Vulnerability index

Browse CVEs

3,242 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
MEDIUM 5.5 CVE-2026-14758 A vulnerability was identified in radareorg radare2 up to 6.1.6. This vulnerability affects the function cmd_anal_opcode of the file libr/core/cmd_an… Radare2 6.1.8+ Fix from $1,6002026-07-05 HIGH 8.8 CVE-2026-57974 Integer overflow or wraparound in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Edge Chromium 150.0.4078.48+ Fix from $1,9502026-07-03 MEDIUM 6.5 CVE-2026-46463 Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 throug… Data Domain Operating System after 8.7.0.0 Fix from $1,6002026-07-03 CRITICAL 9.8 CVE-2026-14544 A flaw was found in HPLIP (HP Linux Imaging and Printing Software). This vulnerability, an incomplete fix for CVE-2026-8631, may allow a remote attac… Mitigation only Fix from $2,3002026-07-03 HIGH 8.8 CVE-2026-14430 Integer overflow in V8 in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTM… Chrome 150.0.7871.46+ Fix from $1,9502026-07-01 MEDIUM 5.3 CVE-2026-14391 Integer overflow in ANGLE in Google Chrome on Windows prior to 150.0.7871.46 allowed a remote attacker who had compromised the renderer process to ob… Chrome 150.0.7871.46+ Fix from $1,6002026-07-01 MEDIUM 6.5 CVE-2026-53466 ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-51 and 7.1.2-26, an integer o… Imagemagick 6.9.13-51 / 7.1.2-26+ Fix from $1,6002026-07-01 HIGH 7.6 CVE-2026-6682 In FatFS R0.16 and earlier contains a FAT32 integer overflow bug in mount_volume() where fasize *= fs->n_fats can wrap, leading to attacker-controlle… Fatfs No fix yet Fix from $1,9502026-07-01 HIGH 8.8 CVE-2026-7838 UltraVNC viewer through 1.8.2.2 contains an integer overflow leading to a heap buffer overflow in the RFB protocol failure-response parsing path. In … Ultravnc after 1.8.2.2 Fix from $1,9502026-07-01 MEDIUM 5.3 CVE-2026-7828 UltraVNC repeater through 1.8.2.2 contains an integer overflow in the HTTP request logging path. In repeater/webgui/settings.c:336, the win_log() fun… Ultravnc after 1.8.2.2 Fix from $1,6002026-07-01 MEDIUM 6.3 CVE-2026-54900 Oj (Optimized JSON) is a JSON parser and Object marshaller packaged as a Ruby gem. In versions prior to 3.17.2, when in usual mode with create_id ena… Mitigation only Fix from $1,6002026-07-01 MEDIUM 6.3 CVE-2026-54903 Oj (Optimized JSON) is a JSON parser and Object marshaller packaged as a Ruby gem. In versions prior to 3.17.2, Oj.load is vulnerable to heap corrupt… Mitigation only Fix from $1,6002026-07-01 HIGH 7.5 CVE-2026-53432 fzf is vulnerable to Integer Overflow leading to crash in FuzzyMatchV2 function. When input line length is approximately 2,200,000 bytes and pattern … Fzf 0.73.1+ Fix from $1,9502026-06-30 MEDIUM 5.1 CVE-2026-57965 A flaw was found in spice-vdagent. A malicious or compromised SPICE host can trigger an integer overflow by sending a specially crafted message. This… Enterprise Linux Mitigation only Fix from $1,6002026-06-29 HIGH 7.5 CVE-2026-58050 libssh2 through 1.11.1 reads an attacker-controlled 32-bit attribute count from a publickey-subsystem response and uses it in the allocation num_attr… Libssh2 after 1.11.1 Fix from $1,9502026-06-28 HIGH 7.8 CVE-2026-49416 The CONS_HISTORY ioctl handler did not adequately validate the requested history size. A large value caused an integer overflow in the buffer size c… FreeBSD Mitigation only Fix from $1,9502026-06-27 HIGH 7.8 CVE-2026-45258 dsp_mmap_single() validated the requested mapping by checking the sum of the user-supplied offset and length against the buffer size. This addition … FreeBSD Mitigation only Fix from $1,9502026-06-27 HIGH 7.5 CVE-2026-48933 A flaw in Node.js WebCrypto implementation can crash the process if the input of `subtle.encrypt()` is a multiple of 2GiB. This vulnerability affe… Node.js Patch available Fix from $1,9502026-06-26 HIGH 7.5 CVE-2026-6679 A heap buffer overflow could occur in the DTLS 1.3 ACK serialization path before the connecting peer is authenticated. The buffer overflow was due to… Wolfssl 5.9.1+ Fix from $1,9502026-06-25 MEDIUM 5.5 CVE-2026-54679 jq is a command-line JSON processor. Prior to 1.8.2, on 32bit system, jvp_string_append has a chance of integer/multiple overflowing and then causing… Jq 1.8.2+ Fix from $1,6002026-06-25 HIGH 8.2 CVE-2026-57235 Nokogiri is an open source XML and HTML library for the Ruby programming language. Prior to 1.19.4, Nokogiri::XML::NodeSet#[] (and its alias #slice) … Nokogiri 1.19.4+ Fix from $1,9502026-06-25 MEDIUM 6.4 CVE-2026-54226 A vulnerability in Apache Kvrocks. This issue affects Apache Kvrocks: from 2.6.0 through 2.15.0. Users are recommended to upgrade to version 2.16.0… No fix yet Fix from $1,6002026-06-25 HIGH 8.8 CVE-2026-12244 If NSD is configured as secondary for a zone, the primary of that zone can crash NSD with an AXFR containing a DNS message with a special crafted SVC… Nsd 4.14.3+ Fix from $1,9502026-06-25 HIGH 7.1 CVE-2026-53068 In the Linux kernel, the following vulnerability has been resolved: drm/komeda: fix integer overflow in AFBC framebuffer size check The AFBC frameb… Linux Kernel 5.10.258 / 5.15.209+ Fix from $1,9502026-06-24 HIGH 7.8 CVE-2026-53059 In the Linux kernel, the following vulnerability has been resolved: dm log: fix out-of-bounds write due to region_count overflow The local variable… Linux Kernel 5.10.258 / 5.15.209+ Fix from $1,9502026-06-24 MEDIUM 5.5 CVE-2026-53021 In the Linux kernel, the following vulnerability has been resolved: scsi: target: core: Fix integer overflow in UNMAP bounds check sbc_execute_unma… Linux Kernel 5.10.258 / 5.15.209+ Fix from $1,6002026-06-24 HIGH 7.8 CVE-2026-52969 In the Linux kernel, the following vulnerability has been resolved: KVM: Reject wrapped offset in kvm_reset_dirty_gfn() kvm_reset_dirty_gfn() guard… Linux Kernel 5.15.209 / 6.1.175+ Fix from $1,9502026-06-24 MEDIUM 5.5 CVE-2026-52972 In the Linux kernel, the following vulnerability has been resolved: crypto: af_alg - Cap AEAD AD length to 0x80000000 In order to prevent arithmeti… Linux Kernel 5.10.258 / 5.15.209+ Fix from $1,6002026-06-24 MEDIUM 5.5 CVE-2026-52948 In the Linux kernel, the following vulnerability has been resolved: i2c: dev: prevent integer overflow in I2C_TIMEOUT ioctl While fuzzing with Syzk… Linux Kernel 5.10.259 / 5.15.210+ Fix from $1,6002026-06-24 HIGH 7.5 CVE-2026-48502 MessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, MessagePackReader.ReadDateTime() can allocate stack memory based o… Messagepack 2.5.301 / 3.1.7+ Fix from $1,9502026-06-22