Vulnerability index

Browse CVEs

3,242 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
HIGH 7.5 CVE-2026-50142 libheif is a HEIF and AVIF file format decoder and encoder. From 1.19.0 until 1.23.0, a crafted HEIF sequence accepted by heif_context_read_from_memo… Fix unknown Fix from $4,9002026-08-18 CRITICAL 9.3 CVE-2026-50161 libre is a generic library for real-time communications with asynchronous input and output support. Prior to 4.8.1, the websock_decode() function in … Fix unknown Fix from $5,7502026-08-18 HIGH 8.8 CVE-2026-62357 Dragonfly is an in-memory data store built for modern application workloads. Prior to 1.40.0, CMS.INITBYDIM and CMS.INITBYPROB accept dimensions whos… Fix unknown Fix from $4,9002026-08-18 HIGH 7.5 CVE-2026-74977 Integer overflow in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1. Fix unknown Fix from $4,9002026-08-18 HIGH 8.8 CVE-2026-65346 An integer overflow was addressed with improved input validation. This issue is fixed in iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2. Processing… Ipados Fix unknown Fix from $4,9002026-08-17 CRITICAL 9.1 CVE-2026-71479 New API is a large language mode (LLM) gateway and artificial intelligence (AI) asset management system. Prior to 1.0.0-rc.18, user-controlled image … Fix unknown Fix from $5,7502026-08-17 CRITICAL 9.8 CVE-2026-73193 DBI versions before 1.652 for Perl allow a heap out-of-bounds write on 32-bit perl via an integer wraparound in the output buffer size computed by pr… Fix unknown Fix from $5,7502026-08-15 MEDIUM 5.3 CVE-2026-18671 IBM i 7.6, 7.5, 7.4, and 7.3 could allow an authenticated attacker to force a NetServer server thread exception, caused by an integer overflow during… I No fix yet Fix from $4,0002026-08-13 MEDIUM 5.3 CVE-2026-17216 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to an integer error when processing DRDA large-object hea… No fix yet Fix from $4,0002026-08-13 MEDIUM 6.6 CVE-2026-73645 OpenZeppelin Confidential Contracts is an experimental library for developing applications on the Zama fhEVM. Prior to 0.3.1, the ERC7984 contract tr… No fix yet Fix from $4,0002026-08-13 HIGH 8.7 CVE-2026-73564 frp is a fast reverse proxy. From 0.53.0 until 0.70.1, frp's optional SSH Tunnel Gateway in pkg/ssh/server.go parses an SSH exec channel request by a… No fix yet Fix from $4,9002026-08-13 MEDIUM 6.0 CVE-2026-55400 CVE-2026-55400 is an integer underflow in Secure Access servers prior to version 14.57. Attackers with an authenticated session can send specially … No fix yet Fix from $4,0002026-08-13 MEDIUM 5.3 CVE-2026-73558 vLLM is an inference and serving engine for large language models. Prior to 0.27.0, an integer overflow in blockIdx.x * 2 * d in activation_kernels.c… No fix yet Fix from $4,0002026-08-13 MEDIUM 6.5 CVE-2026-70462 rsync 3.1.0 before 3.5.0 contains a signed integer overflow vulnerability in the I/O timeout implementation that allows attackers to permanently disa… No fix yet Fix from $4,0002026-08-13 HIGH 8.8 CVE-2026-15742 Integer wraparound in PostgreSQL fuzzystrmatch allows a user to direct writes to a huge range of addresses, executing arbitrary code as the operating… No fix yet Fix from $4,9002026-08-13 HIGH 8.8 CVE-2026-14677 Integer wraparound in PostgreSQL 32-bit builds of pltcl and plperl allows an object creator to cause the server to undersize an allocation and write … PostgreSQL No fix yet Fix from $4,9002026-08-13 HIGH 8.8 CVE-2026-14662 Integer wraparound in PostgreSQL tsvector and tsquery data type functions allows an unprivileged database user to cause the server to undersize an al… No fix yet Fix from $4,9002026-08-13 CRITICAL 9.8 CVE-2026-19001 The MongoDB BI Connector ODBC Driver may write outside the bounds of a fixed-size buffer when an application supplies an unusually long catalog, sche… No fix yet Fix from $5,7502026-08-12 HIGH 7.8 CVE-2026-47940 Lightroom Classic is affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the … Lightroom 15.5+ Fix from $4,9002026-08-11 HIGH 7.4 CVE-2026-73086 nanoid is a secure, URL-friendly, unique string ID generator for JavaScript. Prior to versions 3.3.12 and 5.1.11, the nanoid(size) function in index.… No fix yet Fix from $4,9002026-08-11 HIGH 8.1 CVE-2026-71331 Integer overflow or wraparound in Microsoft Azure Attestation service and Device Health Attestation Service allows an unauthorized attacker to execut… Windows 10 1809 No fix yet Fix from $4,9002026-08-11 HIGH 8.8 CVE-2026-70329 Integer overflow or wraparound in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network. 365 Apps No fix yet Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-65799 Integer overflow or wraparound in Windows DNS allows an authorized attacker to elevate privileges locally. Windows 10 1607 No fix yet Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-65814 Heap-based buffer overflow in Windows Storage Port Driver allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9418 / 10.0.17763.9115+ Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-64911 Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to execute code locally. 365 Apps No fix yet Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-64903 Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to execute code locally. 365 Apps No fix yet Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-63532 Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to execute code locally. 365 Apps No fix yet Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-64898 Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. 365 Apps No fix yet Fix from $4,9002026-08-11 HIGH 7.0 CVE-2026-62897 Integer overflow or wraparound in .NET Framework allows an unauthorized attacker to execute code locally. .net Framework 8.0.30 / 9.0.19+ Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-62886 Integer overflow or wraparound in .NET allows an unauthorized attacker to elevate privileges locally. Visual Studio 2022 8.0.30 / 9.0.19+ Fix from $4,9002026-08-11