Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Json.h HIGH 7.8
CVE-2022-45491

Buffer overflow vulnerability in function json_parse_value in sheredom json.h before commit 0825301a07cbf51653882bf2b153cc81fdadf41 (November 14, 202…

Fix: 2022-11-14+
Fix from $1,950 2023-02-03
Json Parser CRITICAL 9.8
CVE-2023-23088

Buffer OverFlow Vulnerability in Barenboim json-parser master and v1.1.0 fixed in v1.1.1 allows an attacker to execute arbitrary code via the json_va…

Patch available
Fix from $2,300 2023-02-03
Mojojson CRITICAL 9.8
CVE-2023-23086

Buffer OverFlow Vulnerability in MojoJson v1.2.3 allows an attacker to execute arbitrary code via the SkipString function.

No fix yet
Fix from $2,300 2023-02-03
Memcached MEDIUM 5.5
CVE-2021-37519

Buffer Overflow vulnerability in authfile.c memcached 1.6.9 allows attackers to cause a denial of service via crafted authenticattion file.

Patch available
Fix from $1,600 2023-02-03
Hdf5 HIGH 7.5
CVE-2021-37501

Buffer Overflow vulnerability in HDFGroup hdf5-h5dump 1.12.0 through 1.13.0 allows attackers to cause a denial of service via h5tools_str_sprint in /…

Fix: after 1.13.0
Fix from $1,950 2023-02-03
Allegro MEDIUM 6.5
CVE-2021-36489

Buffer Overflow vulnerability in Allegro through 5.2.6 allows attackers to cause a denial of service via crafted PCX/TGA/BMP files to allegro_image a…

Fix: after 5.2.6
Fix from $1,600 2023-02-03
Xpdf HIGH 7.5
CVE-2021-36493

Buffer Overflow vulnerability in pdfimages in xpdf 4.03 allows attackers to crash the application via crafted command.

No fix yet
Fix from $1,950 2023-02-03
Mjs MEDIUM 5.5
CVE-2021-36535

Buffer Overflow vulnerability in Cesanta mJS 1.26 allows remote attackers to cause a denial of service via crafted .js file to mjs_set_errorf.

No fix yet
Fix from $1,600 2023-02-03
Glibc CRITICAL 9.8
CVE-2023-25139

sprintf in the GNU C Library (glibc) 2.37 has a buffer overflow (out-of-bounds write) in some situations with a correct buffer size. This is unrelate…

No fix yet
Fix from $2,300 2023-02-03
Cncsoft HIGH 7.8
CVE-2022-4634EPSS 5%

All versions prior to Delta Electronic’s CNCSoft version 1.01.34 (running ScreenEditor versions 1.01.5 and prior) are vulnerable to a stack-based buf…

Fix: 1.01.5 / 1.01.34+
Fix from $1,950 2023-02-03
Dopsoft HIGH 7.8
CVE-2023-0123

Delta Electronics DOPSoft versions 4.00.16.22 and prior are vulnerable to a stack-based buffer overflow, which could allow an attacker to remotely ex…

Fix: 4.00.16.22+
Fix from $1,950 2023-02-03
Dopsoft HIGH 7.8
CVE-2023-0124

Delta Electronics DOPSoft versions 4.00.16.22 and prior are vulnerable to an out-of-bounds write, which could allow an attacker to remotely execute a…

Fix: 4.00.16.22+
Fix from $1,950 2023-02-03
W20e Firmware CRITICAL 9.8
CVE-2022-48130

Tenda W20E v15.11.0.6 was discovered to contain multiple stack overflows in the function formSetStaticRoute via the parameters staticRouteNet, static…

No fix yet
Fix from $2,300 2023-02-02
Tew 811dru Firmware MEDIUM 6.5
CVE-2023-0637

A vulnerability, which was classified as critical, was found in TRENDnet TEW-811DRU 1.0.10.0. This affects an unknown part of the file wan.asp of the…

No fix yet
Fix from $1,600 2023-02-02
Bluetooth Mesh Software Development Kit HIGH 8.8
CVE-2022-30904

In Bestechnic Bluetooth Mesh SDK (BES2300) V1.0, a buffer overflow vulnerability can be triggered during provisioning, because there is no check for …

No fix yet
Fix from $1,950 2023-02-01
Cypress Bluetooth Mesh Software Development Kit HIGH 8.8
CVE-2022-31363

Cypress : https://www.infineon.com/ Cypress Bluetooth Mesh SDK BSA0107_05.01.00-BX8-AMESH-08 is affected by: Buffer Overflow. The impact is: execute …

No fix yet
Fix from $1,950 2023-02-01
Cypress Bluetooth Mesh Software Development Kit HIGH 8.8
CVE-2022-31364

Cypress : https://www.infineon.com/ Cypress Bluetooth Mesh SDK BSA0107_05.01.00-BX8-AMESH-08 is affected by: Buffer Overflow. The impact is: execute …

No fix yet
Fix from $1,950 2023-02-01
Big Ip Access Policy Manager HIGH 7.5
CVE-2023-22842

On BIG-IP versions 16.1.x before 16.1.3.3, 15.1.x before 15.1.8.1, 14.1.x before 14.1.5.3, and all versions of 13.1.x, when a SIP profile is configur…

Fix: 14.1.5.3 / 15.1.8.1+
Fix from $1,950 2023-02-01
Tew 652brp Firmware HIGH 7.5
CVE-2023-0618

A vulnerability was found in TRENDnet TEW-652BRP 3.04B01. It has been declared as critical. This vulnerability affects unknown code of the file cfg_o…

No fix yet
Fix from $1,950 2023-02-01
Alienware M15 R6 Firmware HIGH 8.8
CVE-2022-34403

Dell BIOS contains a Stack based buffer overflow vulnerability. A local authenticated attacker could potentially exploit this vulnerability by using …

Fix: 1.4.3 / 1.8.0+
Fix from $1,950 2023-02-01
Alienware M15 R6 Firmware HIGH 7.1
CVE-2022-34400

Dell BIOS contains a heap buffer overflow vulnerability. A local attacker with admin privileges could potentially exploit this vulnerability to perfo…

Fix: 1.4.3 / 1.8.0+
Fix from $1,950 2023-02-01
Notepad\+\+ MEDIUM 5.5
CVE-2022-31902

Notepad++ v8.4.1 was discovered to contain a stack overflow via the component Finder::add().

Fix: after 8.4.3
Fix from $1,600 2023-02-01
Editorconfig HIGH 7.8
CVE-2023-0341

A stack buffer overflow exists in the ec_glob function of editorconfig-core-c before v0.12.6 which allowed an attacker to arbitrarily write to the st…

Fix: 0.12.6+
Fix from $1,950 2023-02-01
Json.h HIGH 7.8
CVE-2022-45494

Buffer overflow vulnerability in function json_parse_object in sheredom json.h before commit 0825301a07cbf51653882bf2b153cc81fdadf41 (November 14, 20…

Fix: 2022-11-14+
Fix from $1,950 2023-01-31
R7000p Firmware HIGH 7.8
CVE-2022-48176

Netgear routers R7000P before v1.3.3.154, R6900P before v1.3.3.154, R7960P before v1.4.4.94, and R8000P before v1.4.4.94 were discovered to contain a…

Fix: 1.1.7.132 / 1.3.3.154+
Fix from $1,950 2023-01-31
Wattbox Wb 300 Ip 3 Firmware CRITICAL 9.8
CVE-2023-23582

Snap One Wattbox WB-300-IP-3 versions WB10.9a17 and prior are vulnerable to a heap-based buffer overflow, which could allow an attacker to execute ar…

Mitigation only
Fix from $2,300 2023-01-30
Thinkagile Vx3331 Firmware MEDIUM 6.5
CVE-2022-34884

A buffer overflow exists in the Remote Presence subsystem which can potentially allow valid, authenticated users to cause a recoverable subsystem den…

Fix: 1.80_afbt20n / 3.60_tei386m+
Fix from $1,600 2023-01-30
Ecostruxure Machine Expert Hvac HIGH 7.5
CVE-2022-2988

A CWE-787: Out-of-bounds Write vulnerability exists that could cause sensitive information leakage when accessing a malicious web page from the commi…

Fix: 1.4.0 / 2.1.0+
Fix from $1,950 2023-01-30
Acrobat HIGH 7.8
CVE-2023-22242

Adobe Acrobat Reader versions 22.003.20282 (and earlier), 22.003.20281 (and earlier) and 20.005.30418 (and earlier) are affected by an out-of-bounds …

Fix: 20.005.30436 / 22.003.20310+
Fix from $1,950 2023-01-27
Acrobat HIGH 7.8
CVE-2023-22240

Adobe Acrobat Reader versions 22.003.20282 (and earlier), 22.003.20281 (and earlier) and 20.005.30418 (and earlier) are affected by an out-of-bounds …

Fix: 20.005.30436 / 22.003.20310+
Fix from $1,950 2023-01-27