Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Iccdev HIGH 7.1
CVE-2026-27692

iccDEV provides a set of libraries and tools for working with ICC color management profiles. In versions up to and including 2.3.1.4, heap-buffer-ove…

Fix: after 2.3.1.4
Fix from $1,950 2026-02-25
Food Ordering System HIGH 7.8
CVE-2026-3137

A security vulnerability has been detected in CodeAstro Food Ordering System 1.0. This affects an unknown function of the file food_ordering.exe. Suc…

No fix yet
Fix from $1,950 2026-02-25
Firefox CRITICAL 9.8
CVE-2026-2807

Memory safety bugs present in Firefox 147 and Thunderbird 147. Some of these bugs showed evidence of memory corruption and we presume that with enoug…

Fix: 148.0+
Fix from $2,300 2026-02-24
Firefox CRITICAL 9.8
CVE-2026-2792

Memory safety bugs present in Firefox ESR 140.7, Thunderbird ESR 140.7, Firefox 147 and Thunderbird 147. Some of these bugs showed evidence of memory…

Fix: 140.8.0 / 148.0+
Fix from $2,300 2026-02-24
Firefox CRITICAL 9.8
CVE-2026-2793

Memory safety bugs present in Firefox ESR 115.32, Firefox ESR 140.7, Thunderbird ESR 140.7, Firefox 147 and Thunderbird 147. Some of these bugs showe…

Fix: 115.33.0 / 140.8.0+
Fix from $2,300 2026-02-24
Imagemagick CRITICAL 9.1
CVE-2026-26284

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, ImageMagick …

Fix: 6.9.13-40 / 7.1.2-15+
Fix from $2,300 2026-02-24
Imagemagick CRITICAL 9.8
CVE-2026-25971

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, Magick fails…

Fix: 6.9.13-40 / 7.1.2-15+
Fix from $2,300 2026-02-24
Imagemagick CRITICAL 9.8
CVE-2026-25986

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, a heap buffe…

Fix: 6.9.13-40 / 7.1.2-15+
Fix from $2,300 2026-02-24
Imagemagick HIGH 7.5
CVE-2026-25967

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-15, a stack-based buffer overfl…

Fix: 6.9.13-40 / 7.1.2-15+
Fix from $1,950 2026-02-24
Imagemagick CRITICAL 9.8
CVE-2026-25968

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, a stack buff…

Fix: 6.9.13-40 / 7.1.2-15+
Fix from $2,300 2026-02-24
Chrome CRITICAL 9.8
CVE-2026-3062

Out of bounds read and write in Tint in Google Chrome on Mac prior to 145.0.7632.116 allowed a remote attacker to perform out of bounds memory access…

Fix: 145.0.7632.116 / 145.0.7632.117+
Fix from $2,300 2026-02-23
Unclassified HIGH 7.3
CVE-2026-2940

A vulnerability was determined in Zaher1307 tiny_web_server up to 8d77b1044a0ca3a5297d8726ac8aa2cf944d481b. This affects the function tiny_web_server…

Mitigation only
Fix from $1,950 2026-02-22
Gimp HIGH 7.8
CVE-2026-2047

GIMP ICNS File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrar…

Patch available
Fix from $1,950 2026-02-20
Gimp HIGH 7.8
CVE-2026-2048

GIMP XWD File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code o…

Mitigation only
Fix from $1,950 2026-02-20
Gimp HIGH 7.3
CVE-2026-2045

GIMP XWD File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code o…

Patch available
Fix from $1,950 2026-02-20
Gimp HIGH 8.8
CVE-2026-0797

GIMP ICO File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary…

Patch available
Fix from $1,950 2026-02-20
Hdf5 HIGH 7.8
CVE-2026-26200

HDF5 is software for managing data. Prior to version 1.14.4-2, an attacker who can control an `h5` file parsed by HDF5 can trigger a write-based heap…

Fix: 1.14.4.2+
Fix from $1,950 2026-02-19
Unclassified MEDIUM 5.3
CVE-2026-2681

A flaw was found in the blst cryptographic library. This out-of-bounds stack write vulnerability, specifically in the blst_sha256_bcopy assembly rout…

Mitigation only
Fix from $1,600 2026-02-19
Wmv To Avi Mpeg Dvd Wmv Convertor CRITICAL 9.8
CVE-2019-25362

WMV to AVI MPEG DVD WMV Convertor 4.6.1217 contains a buffer overflow vulnerability that allows attackers to execute arbitrary code by overwriting th…

Mitigation only
Fix from $2,300 2026-02-18
Unclassified MEDIUM 6.5
CVE-2026-0665

An off-by-one error was found in QEMU's KVM Xen guest support. A malicious guest could use this flaw to trigger out-of-bounds heap accesses in the QE…

Mitigation only
Fix from $1,600 2026-02-18
Lily HIGH 7.8
CVE-2026-2662

A weakness has been identified in FascinatedBox lily up to 2.3. This vulnerability affects the function count_transforms of the file src/lily_emitter…

Fix: after 2.3
Fix from $1,950 2026-02-18
Shared Components HIGH 7.8
CVE-2026-0874

A maliciously crafted CATPART file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulnerability. A malicious actor …

Fix: 2026.6+
Fix from $1,950 2026-02-18
Shared Components HIGH 7.8
CVE-2026-0875

A maliciously crafted MODEL file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulnerability. A malicious actor ma…

Fix: 2026.6+
Fix from $1,950 2026-02-18
Linux Kernel HIGH 7.8
CVE-2025-71234

In the Linux kernel, the following vulnerability has been resolved: wifi: rtl8xxxu: fix slab-out-of-bounds in rtl8xxxu_sta_add The driver does not …

Fix: 6.12.72 / 6.18.11+
Fix from $1,950 2026-02-18
Minisat HIGH 7.8
CVE-2026-2644

A weakness has been identified in niklasso minisat up to 2.2.0. This issue affects the function Solver::value in the library core/SolverTypes.h of th…

Fix: after 2.2.0
Fix from $1,950 2026-02-18
A3002ru Firmware HIGH 8.8
CVE-2026-26731

TOTOLINK A3002RU V2.1.1-B20211108.1455 was discovered to contain a stack-based buffer overflow via the routernamer`parameter in the formDnsv6 functio…

No fix yet
Fix from $1,950 2026-02-17
A3002ru Firmware HIGH 8.8
CVE-2026-26732

TOTOLINK A3002RU V2.1.1-B20211108.1455 was discovered to contain a stack-based buffer overflow via the vpnUser or vpnPassword` parameters in the form…

No fix yet
Fix from $1,950 2026-02-17
A3002ru Firmware HIGH 8.8
CVE-2026-26736

TOTOLINK A3002RU_V3 V3.0.0-B20220304.1804 was discovered to contain a stack-based buffer overflow via the static_ipv6 parameter in the formIpv6Setup …

Fix: after 3.0.0-b20220304.1804
Fix from $1,950 2026-02-17
Wl Nu516u1 Firmware HIGH 7.2
CVE-2026-2567

A vulnerability was detected in Wavlink WL-NU516U1 20251208. This vulnerability affects the function sub_401218 of the file /cgi-bin/nas.cgi. Perform…

Fix: after 2025-12-08
Fix from $1,950 2026-02-16
Solidworks Edrawings HIGH 7.8
CVE-2026-1335

An Out-Of-Bounds Write vulnerability affecting the EPRT file reading procedure in SOLIDWORKS eDrawings from Release SOLIDWORKS Desktop 2025 through R…

Mitigation only
Fix from $1,950 2026-02-16