Vulnerability index

Browse CVEs

3,242 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
Malware Protection Engine HIGH 7.8
CVE-2026-55012

Integer overflow or wraparound in Microsoft Defender allows an unauthorized attacker to execute code locally.

Fix: 1.1.26060.3008+
Fix from $1,950 2026-07-14
Windows 10 1607 HIGH 7.8
CVE-2026-54109

Integer overflow or wraparound in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally.

Fix: 10.0.14393.9339 / 10.0.17763.9020+
Fix from $1,950 2026-07-14
Windows 10 1607 MEDIUM 6.8
CVE-2026-50298

Integer overflow or wraparound in Windows Spaceport.sys allows an unauthorized attacker to elevate privileges with a physical attack.

Fix: 10.0.14393.9339 / 10.0.17763.9020+
Fix from $1,600 2026-07-14
Windows 10 1607 MEDIUM 6.8
CVE-2026-50299

Integer overflow or wraparound in Windows Storage Spaces Direct allows an unauthorized attacker to execute code with a physical attack.

Fix: 10.0.14393.9339 / 10.0.17763.9020+
Fix from $1,600 2026-07-14
Windows 10 1809 HIGH 7.8
CVE-2026-49800

Integer overflow or wraparound in Windows Web Proxy Auto-Discovery Protocol (WPAD) allows an authorized attacker to elevate privileges locally.

Fix: 10.0.17763.9020 / 10.0.19044.7548+
Fix from $1,950 2026-07-14
Windows 10 1607 MEDIUM 6.8
CVE-2026-49168

Integer overflow or wraparound in Windows Storage Spaces Direct allows an unauthorized attacker to elevate privileges with a physical attack.

Fix: 10.0.14393.9339 / 10.0.17763.9020+
Fix from $1,600 2026-07-14
Pillow HIGH 7.5
CVE-2026-59199

Pillow is a Python imaging library. Prior to 12.3.0, Pillow public image coordinate APIs can trigger a native heap out-of-bounds write when given coo…

Fix: 12.3.0+
Fix from $1,950 2026-07-14
Zephyr HIGH 7.8
CVE-2026-10669

On Xtensa SoCs built with CONFIG_XTENSA_MPU and CONFIG_USERSPACE, arch_buffer_validate() in arch/xtensa/core/mpu.c — the architecture hook that verif…

Fix: 4.5.0+
Fix from $1,950 2026-07-14
Opener CRITICAL 9.1
CVE-2026-51536

In OpENer 2.3.0 (commit 76b95cf) when parsing incoming CIP (Common Industrial Protocol) network packets, the length parameter is inconsistently typed…

Mitigation only
Fix from $2,300 2026-07-13
Unclassified HIGH 7.5
CVE-2026-39042

An issue in MikroTIk (SIA Mikrotikls, Latvia) RouterOS 7.21.x before v.7.21.4 and 7.22.x before v.7.22.2 allows a remote attacker to cause a denial o…

Mitigation only
Fix from $1,950 2026-07-13
Perl HIGH 8.4
CVE-2026-57432

Perl versions through 5.43.10 have an integer overflow in S_measure_struct leading to an out-of-bounds heap read in pack and unpack. S_measure_struc…

Fix: after 5.43.10
Fix from $1,950 2026-07-13
Storable CRITICAL 9.8
CVE-2026-57433

Storable versions before 3.41 for Perl have a signed integer overflow when deserializing a crafted SX_HOOK record. retrieve_hook_common reads a sign…

Fix: 3.41+
Fix from $2,300 2026-07-13
Perl CRITICAL 9.1
CVE-2026-13221

Perl versions through 5.43.9 produce silently incorrect regular expression matches when an alternation of more than 65535 fixed string branches is co…

Fix: after 5.43.9
Fix from $2,300 2026-07-13
Gawk CRITICAL 9.1
CVE-2026-40469

Integer overflow vulnerability has been found in "builtin.c" program file of gawk (do_sub() routine). This issue could be used to overwrite gawk heap…

Fix: after 5.4.0
Fix from $2,300 2026-07-13
Gawk CRITICAL 9.1
CVE-2026-40468

Integer overflow vulnerability has been found in "builtin.c" program file of gawk. This issue may lead to memory exhaustion on the hosting operating …

Fix: after 5.4.0
Fix from $2,300 2026-07-13
Unclassified HIGH 7.8
CVE-2026-7162

Successful exploitation of the integer overflow vulnerability could allow an attacker to achieve system-level access to the affected software.

No fix yet
Fix from $1,950 2026-07-13
Unclassified MEDIUM 5.5
CVE-2026-15551

Integer overflow or wraparound vulnerability in Samsung Open Source rlottie allows Overflow Buffers. This issue affects .

Patch available
Fix from $1,600 2026-07-13
Freerdp CRITICAL 9.8
CVE-2026-57156

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.28.0 on 32-bit builds, FreeRDP clients contain an integer overflow in upd…

Fix: 3.28.0+
Fix from $2,300 2026-07-10
Unclassified HIGH 7.5
CVE-2026-38076

An integer overflow in the jbig2_arith_iaid_ctx_new() function of Artifex commit cc37d0 allows attackers to cause a Denial of Service (DoS) via a cra…

Mitigation only
Fix from $1,950 2026-07-09
Nats Server MEDIUM 6.5
CVE-2026-58207

NATS Server is a high-performance server for NATS.io, the cloud and edge native messaging system. Prior to 2.14.3 and 2.12.12, a client able to send …

Fix: 2.12.12 / 2.14.3+
Fix from $1,600 2026-07-08
Immutable HIGH 7.5
CVE-2026-59879

Immutable.js provides many Persistent Immutable data structures. Prior to 4.3.9 and 5.1.8, List#set, List#setSize, List#setIn, List#updateIn, and the…

Fix: 4.3.9 / 5.1.8+
Fix from $1,950 2026-07-08
Data Domain Operating System HIGH 7.5
CVE-2026-53482

Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 throug…

Fix: 7.13.1.80 / 8.3.1.40+
Fix from $1,950 2026-07-08
Wget MEDIUM 5.3
CVE-2026-58470

GNU Wget through 1.25.0, fixed in commit 43d3ba9, contains an integer overflow vulnerability in the parse_content_range() function within src/http.c …

Fix: after 1.25.0
Fix from $1,600 2026-07-07
Wget HIGH 7.1
CVE-2026-58472

GNU Wget through 1.25.0, fixed in commit dd692d9, contains a heap buffer overflow vulnerability in the html_quote_string() function in src/convert.c …

Fix: after 1.25.0
Fix from $1,950 2026-07-07
Enterprise Linux HIGH 7.8
CVE-2026-58384

A flaw was found in GIMP's PSD parser. An integer overflow in read_RLE_channel() can cause an undersized heap allocation for the RLE row-length table…

Mitigation only
Fix from $1,950 2026-07-07
Enterprise Linux MEDIUM 5.5
CVE-2026-59089

A flaw was found in GIMP. The PlayStation TIM loader, responsible for handling PlayStation image files, incorrectly calculates the size of the Color …

No fix yet
Fix from $1,600 2026-07-06
Radare2 HIGH 7.8
CVE-2026-14787

A weakness has been identified in radareorg radare2 up to 6.1.6. Affected is the function cmd_print in the library libr/core/cmd_print.inc of the com…

Fix: after 6.1.6
Fix from $1,950 2026-07-06
Radare2 MEDIUM 5.5
CVE-2026-14786

A security flaw has been discovered in radareorg radare2 up to 6.1.6. This impacts the function r_str_word_get0set of the file libr/util/str.c. The m…

Fix: 6.1.8+
Fix from $1,600 2026-07-06
Radare2 MEDIUM 5.5
CVE-2026-14761

A security vulnerability has been detected in radareorg radare2 up to 6.1.6. The affected element is the function r_str_ndup/r_str_append of the file…

Fix: 6.1.8+
Fix from $1,600 2026-07-05
Radare2 HIGH 7.8
CVE-2026-14757

A vulnerability was determined in radareorg radare2 up to 6.1.6. This affects the function core_anal_bytes of the file libr/core/cmd_anal.inc. This m…

Fix: 6.1.8+
Fix from $1,950 2026-07-05