Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Linux Kernel HIGH 7.1
CVE-2026-53203

In the Linux kernel, the following vulnerability has been resolved: accel/ivpu: Add buffer overflow check in MS get_info_ioctl Add validation that …

Fix: 6.12.94 / 6.18.36+
Fix from $1,950 2026-06-25
Linux Kernel HIGH 7.1
CVE-2026-53187

In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Validate cpu_id against nr_cpu_ids in DMAH alloc The cpu_id attribut…

Fix: 6.18.36 / 7.0.13+
Fix from $1,950 2026-06-25
Linux Kernel HIGH 7.8
CVE-2026-53194

In the Linux kernel, the following vulnerability has been resolved: USB: serial: kl5kusb105: fix bulk-out buffer overflow klsi_105_prepare_write_bu…

Fix: 5.10.259 / 5.15.210+
Fix from $1,950 2026-06-25
Linux Kernel HIGH 7.8
CVE-2026-53195

In the Linux kernel, the following vulnerability has been resolved: USB: serial: io_ti: fix heap overflow in build_i2c_fw_hdr() build_i2c_fw_hdr() …

Fix: 5.10.259 / 5.15.210+
Fix from $1,950 2026-06-25
Linux Kernel HIGH 7.8
CVE-2026-53173

In the Linux kernel, the following vulnerability has been resolved: accel/ethosu: fix OOB write in ethosu_gem_cmdstream_copy_and_validate() The com…

Fix: 7.0.13+
Fix from $1,950 2026-06-25
Linux Kernel HIGH 7.8
CVE-2026-53148

In the Linux kernel, the following vulnerability has been resolved: thunderbolt: Clamp XDomain response data copy to allocation size tb_xdp_propert…

Fix: 5.10.259 / 5.15.210+
Fix from $1,950 2026-06-25
Linux Kernel HIGH 7.8
CVE-2026-53137

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Clamp HDMI HDCP2 rx_id_list read to buffer size [Why & How] Du…

Fix: 5.10.259 / 5.15.210+
Fix from $1,950 2026-06-25
Linux Kernel HIGH 7.8
CVE-2026-53143

In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Fix buffer overflow in SDMA queue checkpoint/restore on GFX11 The v…

Fix: 6.6.143 / 6.12.94+
Fix from $1,950 2026-06-25
Linux Kernel HIGH 7.8
CVE-2026-53136

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Clamp VBIOS HDMI retimer register count to array size [Why & H…

Fix: 5.15.210 / 6.1.176+
Fix from $1,950 2026-06-25
Chrome HIGH 8.8
CVE-2026-13033

Out of bounds read and write in Blink>InterestGroups in Google Chrome prior to 149.0.7827.197 allowed a remote attacker to execute arbitrary code via…

Fix: 149.0.7827.197+
Fix from $1,950 2026-06-24
Linux Kernel HIGH 7.8
CVE-2026-53059

In the Linux kernel, the following vulnerability has been resolved: dm log: fix out-of-bounds write due to region_count overflow The local variable…

Fix: 5.10.258 / 5.15.209+
Fix from $1,950 2026-06-24
Linux Kernel CRITICAL 9.1
CVE-2026-53043

In the Linux kernel, the following vulnerability has been resolved: ocfs2/dlm: validate qr_numregions in dlm_match_regions() Patch series "ocfs2/dl…

Fix: 5.10.258 / 5.15.209+
Fix from $2,300 2026-06-24
Linux Kernel HIGH 7.1
CVE-2026-53041

In the Linux kernel, the following vulnerability has been resolved: ocfs2: fix listxattr handling when the buffer is full [BUG] If an OCFS2 inode h…

Fix: 5.10.258 / 5.15.209+
Fix from $1,950 2026-06-24
Linux Kernel HIGH 7.8
CVE-2026-53016

In the Linux kernel, the following vulnerability has been resolved: crypto: ccp - copy IV using skcipher ivsize AF_ALG rfc3686-ctr-aes-ccp requests…

Fix: 5.10.258 / 5.15.209+
Fix from $1,950 2026-06-24
Linux Kernel CRITICAL 9.8
CVE-2026-53002

In the Linux kernel, the following vulnerability has been resolved: netfilter: conntrack: remove sprintf usage Replace it with scnprintf, the buffe…

Fix: 5.10.258 / 5.15.209+
Fix from $2,300 2026-06-24
Linux Kernel HIGH 7.8
CVE-2026-53004

In the Linux kernel, the following vulnerability has been resolved: sctp: fix OOB write to userspace in sctp_getsockopt_peer_auth_chunks sctp_getso…

Fix: 5.10.258 / 5.15.209+
Fix from $1,950 2026-06-24
Linux Kernel HIGH 7.8
CVE-2026-52992

In the Linux kernel, the following vulnerability has been resolved: fs/adfs: validate nzones in adfs_validate_bblk() Reject ADFS disc records with …

Fix: 5.10.258 / 5.15.209+
Fix from $1,950 2026-06-24
Linux Kernel HIGH 7.8
CVE-2026-52962

In the Linux kernel, the following vulnerability has been resolved: ceph: fix a buffer leak in __ceph_setxattr() The old_blob in __ceph_setxattr() …

Fix: 4.5 / 4.10+
Fix from $1,950 2026-06-24
Linux Kernel HIGH 7.8
CVE-2026-52935

In the Linux kernel, the following vulnerability has been resolved: xfrm: espintcp: do not reuse an in-progress partial send espintcp keeps a singl…

Fix: 5.10.259 / 5.15.210+
Fix from $1,950 2026-06-24
Linux Kernel CRITICAL 9.8
CVE-2026-52914

In the Linux kernel, the following vulnerability has been resolved: batman-adv: fix fragment reassembly length accounting batman-adv keeps a runnin…

Fix: 5.10.258 / 5.15.209+
Fix from $2,300 2026-06-24
Acrobat Dc HIGH 7.8
CVE-2020-9695

Acrobat Reader versions 2020.009.20074, 2020.001.30002, 2017.011.30171, 2015.006.30523 and earlier are affected by an out-of-bounds write vulnerabili…

Fix: after 20.009.20074
Fix from $1,950 2026-06-23
Dhcpcd MEDIUM 6.5
CVE-2026-56114

dhcpcd through 10.3.2, fixed in commit 2f00c7b, contains a one-byte stack out-of-bounds write vulnerability in dhcp6_makemessage() in src/dhcp6.c tha…

Fix: after 10.3.2
Fix from $1,600 2026-06-23
Zephyr HIGH 7.1
CVE-2026-10658

bt_iso_recv() in subsys/bluetooth/host/iso.c pulled the ISO SDU header (4 bytes) or, when the timestamp flag is set, the timestamped SDU header (8 by…

Fix: after 4.4.1
Fix from $1,950 2026-06-23
Vllm HIGH 7.5
CVE-2026-56340

vLLM versions >= 0.10.2 and < 0.13.0 are missing sparse tensor validation in multimodal embeddings processing. Because PyTorch disables sparse tensor…

Fix: 0.13.0+
Fix from $1,950 2026-06-20
Libde265 HIGH 7.1
CVE-2026-49295

libde265 is an open source implementation of the h.265 video codec. Prior to version 1.0.20, a crafted H.265 bitstream can cause an out-of-bounds arr…

Fix: 1.0.20+
Fix from $1,950 2026-06-19
Proxysql CRITICAL 9.8
CVE-2026-48773

ProxySQL is a proxy for MySQL and its forks, as well as PostgreSQL. Versions 2.0.18 through 3.0.8 have a pre-authentication heap memory corruption vu…

Fix: 3.0.9+
Fix from $2,300 2026-06-19
Unclassified HIGH 7.1
CVE-2026-56209

An arbitrary address write vulnerability was found in libaom, the reference AV1 codec implementation. A missing bounds check in the SVC (Scalable Vid…

Mitigation only
Fix from $1,950 2026-06-19
Unclassified HIGH 7.1
CVE-2026-56211

A remote code execution vulnerability was found in libaom, the reference AV1 codec implementation. Insufficient bounds validation in the AV1 encoder'…

Mitigation only
Fix from $1,950 2026-06-19
Openexr HIGH 7.1
CVE-2026-44663

OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture industry. In versions 3.4.0 thr…

Fix: 3.4.12+
Fix from $1,950 2026-06-18
Unclassified HIGH 8.8
CVE-2026-8461

An out-of-bounds write vulnerability in FFmpeg's libavcodec library, specifically in the MagicYUV decoder, allows denial-of-service and, in some case…

Mitigation only
Fix from $1,950 2026-06-18