Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
365 Apps HIGH 7.8
CVE-2026-26108

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

Fix: 16.0.10417.20102+
Fix from $1,950 2026-03-10
Sicam Siapp Sdk HIGH 7.8
CVE-2026-25569

A vulnerability has been identified in SICAM SIAPP SDK (All versions < V2.1.7). An out-of-bounds write vulnerability exists in SICAM SIAPP SDK. This …

Fix: 2.17+
Fix from $1,950 2026-03-10
Fortiweb MEDIUM 6.6
CVE-2026-24640

A Stack-based Buffer Overflow vulnerability [CWE-121] vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.2, FortiWeb 7.6.0 through 7.6.6, FortiWeb …

Fix: 7.6.7 / 8.0.3+
Fix from $1,600 2026-03-10
Linux Diagnostic Extension HIGH 7.8
CVE-2026-23665

Heap-based buffer overflow in Azure Linux Virtual Machines allows an authorized attacker to elevate privileges locally.

Fix: 2.1.24+
Fix from $1,950 2026-03-10
Fortimanager HIGH 8.1
CVE-2025-54820

A Stack-based Buffer Overflow vulnerability [CWE-121] vulnerability in Fortinet FortiManager 7.4.0 through 7.4.2, FortiManager 7.2.0 through 7.2.10, …

Fix: 7.2.11 / 7.4.3+
Fix from $1,950 2026-03-10
Imagemagick HIGH 7.8
CVE-2026-30929

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, MagnifyImage…

Fix: 6.9.13-41 / 7.1.2-16+
Fix from $1,950 2026-03-10
Imagemagick HIGH 8.1
CVE-2026-28693

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, an integer o…

Fix: 6.9.13-41 / 7.1.2-16+
Fix from $1,950 2026-03-10
FreeBSD HIGH 7.5
CVE-2026-3038

The rtsock_msg_buffer() function serializes routing information into a buffer. As a part of this, it copies sockaddr structures into a sockaddr_stor…

Mitigation only
Fix from $1,950 2026-03-09
Universal Bacnet Router Firmware HIGH 8.8
CVE-2025-41766

A low-privileged remote attacker can trigger a stack-based buffer overflow via a crafted HTTP POST request using the ubr-network method resulting in …

Fix: 6.0.1.0+
Fix from $1,950 2026-03-09
Atop Ehg2408 Firmware CRITICAL 9.8
CVE-2026-3823

EHG2408 series switch developed by Atop Technologies has a Stack-based Buffer Overflow vulnerability, allowing unauthenticated remote attackers to co…

Fix: 3.36+
Fix from $2,300 2026-03-09
Commgr2 CRITICAL 9.8
CVE-2026-3630

Delta Electronics COMMGR2 has Stack-based Buffer Overflow vulnerability.

Fix: 2.11.1+
Fix from $2,300 2026-03-09
Wl Nu516u1 Firmware CRITICAL 9.8
CVE-2026-3703

A flaw has been found in Wavlink NU516U1 251208. This affects the function sub_401A10 of the file /cgi-bin/login.cgi. Executing a manipulation of the…

Mitigation only
Fix from $2,300 2026-03-08
Unclassified MEDIUM 6.2
CVE-2018-25198

eToolz 3.4.8.0 contains a denial of service vulnerability that allows local attackers to crash the application by supplying oversized input buffers. …

No fix yet
Fix from $1,600 2026-03-06
Ettercap MEDIUM 5.5
CVE-2026-3606

A vulnerability has been found in Ettercap 0.8.4-Garofalo. Affected by this vulnerability is the function add_data_segment of the file src/ettercap/u…

No fix yet
Fix from $1,600 2026-03-05
Emui HIGH 7.5
CVE-2026-28552

Out-of-bounds write vulnerability in the IMS module. Impact: Successful exploitation of this vulnerability may affect availability.

No fix yet
Fix from $1,950 2026-03-05
Zephyr CRITICAL 9.8
CVE-2026-1678

dns_unpack_name() caches the buffer tailroom once and reuses it while appending DNS labels. As the buffer grows, the cached size becomes incorrect, a…

Fix: after 4.3.0
Fix from $2,300 2026-03-05
Chrome HIGH 8.8
CVE-2026-3544

Heap buffer overflow in WebCodecs in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to perform an out of bounds memory write via a c…

Fix: 145.0.7632.159 / 145.0.7632.160+
Fix from $1,950 2026-03-04
Chrome HIGH 8.8
CVE-2026-3537

Object lifecycle issue in PowerVR in Google Chrome on Android prior to 145.0.7632.159 allowed a remote attacker to potentially exploit heap corruptio…

Fix: 145.0.7632.159+
Fix from $1,950 2026-03-04
Secure Firewall Threat Defense MEDIUM 6.5
CVE-2026-20023

A vulnerability in the OSPF protocol of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FT…

Mitigation only
Fix from $1,600 2026-03-04
Snort MEDIUM 5.8
CVE-2026-20067

Multiple Cisco products are affected by a vulnerability in the Snort 3 detection engine that could allow an unauthenticated, remote attacker to cause…

Fix: 3.9.5.0+
Fix from $1,600 2026-03-04
Linux Kernel HIGH 7.8
CVE-2026-23233

In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid mapping wrong physical block for swapfile Xiaolong Guo repor…

Fix: 6.6.127 / 6.12.74+
Fix from $1,950 2026-03-04
Cncsoft G2 HIGH 7.8
CVE-2026-3094

Delta Electronics CNCSoft-G2 lacks proper validation of the user-supplied file. If a user opens a malicious file, an attacker can leverage this vulne…

Fix: 2.1.0.39+
Fix from $1,950 2026-03-04
Openexr HIGH 7.8
CVE-2026-27622

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. In C…

Fix: 3.2.6 / 3.3.8+
Fix from $1,950 2026-03-03
Dir 513 Firmware CRITICAL 9.8
CVE-2025-70234

Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetQoS.

Mitigation only
Fix from $2,300 2026-03-03
Dir 513 Firmware CRITICAL 9.8
CVE-2025-70239

Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetWAN_Wizard55.

Mitigation only
Fix from $2,300 2026-03-03
Dir 513 Firmware CRITICAL 9.8
CVE-2025-70240

Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetWAN_Wizard51.

Mitigation only
Fix from $2,300 2026-03-03
Dr Libs HIGH 7.8
CVE-2026-29022

dr_libs dr_wav.h version 0.14.4 and earlier (fixed in commit 8a7258c) contain a heap buffer overflow vulnerability in the drwav__read_smpl_to_metadat…

Fix: after 0.14.4
Fix from $1,950 2026-03-03
Zdir CRITICAL 9.1
CVE-2025-66945

A path traversal vulnerability exists in the ZIP extraction API of Zdir Pro 4.x. When a crafted ZIP archive is processed by the backend at /api/extra…

Fix: after 4.6.2
Fix from $2,300 2026-03-03
Dir 513 Firmware CRITICAL 9.8
CVE-2025-70236

Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetDomainFilter.

Mitigation only
Fix from $2,300 2026-03-03
Dir 513 Firmware CRITICAL 9.8
CVE-2025-70237

Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetPortTr.

Mitigation only
Fix from $2,300 2026-03-03