Vulnerability index

Browse CVEs

3,255 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
Iccdev HIGH 8.8
CVE-2026-24403

iccDEV provides libraries and tools for interacting with, manipulating, and applying ICC color management profiles. In versions 2.3.1.1 and below, an…

Fix: 2.3.1.2+
Fix from $1,950 2026-01-24
Imagemagick CRITICAL 9.8
CVE-2026-23876

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-13 and 6.9.13-38, a heap buffe…

Fix: 6.9.13-38 / 7.1.2-13+
Fix from $2,300 2026-01-20
Esphome HIGH 7.5
CVE-2026-23833

ESPHome is a system to control microcontrollers remotely through Home Automation systems. In versions 2025.9.0 through 2025.12.6, an integer overflow…

Fix: 2025.12.7+
Fix from $1,950 2026-01-19
Raylib HIGH 7.8
CVE-2025-15534

A vulnerability was identified in raysan5 raylib up to 909f040. Affected by this issue is the function LoadFontData of the file src/rtext.c. The mani…

Fix: 2026-01-01+
Fix from $1,950 2026-01-18
Unclassified HIGH 7.1
CVE-2025-24528

In MIT Kerberos 5 (aka krb5) before 1.22 (with incremental propagation), there is an integer overflow for a large update size to resize() in kdb_log.…

Patch available
Fix from $1,950 2026-01-16
Glibc HIGH 8.4
CVE-2026-0861

Passing too large an alignment to the memalign suite of functions (memalign, posix_memalign, aligned_alloc) in the GNU C Library version 2.30 to 2.42…

Fix: after 2.42
Fix from $1,950 2026-01-14
Unclassified MEDIUM 6.5
CVE-2025-14242

A flaw was found in vsftpd. This vulnerability allows a denial of service (DoS) via an integer overflow in the ls command parameter parsing, triggere…

Mitigation only
Fix from $1,600 2026-01-14
Firefox HIGH 8.8
CVE-2026-0880

Sandbox escape due to integer overflow in the Graphics component. This vulnerability was fixed in Firefox 147, Firefox ESR 115.32, Firefox ESR 140.7,…

Fix: 115.32.0 / 140.7.0+
Fix from $1,950 2026-01-13
Libpng HIGH 7.8
CVE-2026-22801

LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.…

Fix: 1.6.54+
Fix from $1,950 2026-01-12
Iccdev HIGH 8.8
CVE-2026-21688

iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co…

Fix: 2.3.1.2+
Fix from $1,950 2026-01-07
Iccdev MEDIUM 6.5
CVE-2026-21689

iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co…

Fix: 2.3.1.2+
Fix from $1,600 2026-01-07
Iccdev HIGH 8.8
CVE-2026-21485

iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1.1 and below are prone to have Undefined B…

Fix: 2.3.1.2+
Fix from $1,950 2026-01-06
Iccdev HIGH 7.8
CVE-2026-21486

iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1.1 and below contain Use After Free, Heap-…

Fix: 2.3.1.2+
Fix from $1,950 2026-01-06
Iccdev HIGH 7.8
CVE-2026-21673

iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1 and below have overflows and underflows i…

Fix: 2.3.1.1+
Fix from $1,950 2026-01-06
Android MEDIUM 6.7
CVE-2025-20803

In dpe, there is a possible memory corruption due to an integer overflow. This could lead to local escalation of privilege if a malicious actor has a…

Mitigation only
Fix from $1,600 2026-01-06
Android MEDIUM 6.7
CVE-2025-20807

In dpe, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege if a malicious actor has…

Mitigation only
Fix from $1,600 2026-01-06
Fontforge HIGH 7.8
CVE-2025-15278

FontForge GUtils XBM File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitra…

Mitigation only
Fix from $1,950 2025-12-31
Wasmedge HIGH 7.5
CVE-2025-69261

WasmEdge is a WebAssembly runtime. Prior to version 0.16.0-alpha.3, a multiplication in `WasmEdge/include/runtime/instance/memory.h` can wrap, causin…

Fix: 0.16.0+
Fix from $1,950 2025-12-30
Imagemagick HIGH 7.5
CVE-2025-69204

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-12, in the WriteSVGImage functi…

Fix: 7.1.2-12+
Fix from $1,950 2025-12-30
Libheif HIGH 7.1
CVE-2025-68431

libheif is an HEIF and AVIF file format decoder and encoder. Prior to version 1.21.0, a crafted HEIF that exercises the overlay image item path trigg…

Fix: 1.21.0+
Fix from $1,950 2025-12-29
PHP HIGH 8.2
CVE-2025-14178

In PHP versions:8.1.* before 8.1.34, 8.2.* before 8.2.30, 8.3.* before 8.3.29, 8.4.* before 8.4.16, 8.5.* before 8.5.1, a heap buffer overflow occurs…

Fix: 8.1.34 / 8.2.30+
Fix from $1,950 2025-12-27
Gimp HIGH 7.8
CVE-2025-14422

GIMP PNM File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on a…

Patch available
Fix from $1,950 2025-12-23
Netcdf HIGH 7.8
CVE-2025-14933

NSF Unidata NetCDF-C NC Variable Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrar…

Mitigation only
Fix from $1,950 2025-12-23
Opendds HIGH 7.5
CVE-2025-67111

An integer overflow in the RTPS protocol implementation of OpenDDS DDS before v3.33.0 allows attackers to cause a Denial of Service (DoS) via a craft…

Fix: 3.33.0+
Fix from $1,950 2025-12-23
Fast Dds HIGH 7.5
CVE-2025-65865

An integer overflow in eProsima Fast-DDS v3.3 allows attackers to cause a Denial of Service (DoS) via a crafted input.

No fix yet
Fix from $1,950 2025-12-23
Tapo C200 Firmware MEDIUM 6.5
CVE-2025-14299

The HTTPS server on Tapo C200 V3 does not properly validate the Content-Length header, which can lead to an integer overflow. An unauthenticated atta…

Mitigation only
Fix from $1,600 2025-12-20
Pdf Editor HIGH 7.8
CVE-2025-66499

A heap-based buffer overflow vulnerability exists in the PDF parsing of Foxit PDF Reader when processing specially crafted JBIG2 data. An integer ove…

Fix: after 2025.2.1.69005
Fix from $1,950 2025-12-19
Ffmpeg HIGH 7.5
CVE-2025-63757

Integer overflow vulnerability in the yuv2ya16_X_c_template function in libswscale/output.c in FFmpeg 8.0.

Patch available
Fix from $1,950 2025-12-18
Fastconnect 6900 Firmware HIGH 7.8
CVE-2025-47323

Memory corruption while routing GPR packets between user and root when handling large data packet.

No fix yet
Fix from $1,950 2025-12-18
Unclassified MEDIUM 6.5
CVE-2025-12035

An integer overflow condition exists in Bluetooth Host stack, within the bt_br_acl_recv routine a critical path for processing inbound BR/EDR L2CAP t…

Mitigation only
Fix from $1,600 2025-12-15