Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
MEDIUM 6.9
CVE-2026-56411
xmlwf in libexpat before 2.8.2 has an integer overflow in endDoctypeDecl via NOTATION declarations.
Libexpat
2.8.2+
MEDIUM 6.9
CVE-2026-56408
libexpat before 2.8.2 has an integer overflow in copyString.
Libexpat
2.8.2+
MEDIUM 6.5
CVE-2026-56409
xmlwf in libexpat before 2.8.2 has an integer overflow for the output filename when -d outputDir is used.
Libexpat
2.8.2+
MEDIUM 6.9
CVE-2026-56410
xmlwf in libexpat before 2.8.2 has an integer overflow in resolveSystemId.
Libexpat
2.8.2+
MEDIUM 6.9
CVE-2026-56404
libexpat before 2.8.2 has an integer overflow in addBinding.
Libexpat
2.8.2+
MEDIUM 6.9
CVE-2026-56405
libexpat before 2.8.2 has an integer overflow in getAttributeId.
Libexpat
2.8.2+
MEDIUM 6.9
CVE-2026-56406
libexpat before 2.8.2 has an integer overflow in XML_ParseBuffer because it lacked a check that was present in XML_Parse.
Libexpat
2.8.2+
MEDIUM 6.9
CVE-2026-56407
libexpat before 2.8.2 has an integer overflow in doProlog that is related to storeEntityValue and entity textLen.
Libexpat
2.8.2+
MEDIUM 6.9
CVE-2026-56403
libexpat before 2.8.2 has an integer overflow in storeAtts.
Libexpat
2.8.2+
HIGH 7.1
CVE-2026-49346
libde265 is an open source implementation of the h.265 video codec. Prior to version 1.1.0, a crafted H.265 bitstream with large SPS dimensions and 1…
Libde265
1.1.0+
MEDIUM 5.5
CVE-2026-3196
An integer overflow vulnerability was found in the virtio-snd device via PCM_INFO requests from the guest. A malicious guest can provide out-of-bound…
Mitigation only
HIGH 8.7
CVE-2026-8805
Integer Overflow or Wraparound vulnerability in the EtherNet/IP function of Mitsubishi Electric MELSEC iQ-F Series FX5-EIP EtherNet/IP module FX5-EIP…
Mitigation only
HIGH 7.1
CVE-2026-44663
OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture industry. In versions 3.4.0 thr…
Openexr
3.4.12+
CRITICAL 9.1
CVE-2026-55203
HAProxy through 3.4.0, fixed in commit 5985276, contains an integer overflow vulnerability in the fcgi_conn structure's drl field that allows buffer …
Haproxy
after 3.4.0
HIGH 7.5
CVE-2026-54417
An integer overflow in the mtar_next function in src/microtar.c in rxi microtar 0.1.0 allows a remote attacker to cause a denial of service (uncontro…
Mitigation only
HIGH 8.8
CVE-2026-0161
In numberOfReportBlocks of RtpSession.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to remote escalation o…
Android
Mitigation only
HIGH 8.8
CVE-2026-0148
In multiple functions of VideoRtpPayloadDecoderNode.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to remot…
Android
Mitigation only
HIGH 7.8
CVE-2026-0150
In ExecuteGraph command handler of EdgeTPU firmware, there is a possible out of bounds write due to an integer overflow. This could lead to local esc…
Android
Mitigation only
HIGH 8.8
CVE-2026-0151
In IntfGraphCreate of intfgraph.c, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution with …
Android
Mitigation only
MEDIUM 6.5
CVE-2026-0128
In RtcpFbPacket::decodeRtcpFbPacket, there is a possible out of bounds read due to an integer overflow. This could lead to remote information disclos…
Android
Mitigation only
HIGH 7.3
CVE-2026-0131
In RtpPacket::decodePacket, there is a possible out of bounds access due to an integer overflow. This could lead to local escalation of privilege wit…
Android
Mitigation only
HIGH 8.6
CVE-2026-10649
A flaw was found in Pacemaker. An unauthenticated remote attacker can exploit an integer overflow vulnerability in the remote message decompression p…
Patch available
HIGH 7.8
CVE-2026-46331
In the Linux kernel, the following vulnerability has been resolved:
net/sched: fix pedit partial COW leading to page cache corruption
tcf_pedit_act…
Linux Kernel
4.20 / 5.5+
HIGH 7.6
CVE-2026-53705
A flaw was found in GStreamer's WavPack audio decoder in gst-plugins-good. When processing a specially crafted WavPack file, an integer overflow in t…
Mitigation only
HIGH 7.1
CVE-2026-52722
A signed integer overflow vulnerability was found in GStreamer's VMnc decoder. A crafted VMnc stream with large cursor dimensions can overflow signed…
Mitigation only
MEDIUM 5.5
CVE-2025-55647
An Out-of-Memory in the mp4_mux_cenc_insert_pssh function (filters/mux_isom.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial of Service (DoS…
Gpac
26.02.0+
MEDIUM 5.4
CVE-2026-6045
LibreOffice can import EMF+ graphics, which may be embedded in documents. A heap buffer overflow existed when importing an EMF+ gradient brush. The n…
Mitigation only
HIGH 7.8
CVE-2025-14098
Heap buffer out-of-bounds write vulnerability due to integer overflow in Avira Antivirus engine when scanning a malformed MS-DOS executable file may …
Mitigation only
MEDIUM 5.4
CVE-2026-47223
NanaZip is the 7-Zip derivative intended for the modern Windows experience. From version 3.0.1000.0 to before version 6.0.1698.0, a heap out-of-bound…
Mitigation only
HIGH 7.6
CVE-2026-11774
An integer overflow flaw was found in the SASL I/O layer of 389 Directory Server (389-ds-base). In sasl_io_start_packet(), adding sizeof(uint32_t) to…
Mitigation only