Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Vyper CRITICAL 9.8
CVE-2024-22419

Vyper is a Pythonic Smart Contract Language for the Ethereum Virtual Machine. The `concat` built-in can write over the bounds of the memory buffer th…

Fix: after 0.3.10
Fix from $2,300 2024-01-18
Fedora HIGH 7.8
CVE-2024-0409

A flaw was found in the X.Org server. The cursor code in both Xephyr and Xwayland uses the wrong type of private at creation. It uses the cursor bits…

Mitigation only
Fix from $1,950 2024-01-18
Fedora CRITICAL 9.8
CVE-2023-6816

A flaw was found in X.Org server. Both DeviceFocusEvent and the XIQueryPointer reply contain a bit for each logical button currently down. Buttons ca…

Fix: 21.1.11 / 23.2.4+
Fix from $2,300 2024-01-18
Android MEDIUM 5.5
CVE-2023-48340

In video decoder, there is a possible out of bounds write due to improper input validation. This could lead to local denial of service with no additi…

Mitigation only
Fix from $1,600 2024-01-18
Android MEDIUM 5.5
CVE-2023-48343

In video decoder, there is a possible out of bounds write due to improper input validation. This could lead to local denial of service with no additi…

Mitigation only
Fix from $1,600 2024-01-18
Android MEDIUM 5.5
CVE-2023-48348

In video decoder, there is a possible out of bounds write due to improper input validation. This could lead to local denial of service with no additi…

Mitigation only
Fix from $1,600 2024-01-18
Android MEDIUM 5.5
CVE-2023-48349

In video decoder, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no additiona…

No fix yet
Fix from $1,600 2024-01-18
Android MEDIUM 5.5
CVE-2023-48350

In video decoder, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no additiona…

No fix yet
Fix from $1,600 2024-01-18
Android MEDIUM 5.5
CVE-2023-48351

In video decoder, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no additiona…

No fix yet
Fix from $1,600 2024-01-18
Android MEDIUM 5.5
CVE-2023-48352

In phasecheckserver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no additi…

Mitigation only
Fix from $1,600 2024-01-18
Capture Client MEDIUM 5.5
CVE-2023-6340

SonicWall Capture Client version 3.7.10, NetExtender client version 10.2.337 and earlier versions are installed with sfpmonitor.sys driver. The driv…

Fix: after 10.2.337
Fix from $1,600 2024-01-18
Linux Kernel HIGH 7.8
CVE-2024-0646

An out-of-bounds memory write flaw was found in the Linux kernel’s Transport Layer Security functionality in how a user calls a function splice with …

Fix: 5.4.267 / 5.10.208+
Fix from $1,950 2024-01-17
Cm5100 Firmware HIGH 7.5
CVE-2023-51742

This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Add Downstream Fr…

Mitigation only
Fix from $1,950 2024-01-17
Cm5100 Firmware HIGH 7.5
CVE-2023-51743

This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Set Upstream Chan…

Mitigation only
Fix from $1,950 2024-01-17
Go Rt Ac750 Firmware CRITICAL 9.8
CVE-2024-22916

In D-LINK Go-RT-AC750 v101b03, the sprintf function in the sub_40E700 function within the cgibin is susceptible to stack overflow.

No fix yet
Fix from $2,300 2024-01-16
Chrome HIGH 8.8
CVE-2024-0517EPSS 22%

Out of bounds write in V8 in Google Chrome prior to 120.0.6099.224 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM…

Fix: 120.0.6099.224+
Fix from $1,950 2024-01-16
Chrome HIGH 8.8
CVE-2024-0519 KEV

Out of bounds memory access in V8 in Google Chrome prior to 120.0.6099.224 allowed a remote attacker to potentially exploit heap corruption via a cra…

Fix: 7.2.5 / 120.0.6099.224+
Fix from $1,950 2024-01-16
Br 6478ac Firmware CRITICAL 9.8
CVE-2023-49351

A stack-based buffer overflow vulnerability in /bin/webs binary in Edimax BR6478AC V2 firmware veraion v1.23 allows attackers to overwrite other valu…

Mitigation only
Fix from $2,300 2024-01-16
Harmonyos HIGH 7.5
CVE-2023-52110

The sensor module has an out-of-bounds access vulnerability.Successful exploitation of this vulnerability may affect availability.

Mitigation only
Fix from $1,950 2024-01-16
Cscape HIGH 7.8
CVE-2023-7206

In Horner Automation Cscape versions 9.90 SP10 and prior, local attackers are able to exploit this vulnerability if a user opens a malicious CSP file…

Fix: 9.90+
Fix from $1,950 2024-01-15
W9 Firmware CRITICAL 9.8
CVE-2024-0542

A vulnerability was found in Tenda W9 1.0.0.7(4456). It has been rated as critical. Affected by this issue is the function formWifiMacFilterGet of th…

Mitigation only
Fix from $2,300 2024-01-15
W9 Firmware CRITICAL 9.8
CVE-2024-0539

A vulnerability was found in Tenda W9 1.0.0.7(4456) and classified as critical. This issue affects the function formQosManage_user of the component h…

Mitigation only
Fix from $2,300 2024-01-15
W9 Firmware CRITICAL 9.8
CVE-2024-0540

A vulnerability was found in Tenda W9 1.0.0.7(4456). It has been classified as critical. Affected is the function formOfflineSet of the component htt…

Mitigation only
Fix from $2,300 2024-01-15
W9 Firmware CRITICAL 9.8
CVE-2024-0541

A vulnerability was found in Tenda W9 1.0.0.7(4456). It has been declared as critical. Affected by this vulnerability is the function formAddSysLogRu…

Mitigation only
Fix from $2,300 2024-01-15
W9 Firmware CRITICAL 9.8
CVE-2024-0538

A vulnerability has been found in Tenda W9 1.0.0.7(4456) and classified as critical. This vulnerability affects the function formQosManage_auto of th…

Mitigation only
Fix from $2,300 2024-01-15
W9 Firmware CRITICAL 9.8
CVE-2024-0536

A vulnerability, which was classified as critical, has been found in Tenda W9 1.0.0.7(4456). Affected by this issue is the function setWrlAccessList …

Mitigation only
Fix from $2,300 2024-01-15
W9 Firmware CRITICAL 9.8
CVE-2024-0537

A vulnerability, which was classified as critical, was found in Tenda W9 1.0.0.7(4456). This affects the function setWrlBasicInfo of the component ht…

Mitigation only
Fix from $2,300 2024-01-15
A15 Firmware HIGH 7.2
CVE-2024-0533

A vulnerability was found in Tenda A15 15.13.07.13. It has been rated as critical. This issue affects some unknown processing of the file /goform/Set…

No fix yet
Fix from $1,950 2024-01-15
A15 Firmware HIGH 7.2
CVE-2024-0534

A vulnerability classified as critical has been found in Tenda A15 15.13.07.13. Affected is an unknown function of the file /goform/SetOnlineDevName …

No fix yet
Fix from $1,950 2024-01-15
A15 Firmware HIGH 7.2
CVE-2024-0531

A vulnerability was found in Tenda A15 15.13.07.13. It has been classified as critical. This affects an unknown part of the file /goform/setBlackRule…

No fix yet
Fix from $1,950 2024-01-15