Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Maxicharger Ac Elite Business C50 Firmware HIGH 8.8
CVE-2024-23957

Autel MaxiCharger AC Elite Business C50 DLB_HostHeartBeat Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows …

Mitigation only
Fix from $1,950 2024-09-28
Debian Linux HIGH 7.8
CVE-2024-46853

In the Linux kernel, the following vulnerability has been resolved: spi: nxp-fspi: fix the KASAN report out-of-bounds bug Change the memcpy length …

Fix: 5.4.285 / 5.10.227+
Fix from $1,950 2024-09-27
Emui HIGH 7.5
CVE-2024-47293

Out-of-bounds write vulnerability in the HAL-WIFI module Impact: Successful exploitation of this vulnerability may affect availability.

No fix yet
Fix from $1,950 2024-09-27
Drive Client MEDIUM 6.7
CVE-2022-49039

Out-of-bounds write vulnerability in backup task management functionality in Synology Drive Client before 3.4.0-15721 allows local users with adminis…

Fix: 3.4.0-15721+
Fix from $1,600 2024-09-26
Sqlite Vec MEDIUM 5.5
CVE-2024-46488

sqlite-vec v0.1.1 was discovered to contain a heap buffer overflow via the npy_token_next function. This vulnerability allows attackers to cause a De…

No fix yet
Fix from $1,600 2024-09-25
Unclassified MEDIUM 6.1
CVE-2024-20496

A vulnerability in the UDP packet validation code of Cisco SD-WAN vEdge Software could allow an unauthenticated, adjacent attacker to cause a denial …

Mitigation only
Fix from $1,600 2024-09-25
Unified Threat Defense Snort Intrusion Prevention System Engine MEDIUM 6.5
CVE-2024-20508

A vulnerability in Cisco Unified Threat Defense (UTD) Snort Intrusion Prevention System (IPS) Engine for Cisco IOS XE Software could allow an unauthe…

Mitigation only
Fix from $1,600 2024-09-25
Mdf Library MEDIUM 6.5
CVE-2024-41445

Library MDF (mdflib) v2.1 is vulnerable to a heap-based buffer overread via a crafted mdf4 file is parsed using the ReadData function

Mitigation only
Fix from $1,600 2024-09-25
iOS HIGH 7.5
CVE-2024-20433

A vulnerability in the Resource Reservation Protocol (RSVP) feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, r…

Mitigation only
Fix from $1,950 2024-09-25
Chrome HIGH 8.8
CVE-2024-9121

Inappropriate implementation in V8 in Google Chrome prior to 129.0.6668.70 allowed a remote attacker to potentially perform out of bounds memory acce…

Fix: 129.0.6668.70+
Fix from $1,950 2024-09-25
Chrome CRITICAL 9.6
CVE-2024-7024

Inappropriate implementation in V8 in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to potentially perform a sandbox escape via a cr…

Fix: 126.0.6478.54+
Fix from $2,300 2024-09-23
Chrome HIGH 7.8
CVE-2024-7018

Heap buffer overflow in PDF in Google Chrome prior to 124.0.6367.78 allowed a remote attacker to potentially exploit heap corruption via a crafted PD…

Fix: 124.0.6367.78+
Fix from $1,950 2024-09-23
Ac8 Firmware CRITICAL 9.8
CVE-2024-46652

Tenda AC8v4 V16.03.34.06 has a stack overflow vulnerability in the fromAdvSetMacMtuWan function.

No fix yet
Fix from $2,300 2024-09-20
Secure Email Gateway CRITICAL 9.8
CVE-2024-9043

Secure Email Gateway from Cellopoint has Buffer Overflow Vulnerability in authentication process. Remote unauthenticated attackers can send crafted p…

Fix: after 4.5.0
Fix from $2,300 2024-09-20
Edge Chromium HIGH 8.8
CVE-2024-43496

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

Fix: 129.0.2792.52+
Fix from $1,950 2024-09-19
Freeimage CRITICAL 9.8
CVE-2024-31570

libfreeimage in FreeImage 3.4.0 through 3.18.0 has a stack-based buffer overflow in the PluginXPM.cpp Load function via an XPM file.

Fix: after 3.18.0
Fix from $2,300 2024-09-19
Unclassified MEDIUM 5.5
CVE-2024-45769

A vulnerability was found in Performance Co-Pilot (PCP).  This flaw allows an attacker to send specially crafted data to the system, which could caus…

No fix yet
Fix from $1,600 2024-09-19
Protobuf HIGH 7.5
CVE-2024-7254

Any project that parses untrusted Protocol Buffers data containing an arbitrary number of nested groups / series of SGROUP tags can corrupted by exce…

Fix: 3.25.5 / 4.27.5+
Fix from $1,950 2024-09-19
Openplc V3 Firmware CRITICAL 9.8
CVE-2024-34026

A stack-based buffer overflow vulnerability exists in the OpenPLC Runtime EtherNet/IP parser functionality of OpenPLC _v3 b4702061dc14d1024856f71b454…

No fix yet
Fix from $2,300 2024-09-18
Linux Kernel HIGH 7.1
CVE-2024-46774

In the Linux kernel, the following vulnerability has been resolved: powerpc/rtas: Prevent Spectre v1 gadget construction in sys_rtas() Smatch warns…

Fix: 6.10.10+
Fix from $1,950 2024-09-18
Linux Kernel HIGH 7.8
CVE-2024-46766

In the Linux kernel, the following vulnerability has been resolved: ice: move netif_queue_set_napi to rtnl-protected sections Currently, netif_queu…

Fix: 6.10.10+
Fix from $1,950 2024-09-18
Debian Linux HIGH 7.8
CVE-2024-46725

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix out-of-bounds write warning Check the ring type value to fix th…

Fix: 5.10.226 / 5.15.167+
Fix from $1,950 2024-09-18
Linux Kernel HIGH 7.8
CVE-2024-46729

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix incorrect size calculation for loop [WHY] fe_clk_en has si…

Fix: 6.10.9+
Fix from $1,950 2024-09-18
Mf296r Firmware MEDIUM 6.5
CVE-2022-39068

There is a buffer overflow vulnerability in ZTE MF296R. Due to insufficient validation of the SMS parameter length, an authenticated attacker could u…

Mitigation only
Fix from $1,600 2024-09-18
Chrome HIGH 8.8
CVE-2024-8905

Inappropriate implementation in V8 in Google Chrome prior to 129.0.6668.58 allowed a remote attacker to potentially exploit stack corruption via a cr…

Fix: 129.0.6668.58+
Fix from $1,950 2024-09-17
Micropython HIGH 7.5
CVE-2024-8946

A vulnerability was found in MicroPython 1.23.0. It has been classified as critical. Affected is the function mp_vfs_umount of the file extmod/vfs.c …

Patch available
Fix from $1,950 2024-09-17
Micropython HIGH 7.5
CVE-2024-8948

A vulnerability was found in MicroPython 1.23.0. It has been rated as critical. Affected by this issue is the function mpz_as_bytes of the file py/ob…

Patch available
Fix from $1,950 2024-09-17
Cloud Foundation CRITICAL 9.8
CVE-2024-38812 KEVEPSS 55%

The vCenter Server contains a heap-overflow vulnerability in the implementation of the DCERPC protocol. A malicious actor with network access to vCen…

Fix: 5.2+
Fix from $2,300 2024-09-17
macOS MEDIUM 5.5
CVE-2024-44178

This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7, macOS Ventura 13.7. An app…

Fix: 13.7 / 14.7+
Fix from $1,600 2024-09-17
macOS MEDIUM 5.5
CVE-2024-40841

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7. Processing a ma…

Fix: 14.7+
Fix from $1,600 2024-09-17