatics file formats. GZI files are used to index block-compressed GZIP [BGZF] files. In the GZI …

Fix: 1.21 / 1.22.2+
Fix from $1,950 2026-03-18
Unclassified MEDIUM 6.7
CVE-2026-2809

Netskope was notified about a potential gap in its Endpoint DLP Module for Netskope Client on Windows systems. The successful exploitation of the gap…

Mitigation only
Fix from $1,600 2026-03-17
Unclassified MEDIUM 6.8
CVE-2025-15584

Netskope was notified about a potential gap in its Endpoint DLP Module for Netskope Client on Windows systems. The successful exploitation of the gap…

Mitigation only
Fix from $1,600 2026-03-17
Gstreamer HIGH 7.8
CVE-2026-2921

GStreamer RIFF Palette Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on …

Fix: 1.28.1+
Fix from $1,950 2026-03-16
Yamux HIGH 7.5
CVE-2026-31814

Yamux is a stream multiplexer over reliable, ordered connections such as TCP/IP. From 0.13.0 to before 0.13.9, a specially crafted WindowUpdate can c…

Fix: 0.13.9+
Fix from $1,950 2026-03-13
Capnproto MEDIUM 6.5
CVE-2026-32239

Cap'n Proto is a data interchange format and capability-based RPC system. Prior to 1.4.0, a negative Content-Length value was converted to unsigned, …

Fix: 1.4.0+
Fix from $1,600 2026-03-12
Llama.cpp HIGH 7.8
CVE-2026-27940

llama.cpp is an inference of several LLM models in C/C++. Prior to b8146, the gguf_init_from_file_impl() in gguf.cpp is vulnerable to an Integer over…

No fix yet
Fix from $1,950 2026-03-12
Chrome HIGH 8.8
CVE-2026-3914

Integer overflow in WebML in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML…

Fix: 146.0.7680.71+
Fix from $1,950 2026-03-11
Dng Software Development Kit MEDIUM 5.5
CVE-2026-27281

DNG SDK versions 1.7.1 2471 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could lead to application denial-of-serv…

Fix: after 1.7.1
Fix from $1,600 2026-03-10
365 Copilot HIGH 7.8
CVE-2026-26134

Integer overflow or wraparound in Microsoft Office allows an authorized attacker to elevate privileges locally.

Fix: 16.0.19822.20000+
Fix from $1,950 2026-03-10
Windows Server 2012 HIGH 8.0
CVE-2026-26111

Integer overflow or wraparound in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over a network.

Fix: 6.2.9200.25973 / 10.0.14393.8957+
Fix from $1,950 2026-03-10
Windows Server 2012 HIGH 8.0
CVE-2026-25172

Integer overflow or wraparound in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over a network.

Fix: 10.0.14393.8957 / 10.0.17763.8511+
Fix from $1,950 2026-03-10
Windows 10 1607 HIGH 8.0
CVE-2026-25173

Integer overflow or wraparound in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over a network.

Fix: 10.0.14393.8957 / 10.0.17763.8511+
Fix from $1,950 2026-03-10
Imagemagick MEDIUM 6.1
CVE-2026-30937

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, a 32-bit uns…

Fix: 6.9.13-41 / 7.1.2-16+
Fix from $1,600 2026-03-10
Imagemagick HIGH 8.1
CVE-2026-28693

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, an integer o…

Fix: 6.9.13-41 / 7.1.2-16+
Fix from $1,950 2026-03-10