Vulnerability index

Browse CVEs

3,242 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
Imagemagick MEDIUM 6.5
CVE-2026-28493

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16, an integer overflow vulner…

Fix: 7.1.2-16+
Fix from $1,600 2026-03-10
Unclassified MEDIUM 5.3
CVE-2026-3707

A vulnerability was identified in MrNanko webp4j up to 1.3.x. The affected element is the function DecodeGifFromMemory of the file src/main/c/gif_dec…

Patch available
Fix from $1,600 2026-03-08
Crypt\ HIGH 7.5
CVE-2026-30910

Crypt::Sodium::XS versions through 0.001000 for Perl has potential integer overflows. Combined aead encryption, combined signature creation, and bin…

Fix: after 0.001001
Fix from $1,950 2026-03-08
Crypt\ CRITICAL 9.8
CVE-2026-30909

Crypt::NaCl::Sodium versions through 2.002 for Perl has potential integer overflows. bin2hex, encrypt, aes256gcm_encrypt_afternm and seal functions …

Fix: 2.003+
Fix from $2,300 2026-03-08
Tinyweb CRITICAL 9.1
CVE-2026-28497

TinyWeb is a web server (HTTP, HTTPS) written in Delphi for Win32. Prior to version 2.03, an integer overflow vulnerability in the string-to-integer …

Fix: 2.03+
Fix from $2,300 2026-03-06
Chrome HIGH 8.8
CVE-2026-3536

Integer overflow in ANGLE in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to potentially perform out of bounds memory access via a…

Fix: 145.0.7632.159 / 145.0.7632.160+
Fix from $1,950 2026-03-04
Secure Firewall Threat Defense MEDIUM 6.8
CVE-2026-20025

A vulnerability in the OSPF protocol of Cisco Secure Firewall ASA Software and Cisco Secure FTD Software could allow an authenticated, adjacent attac…

Fix: 7.0.9 / 7.2.11+
Fix from $1,600 2026-03-04
Activemq HIGH 8.8
CVE-2025-66168

WARNING: Users of 6.x should upgrade to 6.2.4 or later as the fix was missed in previous 6.x releases. See the  following for more details: https:…

Fix: 5.19.2+
Fix from $1,950 2026-03-04
Openexr HIGH 7.8
CVE-2026-27622

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. In C…

Fix: 3.2.6 / 3.3.8+
Fix from $1,950 2026-03-03
Android HIGH 8.4
CVE-2026-0028

In __pkvm_host_share_guest of mem_protect.c, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation …

Patch available
Fix from $1,950 2026-03-02
Android HIGH 8.4
CVE-2026-0031

In multiple functions of mem_protect.c, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of pr…

Patch available
Fix from $1,950 2026-03-02
Sm7675p Firmware HIGH 7.8
CVE-2026-21385 KEV

Memory corruption while using alignments for memory allocation.

Patch available
Fix from $1,950 2026-03-02
Pillow Heif CRITICAL 9.1
CVE-2026-28231

pillow_heif is a Python library for working with HEIF images and plugin for Pillow. Prior to version 1.3.0, an integer overflow in the encode path bu…

Fix: 1.3.0+
Fix from $2,300 2026-02-27
Libvips MEDIUM 5.5
CVE-2026-3284

A vulnerability was found in libvips 8.19.0. Impacted is the function vips_extract_area_build of the file libvips/conversion/extract.c. The manipulat…

Patch available
Fix from $1,600 2026-02-27
Psd Tools CRITICAL 9.1
CVE-2026-27809

psd-tools is a Python package for working with Adobe Photoshop PSD files. Prior to version 1.12.2, when a PSD file contains malformed RLE-compressed …

Fix: 1.12.2+
Fix from $2,300 2026-02-26
Freerdp HIGH 7.5
CVE-2026-27951

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.23.0, the function `Stream_EnsureCapacity` can create an endless …

Fix: 3.23.0+
Fix from $1,950 2026-02-25
Iccdev MEDIUM 5.5
CVE-2026-27691

iccDEV provides a set of libraries and tools for working with ICC color management profiles. In versions up to and including 2.3.1.4, signed integer …

Fix: after 2.3.1.4
Fix from $1,600 2026-02-25
Firefox CRITICAL 9.8
CVE-2026-2781

Integer overflow in the Libraries component in NSS. This vulnerability was fixed in Firefox 148, Firefox ESR 140.8, Thunderbird 148, Thunderbird 140.…

Fix: 140.8.0 / 148.0+
Fix from $2,300 2026-02-24
Firefox CRITICAL 9.8
CVE-2026-2774

Integer overflow in the Audio/Video component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 148, a…

Fix: 115.33.0 / 140.8.0+
Fix from $2,300 2026-02-24
Firefox CRITICAL 9.8
CVE-2026-2762

Integer overflow in the JavaScript: Standard Library component. This vulnerability was fixed in Firefox 148, Firefox ESR 140.8, Thunderbird 148, and …

Fix: 140.8.0 / 148.0+
Fix from $2,300 2026-02-24
Imagemagick HIGH 7.5
CVE-2026-25989

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, a crafted SV…

Fix: 6.9.13-40 / 7.1.2-15+
Fix from $1,950 2026-02-24
Imagemagick HIGH 7.5
CVE-2026-25970

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, a signed int…

Fix: 6.9.13-40 / 7.1.2-15+
Fix from $1,950 2026-02-24
Imagemagick CRITICAL 9.8
CVE-2026-25897

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, an Integer O…

Fix: 6.9.13-40 / 7.1.2-15+
Fix from $2,300 2026-02-24
Imagemagick HIGH 8.2
CVE-2026-25794

ImageMagick is free and open-source software used for editing and manipulating digital images. `WriteUHDRImage` in `coders/uhdr.c` uses `int` arithme…

Fix: 7.1.2-15+
Fix from $1,950 2026-02-24
Crypt\ CRITICAL 9.1
CVE-2026-2588

Crypt::NaCl::Sodium versions through 2.001 for Perl has an integer overflow flaw on 32-bit systems. Sodium.xs casts a STRLEN (size_t) to unsigned lo…

Fix: after 2.001
Fix from $2,300 2026-02-23
Unclassified MEDIUM 6.0
CVE-2026-0619

A reachable infinite loop via an integer wraparound is present in Silicon Labs' Matter SDK which allows an attacker to trigger a denial of service. A…

Mitigation only
Fix from $1,600 2026-02-12
Unclassified MEDIUM 5.5
CVE-2024-36316

The integer overflow vulnerability within AMD Graphics driver could allow an attacker to bypass size checks potentially resulting in a denial of serv…

Mitigation only
Fix from $1,600 2026-02-11
Unclassified HIGH 7.0
CVE-2024-36320

Integer Overflow within atihdwt6.sys can allow a local attacker to cause out of bound read/write potentially leading to loss of confidentiality, inte…

Mitigation only
Fix from $1,950 2026-02-11
Unclassified MEDIUM 5.4
CVE-2025-48515

Insufficient parameter sanitization in AMD Secure Processor (ASP) Boot Loader could allow an attacker with access to SPIROM upgrade to overwrite the …

Mitigation only
Fix from $1,600 2026-02-10
Dng Software Development Kit MEDIUM 5.5
CVE-2026-21354

DNG SDK versions 1.7.1 2410 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could lead to application denial-of-serv…

Fix: 1.7.2+
Fix from $1,600 2026-02-10