Vulnerability index

Browse CVEs

3,242 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
Libexpat MEDIUM 6.9
CVE-2026-56411

xmlwf in libexpat before 2.8.2 has an integer overflow in endDoctypeDecl via NOTATION declarations.

Fix: 2.8.2+
Fix from $1,600 2026-06-21
Libexpat MEDIUM 6.9
CVE-2026-56408

libexpat before 2.8.2 has an integer overflow in copyString.

Fix: 2.8.2+
Fix from $1,600 2026-06-21
Libexpat MEDIUM 6.5
CVE-2026-56409

xmlwf in libexpat before 2.8.2 has an integer overflow for the output filename when -d outputDir is used.

Fix: 2.8.2+
Fix from $1,600 2026-06-21
Libexpat MEDIUM 6.9
CVE-2026-56410

xmlwf in libexpat before 2.8.2 has an integer overflow in resolveSystemId.

Fix: 2.8.2+
Fix from $1,600 2026-06-21
Libexpat MEDIUM 6.9
CVE-2026-56404

libexpat before 2.8.2 has an integer overflow in addBinding.

Fix: 2.8.2+
Fix from $1,600 2026-06-21
Libexpat MEDIUM 6.9
CVE-2026-56405

libexpat before 2.8.2 has an integer overflow in getAttributeId.

Fix: 2.8.2+
Fix from $1,600 2026-06-21
Libexpat MEDIUM 6.9
CVE-2026-56406

libexpat before 2.8.2 has an integer overflow in XML_ParseBuffer because it lacked a check that was present in XML_Parse.

Fix: 2.8.2+
Fix from $1,600 2026-06-21
Libexpat MEDIUM 6.9
CVE-2026-56407

libexpat before 2.8.2 has an integer overflow in doProlog that is related to storeEntityValue and entity textLen.

Fix: 2.8.2+
Fix from $1,600 2026-06-21
Libexpat MEDIUM 6.9
CVE-2026-56403

libexpat before 2.8.2 has an integer overflow in storeAtts.

Fix: 2.8.2+
Fix from $1,600 2026-06-21
Libde265 HIGH 7.1
CVE-2026-49346

libde265 is an open source implementation of the h.265 video codec. Prior to version 1.1.0, a crafted H.265 bitstream with large SPS dimensions and 1…

Fix: 1.1.0+
Fix from $1,950 2026-06-19
Unclassified MEDIUM 5.5
CVE-2026-3196

An integer overflow vulnerability was found in the virtio-snd device via PCM_INFO requests from the guest. A malicious guest can provide out-of-bound…

Mitigation only
Fix from $1,600 2026-06-19
Unclassified HIGH 8.7
CVE-2026-8805

Integer Overflow or Wraparound vulnerability in the EtherNet/IP function of Mitsubishi Electric MELSEC iQ-F Series FX5-EIP EtherNet/IP module FX5-EIP…

Mitigation only
Fix from $1,950 2026-06-19
Openexr HIGH 7.1
CVE-2026-44663

OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture industry. In versions 3.4.0 thr…

Fix: 3.4.12+
Fix from $1,950 2026-06-18
Haproxy CRITICAL 9.1
CVE-2026-55203

HAProxy through 3.4.0, fixed in commit 5985276, contains an integer overflow vulnerability in the fcgi_conn structure's drl field that allows buffer …

Fix: after 3.4.0
Fix from $2,300 2026-06-18
Unclassified HIGH 7.5
CVE-2026-54417

An integer overflow in the mtar_next function in src/microtar.c in rxi microtar 0.1.0 allows a remote attacker to cause a denial of service (uncontro…

Mitigation only
Fix from $1,950 2026-06-17
Android HIGH 8.8
CVE-2026-0161

In numberOfReportBlocks of RtpSession.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to remote escalation o…

Mitigation only
Fix from $1,950 2026-06-16
Android HIGH 8.8
CVE-2026-0148

In multiple functions of VideoRtpPayloadDecoderNode.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to remot…

Mitigation only
Fix from $1,950 2026-06-16
Android HIGH 7.8
CVE-2026-0150

In ExecuteGraph command handler of EdgeTPU firmware, there is a possible out of bounds write due to an integer overflow. This could lead to local esc…

Mitigation only
Fix from $1,950 2026-06-16
Android HIGH 8.8
CVE-2026-0151

In IntfGraphCreate of intfgraph.c, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution with …

Mitigation only
Fix from $1,950 2026-06-16
Android MEDIUM 6.5
CVE-2026-0128

In RtcpFbPacket::decodeRtcpFbPacket, there is a possible out of bounds read due to an integer overflow. This could lead to remote information disclos…

Mitigation only
Fix from $1,600 2026-06-16
Android HIGH 7.3
CVE-2026-0131

In RtpPacket::decodePacket, there is a possible out of bounds access due to an integer overflow. This could lead to local escalation of privilege wit…

Mitigation only
Fix from $1,950 2026-06-16
Unclassified HIGH 8.6
CVE-2026-10649

A flaw was found in Pacemaker. An unauthenticated remote attacker can exploit an integer overflow vulnerability in the remote message decompression p…

Patch available
Fix from $1,950 2026-06-16
Linux Kernel HIGH 7.8
CVE-2026-46331

In the Linux kernel, the following vulnerability has been resolved: net/sched: fix pedit partial COW leading to page cache corruption tcf_pedit_act…

Fix: 4.20 / 5.5+
Fix from $1,950 2026-06-16
Unclassified HIGH 7.6
CVE-2026-53705

A flaw was found in GStreamer's WavPack audio decoder in gst-plugins-good. When processing a specially crafted WavPack file, an integer overflow in t…

Mitigation only
Fix from $1,950 2026-06-15
Unclassified HIGH 7.1
CVE-2026-52722

A signed integer overflow vulnerability was found in GStreamer's VMnc decoder. A crafted VMnc stream with large cursor dimensions can overflow signed…

Mitigation only
Fix from $1,950 2026-06-15
Gpac MEDIUM 5.5
CVE-2025-55647

An Out-of-Memory in the mp4_mux_cenc_insert_pssh function (filters/mux_isom.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial of Service (DoS…

Fix: 26.02.0+
Fix from $1,600 2026-06-15
Unclassified MEDIUM 5.4
CVE-2026-6045

LibreOffice can import EMF+ graphics, which may be embedded in documents. A heap buffer overflow existed when importing an EMF+ gradient brush. The n…

Mitigation only
Fix from $1,600 2026-06-15
Unclassified HIGH 7.8
CVE-2025-14098

Heap buffer out-of-bounds write vulnerability due to integer overflow in Avira Antivirus engine when scanning a malformed MS-DOS executable file may …

Mitigation only
Fix from $1,950 2026-06-12
Unclassified MEDIUM 5.4
CVE-2026-47223

NanaZip is the 7-Zip derivative intended for the modern Windows experience. From version 3.0.1000.0 to before version 6.0.1698.0, a heap out-of-bound…

Mitigation only
Fix from $1,600 2026-06-12
Unclassified HIGH 7.6
CVE-2026-11774

An integer overflow flaw was found in the SASL I/O layer of 389 Directory Server (389-ds-base). In sasl_io_start_packet(), adding sizeof(uint32_t) to…

Mitigation only
Fix from $1,950 2026-06-11