Vulnerability index

Browse CVEs

3,242 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
Qts HIGH 7.2
CVE-2025-66280

An integer overflow or wraparound vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains an adm…

Fix: 5.2.9.3410+
Fix from $1,950 2026-06-10
C2pa HIGH 7.5
CVE-2026-34711

CAI Content Credentials versions [email protected], c2pa-v0.80.1 and earlier are affected by an Integer Overflow or Wraparound vulnerability. An attacke…

Fix: after 0.80.1
Fix from $1,950 2026-06-09
Acrobat Dc MEDIUM 5.5
CVE-2026-47925

Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could result in a…

Fix: 24.001.30383 / 26.001.21662+
Fix from $1,600 2026-06-09
Unclassified HIGH 8.2
CVE-2023-29146

The utility functions used by Malwarebytes EDR 1.0.11 on Linux for calculating a cryptographic hash of data bytes truncate the hashed data if it exce…

Mitigation only
Fix from $1,950 2026-06-09
Windows Server 2012 HIGH 7.1
CVE-2026-47288

Integer overflow or wraparound in Windows Kerberos allows an authorized attacker to execute code over an adjacent network.

Fix: 10.0.14393.9234 / 10.0.17763.8880+
Fix from $1,950 2026-06-09
Windows 10 1607 CRITICAL 9.8
CVE-2026-47291EPSS 23%

Integer overflow or wraparound in Windows HTTP.sys allows an unauthorized attacker to execute code over a network.

Fix: 10.0.14393.9234 / 10.0.17763.8880+
Fix from $2,300 2026-06-09
Windows 10 1607 HIGH 7.8
CVE-2026-45592

Integer overflow or wraparound in Windows Internet (wininet.dll) allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.9234 / 10.0.17763.8880+
Fix from $1,950 2026-06-09
Windows 10 1809 HIGH 7.8
CVE-2026-45593

Use after free in Windows SDK allows an authorized attacker to elevate privileges locally.

Fix: 10.0.17763.8880 / 10.0.19044.7417+
Fix from $1,950 2026-06-09
Excel HIGH 7.8
CVE-2026-44812

Integer overflow or wraparound in Windows Win32K - GRFX allows an unauthorized attacker to execute code locally.

Fix: 10.0.14393.9234 / 10.0.17763.8880+
Fix from $1,950 2026-06-09
Excel HIGH 7.8
CVE-2026-44803

Integer overflow or wraparound in Windows Win32K - GRFX allows an unauthorized attacker to execute code locally.

Fix: 10.0.14393.9234 / 10.0.17763.8880+
Fix from $1,950 2026-06-09
Windows 11 23h2 HIGH 8.1
CVE-2026-42974

Integer overflow or wraparound in Windows Performance Monitor allows an unauthorized attacker to execute code over a network.

Fix: 10.0.20348.5256 / 10.0.22631.7219+
Fix from $1,950 2026-06-09
Windows 10 1607 HIGH 7.8
CVE-2026-42916

Integer overflow or wraparound in Windows NT OS Kernel allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.9234 / 10.0.17763.8880+
Fix from $1,950 2026-06-09
Unclassified MEDIUM 5.0
CVE-2026-41977

DoS vulnerability in the log service. Impact: Successful exploitation of this vulnerability may affect availability.

No fix yet
Fix from $1,600 2026-06-09
Spring Framework HIGH 7.5
CVE-2026-41849

An integer overflow vulnerability exists in the evaluation logic of the Spring Expression Language (SpEL). An attacker can exploit this by supplying …

Fix: 5.3.49+
Fix from $1,950 2026-06-09
7 Zip MEDIUM 6.5
CVE-2026-48112

7-Zip is a file archiver with a high compression ratio. Versions 9.18 through 26.00 contain a heap out-of-bounds read in 7-Zip Ar handler BSD SYMDEF …

Fix: 26.01+
Fix from $1,600 2026-06-05
7 Zip HIGH 8.8
CVE-2026-48095

7-Zip is a file archiver with a high compression ratio. Versions 26.00 and prior contain a heap buffer overflow vulnerability caused by an under-allo…

Fix: 26.01+
Fix from $1,950 2026-06-05
Chrome MEDIUM 6.5
CVE-2026-11299

Integer overflow in Fonts in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to obtain potentially sensitive information from process …

Fix: 149.0.7827.53+
Fix from $1,600 2026-06-05
Chrome MEDIUM 5.0
CVE-2026-11290

Integer overflow in WebView in Google Chrome on Android prior to 149.0.7827.53 allowed a local attacker to cause a denial of service via a malicious …

Fix: 149.0.7827.53+
Fix from $1,600 2026-06-05
Chrome MEDIUM 5.0
CVE-2026-11281

Integer overflow in Chromoting in Google Chrome on Windows prior to 149.0.7827.53 allowed a local attacker to obtain potentially sensitive informatio…

Fix: 149.0.7827.53+
Fix from $1,600 2026-06-05
Chrome HIGH 8.8
CVE-2026-11085

Integer overflow in GPU in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker to potentially perform out of bounds memory acce…

Fix: 149.0.7827.53+
Fix from $1,950 2026-06-04
Chrome CRITICAL 9.6
CVE-2026-11088

Integer overflow in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially p…

Fix: 149.0.7827.53+
Fix from $2,300 2026-06-04
Chrome MEDIUM 6.5
CVE-2026-11044

Integer overflow in ANGLE in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker to obtain potentially sensitive information from p…

Fix: 149.0.7827.53+
Fix from $1,600 2026-06-04
Chrome MEDIUM 6.5
CVE-2026-10999

Integer overflow in ANGLE in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to ob…

Fix: 149.0.7827.53+
Fix from $1,600 2026-06-04
Chrome HIGH 8.3
CVE-2026-10921

Integer overflow in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially pe…

Fix: 149.0.7827.53+
Fix from $1,950 2026-06-04
Chrome HIGH 8.3
CVE-2026-10924

Integer overflow in Chromecast in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentia…

Fix: 149.0.7827.53+
Fix from $1,950 2026-06-04
Unclassified MEDIUM 6.1
CVE-2026-49510

Integer overflow or wraparound vulnerability in Samsung Open Source rlottie allows Integer Attacks. This issue affects rlottie: before 21292665023e5…

Patch available
Fix from $1,600 2026-06-04
Unclassified HIGH 7.5
CVE-2026-37462

An integer underflow in the BGPUpdate.DecodeFromBytes function (/bgp/bgp.go) of gobgp v4.3.0 allows attackers to cause a Denial of Service (DoS) via …

Patch available
Fix from $1,950 2026-06-03
Ebpf MEDIUM 5.5
CVE-2026-10722

A vulnerability has been found in cilium ebpf up to 0.21.0. This affects the function loadRawSpec of the file btf/btf.go of the component LoadCollect…

Fix: after 0.21.0
Fix from $1,600 2026-06-03
Ebpf Instrumentation HIGH 7.5
CVE-2026-45686

OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. From version 0.7.0 to before version 0.9.0, a r…

Fix: 0.9.0+
Fix from $1,950 2026-06-02
Android HIGH 8.0
CVE-2026-0095

In l2c_fcr_clone_buf of l2c_fcr.cc, there is a possible way to trigger controlled heap corruption within the privileged Bluetooth process due to an i…

Mitigation only
Fix from $1,950 2026-06-01