Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Jad Java Decompiler CRITICAL 9.8
CVE-2016-20049

JAD 1.5.8e-1kali1 and prior contains a stack-based buffer overflow vulnerability that allows attackers to execute arbitrary code by supplying oversiz…

Mitigation only
Fix from $2,300 2026-03-28
Tiemu CRITICAL 9.8
CVE-2017-20225

TiEmu 2.08 and prior contains a stack-based buffer overflow vulnerability that allows attackers to execute arbitrary code by exploiting inadequate bo…

Fix: after 2.0.8
Fix from $2,300 2026-03-28
Unclassified HIGH 8.4
CVE-2017-20226

Mapscrn 2.0.3 contains a stack-based buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying an oversized in…

No fix yet
Fix from $1,950 2026-03-28
Jad Java Decompiler CRITICAL 9.8
CVE-2017-20227

JAD Java Decompiler 1.5.8e-1kali1 and prior contains a stack-based buffer overflow vulnerability that allows attackers to execute arbitrary code by s…

Mitigation only
Fix from $2,300 2026-03-28
Unclassified HIGH 8.4
CVE-2016-20042

TRN 3.6-23 contains a stack buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying an oversized argument to…

No fix yet
Fix from $1,950 2026-03-28
Nrss HIGH 7.8
CVE-2016-20043

NRSS RSS Reader 0.3.9-1 contains a stack buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying an oversize…

Fix: after 0.3.9-1
Fix from $1,950 2026-03-28
Pinfo HIGH 7.8
CVE-2016-20044

PInfo 0.6.9-5.1 contains a local buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying an oversized argume…

Fix: after 0.6.9-5.1
Fix from $1,950 2026-03-28
Hierarchical Notebook HIGH 7.8
CVE-2016-20045

HNB Organizer 1.9.18-10 contains a local buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying an oversize…

Fix: after 1.9.18-10
Fix from $1,950 2026-03-28
Unclassified HIGH 8.4
CVE-2016-20046

zFTP Client 20061220+dfsg3-4.1 contains a buffer overflow vulnerability in the NAME parameter handling of FTP connections that allows local attackers…

No fix yet
Fix from $1,950 2026-03-28
Unclassified HIGH 8.4
CVE-2016-20038

yTree 1.94-1.1 contains a stack-based buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying an excessively…

No fix yet
Fix from $1,950 2026-03-28
Unclassified HIGH 8.4
CVE-2016-20039

Multi Emulator Super System 0.154-3.1 contains a buffer overflow vulnerability in the gamma parameter handling that allows local attackers to crash t…

No fix yet
Fix from $1,950 2026-03-28
Unclassified HIGH 8.4
CVE-2016-20037

xwpe 1.5.30a-2.1 and prior contains a stack-based buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying ov…

No fix yet
Fix from $1,950 2026-03-28
Ac7 Firmware HIGH 8.8
CVE-2026-4974

A flaw has been found in Tenda AC7 15.03.06.44. Affected by this issue is the function fromSetSysTime of the file /goform/SetSysTimeCfg of the compon…

No fix yet
Fix from $1,950 2026-03-27
Ac15 Firmware HIGH 8.8
CVE-2026-4975

A vulnerability has been found in Tenda AC15 15.03.05.19. This affects the function formSetCfm of the file /goform/setcfm of the component POST Reque…

No fix yet
Fix from $1,950 2026-03-27
Ac6 Firmware HIGH 8.8
CVE-2026-4961

A vulnerability was identified in Tenda AC6 15.03.05.16. Affected by this vulnerability is the function formQuickIndex of the file /goform/QuickIndex…

No fix yet
Fix from $1,950 2026-03-27
Ac6 Firmware HIGH 8.8
CVE-2026-4960

A vulnerability was determined in Tenda AC6 15.03.05.16. Affected is the function fromWizardHandle of the file /goform/WizardHandle of the component …

No fix yet
Fix from $1,950 2026-03-27
Grafana MEDIUM 6.5
CVE-2026-27879

A resample query can be used to trigger out-of-memory crashes in Grafana.

Fix: 8.0.0 / 12.0.0+
Fix from $1,600 2026-03-27
Grafana HIGH 7.5
CVE-2026-27880

The OpenFeature feature toggle evaluation endpoint reads unbounded values into memory, which can cause out-of-memory crashes.

Fix: 12.1.0 / 12.2.0+
Fix from $1,950 2026-03-27
Ac5 Firmware HIGH 8.8
CVE-2026-4906

A vulnerability was determined in Tenda AC5 15.03.06.47. The affected element is the function decodePwd of the file /goform/WizardHandle of the compo…

No fix yet
Fix from $1,950 2026-03-27
Mapserver HIGH 7.5
CVE-2026-33721

MapServer is a system for developing web-based GIS applications. Starting in version 4.2 and prior to version 8.6.1, a heap-buffer-overflow write in …

Fix: 8.6.1+
Fix from $1,950 2026-03-27
Ac5 Firmware HIGH 8.8
CVE-2026-4904

A vulnerability has been found in Tenda AC5 15.03.06.47. This issue affects the function formSetCfm of the file /goform/setcfm of the component POST …

No fix yet
Fix from $1,950 2026-03-27
Ac5 Firmware HIGH 8.8
CVE-2026-4905

A vulnerability was found in Tenda AC5 15.03.06.47. Impacted is the function formWifiWpsOOB of the file /goform/WifiWpsOOB of the component POST Requ…

No fix yet
Fix from $1,950 2026-03-27
Ac5 Firmware HIGH 8.8
CVE-2026-4902

A vulnerability was detected in Tenda AC5 15.03.06.47. This affects the function fromAddressNat of the file /goform/addressNat of the component POST …

No fix yet
Fix from $1,950 2026-03-26
Ac5 Firmware HIGH 8.8
CVE-2026-4903EPSS 5%

A flaw has been found in Tenda AC5 15.03.06.47. This vulnerability affects the function formQuickIndex of the file /goform/QuickIndex of the componen…

No fix yet
Fix from $1,950 2026-03-26
Imagemagick MEDIUM 5.5
CVE-2026-33535

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-18 and 6.9.13-43, an out-of-bounds writ…

Fix: 6.9.13-43 / 7.1.2-18+
Fix from $1,600 2026-03-26
Zen C HIGH 7.8
CVE-2026-33491

Zen C is a systems programming language that compiles to human-readable GNU C/C11. Prior to version 0.4.4, a stack-based buffer overflow vulnerabilit…

Fix: 0.4.4+
Fix from $1,950 2026-03-26
Libpng HIGH 7.6
CVE-2026-33636

LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. In versio…

Fix: 1.6.56+
Fix from $1,950 2026-03-26
Everest CRITICAL 9.1
CVE-2026-27815

EVerest is an EV charging software stack. Prior to versions to 2026.02.0, ISO15118_chargerImpl::handle_session_setup copies a variable-length payment…

Fix: 2026.02.0+
Fix from $2,300 2026-03-26
Everest CRITICAL 9.1
CVE-2026-27816

EVerest is an EV charging software stack. Prior to versions to 2026.02.0, ISO15118_chargerImpl::handle_update_energy_transfer_modes copies a variable…

Fix: 2026.02.0+
Fix from $2,300 2026-03-26
Everest MEDIUM 5.9
CVE-2026-26073

EVerest is an EV charging software stack. Versions prior to 2026.02.0 have a data race leading to possible `std::queue`/`std::deque` corruption. The …

Fix: 2026.02.0+
Fix from $1,600 2026-03-26