Vulnerability index

Browse CVEs

3,255 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
HIGH 8.8 CVE-2026-24403 iccDEV provides libraries and tools for interacting with, manipulating, and applying ICC color management profiles. In versions 2.3.1.1 and below, an… Iccdev 2.3.1.2+ Fix from $1,9502026-01-24 CRITICAL 9.8 CVE-2026-23876 ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-13 and 6.9.13-38, a heap buffe… Imagemagick 6.9.13-38 / 7.1.2-13+ Fix from $2,3002026-01-20 HIGH 7.5 CVE-2026-23833 ESPHome is a system to control microcontrollers remotely through Home Automation systems. In versions 2025.9.0 through 2025.12.6, an integer overflow… Esphome 2025.12.7+ Fix from $1,9502026-01-19 HIGH 7.8 CVE-2025-15534 A vulnerability was identified in raysan5 raylib up to 909f040. Affected by this issue is the function LoadFontData of the file src/rtext.c. The mani… Raylib 2026-01-01+ Fix from $1,9502026-01-18 HIGH 7.1 CVE-2025-24528 In MIT Kerberos 5 (aka krb5) before 1.22 (with incremental propagation), there is an integer overflow for a large update size to resize() in kdb_log.… Patch available Fix from $1,9502026-01-16 HIGH 8.4 CVE-2026-0861 Passing too large an alignment to the memalign suite of functions (memalign, posix_memalign, aligned_alloc) in the GNU C Library version 2.30 to 2.42… Glibc after 2.42 Fix from $1,9502026-01-14 MEDIUM 6.5 CVE-2025-14242 A flaw was found in vsftpd. This vulnerability allows a denial of service (DoS) via an integer overflow in the ls command parameter parsing, triggere… Mitigation only Fix from $1,6002026-01-14 HIGH 8.8 CVE-2026-0880 Sandbox escape due to integer overflow in the Graphics component. This vulnerability was fixed in Firefox 147, Firefox ESR 115.32, Firefox ESR 140.7,… Firefox 115.32.0 / 140.7.0+ Fix from $1,9502026-01-13 HIGH 7.8 CVE-2026-22801 LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.6.… Libpng 1.6.54+ Fix from $1,9502026-01-12 HIGH 8.8 CVE-2026-21688 iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co… Iccdev 2.3.1.2+ Fix from $1,9502026-01-07 MEDIUM 6.5 CVE-2026-21689 iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co… Iccdev 2.3.1.2+ Fix from $1,6002026-01-07 HIGH 8.8 CVE-2026-21485 iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1.1 and below are prone to have Undefined B… Iccdev 2.3.1.2+ Fix from $1,9502026-01-06 HIGH 7.8 CVE-2026-21486 iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1.1 and below contain Use After Free, Heap-… Iccdev 2.3.1.2+ Fix from $1,9502026-01-06 HIGH 7.8 CVE-2026-21673 iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1 and below have overflows and underflows i… Iccdev 2.3.1.1+ Fix from $1,9502026-01-06 MEDIUM 6.7 CVE-2025-20803 In dpe, there is a possible memory corruption due to an integer overflow. This could lead to local escalation of privilege if a malicious actor has a… Android Mitigation only Fix from $1,6002026-01-06 MEDIUM 6.7 CVE-2025-20807 In dpe, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege if a malicious actor has… Android Mitigation only Fix from $1,6002026-01-06 HIGH 7.8 CVE-2025-15278 FontForge GUtils XBM File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitra… Fontforge Mitigation only Fix from $1,9502025-12-31 HIGH 7.5 CVE-2025-69261 WasmEdge is a WebAssembly runtime. Prior to version 0.16.0-alpha.3, a multiplication in `WasmEdge/include/runtime/instance/memory.h` can wrap, causin… Wasmedge 0.16.0+ Fix from $1,9502025-12-30 HIGH 7.5 CVE-2025-69204 ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-12, in the WriteSVGImage functi… Imagemagick 7.1.2-12+ Fix from $1,9502025-12-30 HIGH 7.1 CVE-2025-68431 libheif is an HEIF and AVIF file format decoder and encoder. Prior to version 1.21.0, a crafted HEIF that exercises the overlay image item path trigg… Libheif 1.21.0+ Fix from $1,9502025-12-29 HIGH 8.2 CVE-2025-14178 In PHP versions:8.1.* before 8.1.34, 8.2.* before 8.2.30, 8.3.* before 8.3.29, 8.4.* before 8.4.16, 8.5.* before 8.5.1, a heap buffer overflow occurs… PHP 8.1.34 / 8.2.30+ Fix from $1,9502025-12-27 HIGH 7.8 CVE-2025-14422 GIMP PNM File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on a… Gimp Patch available Fix from $1,9502025-12-23 HIGH 7.8 CVE-2025-14933 NSF Unidata NetCDF-C NC Variable Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrar… Netcdf Mitigation only Fix from $1,9502025-12-23 HIGH 7.5 CVE-2025-67111 An integer overflow in the RTPS protocol implementation of OpenDDS DDS before v3.33.0 allows attackers to cause a Denial of Service (DoS) via a craft… Opendds 3.33.0+ Fix from $1,9502025-12-23 HIGH 7.5 CVE-2025-65865 An integer overflow in eProsima Fast-DDS v3.3 allows attackers to cause a Denial of Service (DoS) via a crafted input. Fast Dds No fix yet Fix from $1,9502025-12-23 MEDIUM 6.5 CVE-2025-14299 The HTTPS server on Tapo C200 V3 does not properly validate the Content-Length header, which can lead to an integer overflow. An unauthenticated atta… Tapo C200 Firmware Mitigation only Fix from $1,6002025-12-20 HIGH 7.8 CVE-2025-66499 A heap-based buffer overflow vulnerability exists in the PDF parsing of Foxit PDF Reader when processing specially crafted JBIG2 data. An integer ove… Pdf Editor after 2025.2.1.69005 Fix from $1,9502025-12-19 HIGH 7.5 CVE-2025-63757 Integer overflow vulnerability in the yuv2ya16_X_c_template function in libswscale/output.c in FFmpeg 8.0. Ffmpeg Patch available Fix from $1,9502025-12-18 HIGH 7.8 CVE-2025-47323 Memory corruption while routing GPR packets between user and root when handling large data packet. Fastconnect 6900 Firmware No fix yet Fix from $1,9502025-12-18 MEDIUM 6.5 CVE-2025-12035 An integer overflow condition exists in Bluetooth Host stack, within the bt_br_acl_recv routine a critical path for processing inbound BR/EDR L2CAP t… Mitigation only Fix from $1,6002025-12-15