Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Unclassified MEDIUM 5.5
CVE-2026-20478

In Audio HAL, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local denial of service with User execution p…

No fix yet
Fix from $1,600 2026-08-03
Unclassified MEDIUM 6.1
CVE-2026-20466

In sec boot, there is a possible escalation of privilege due to a heap buffer overflow. This could lead to local escalation of privilege, if an attac…

No fix yet
Fix from $1,600 2026-08-03
Unclassified MEDIUM 6.0
CVE-2026-20468

In apusys, there is a possible escalation of privilege due to a confused deputy. This could lead to local escalation of privilege if a malicious acto…

No fix yet
Fix from $1,600 2026-08-03
Unclassified MEDIUM 6.5
CVE-2026-20464

In hevc decoder, there is a possible out of bounds write due to an integer overflow. This could lead to remote escalation of privilege if a malicious…

No fix yet
Fix from $1,600 2026-08-03
Zephyr HIGH 8.6
CVE-2026-10848

The OCPP 1.6 client in subsys/net/lib/ocpp parsed inbound WAMP RPC frames in parse_rpc_msg() (subsys/net/lib/ocpp/ocpp_j.c) using a hand-rolled helpe…

Fix: 4.5.0+
Fix from $1,950 2026-08-02
Unclassified CRITICAL 9.6
CVE-2026-68579

FreeRDP before 3.30.0 (<= 3.29.0) contains a heap-based buffer overflow in the Windows clipboard client's CliprdrStream_Read function (client/Windows…

No fix yet
Fix from $2,300 2026-08-02
Premiere HIGH 7.8
CVE-2026-34641

Premiere Pro is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Ex…

Fix: 25.6.6 / 26.3+
Fix from $1,950 2026-07-31
Unclassified HIGH 7.1
CVE-2026-54715

GoAccess is a real-time web log analyzer and interactive viewer that runs in a terminal in *nix systems or through the browser. In version 1.10.2, pa…

No fix yet
Fix from $1,950 2026-07-30
Openvpn HIGH 7.5
CVE-2026-11771

OpenVPN version 2.1.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows attackers via an off-by-one buffer write in the NTLM proxy authentication to…

Fix: 2.6.21 / 2.7.5+
Fix from $1,950 2026-07-30
Unclassified CRITICAL 9.3
CVE-2026-47876

VMware ESX contains an out-of-bounds write vulnerability in the VMXNET3 virtual network adapter. A malicious actor with local administrative privileg…

No fix yet
Fix from $2,300 2026-07-30
PHP CRITICAL 9.8
CVE-2026-17544

Attacker-provided inputs to bccomp() could lead to an out-of-bounds write with stack and heap corruption in PHP versions from 8.4.* before 8.4.24 and…

Fix: 8.4.24 / 8.5.9+
Fix from $2,300 2026-07-30
Chrome CRITICAL 9.6
CVE-2026-17727

Out of bounds write in WebGL in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandbox escape via…

Fix: 151.0.7922.72+
Fix from $2,300 2026-07-30
Chrome CRITICAL 9.6
CVE-2026-17721

Out of bounds write in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandbox escape via a crafted …

Fix: 151.0.7922.72+
Fix from $2,300 2026-07-30
Chrome CRITICAL 9.6
CVE-2026-17691

Out of bounds write in ANGLE in Google Chrome on Windows prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandbox escape via…

Fix: 151.0.7922.72+
Fix from $2,300 2026-07-30
Chrome CRITICAL 9.6
CVE-2026-17675

Out of bounds write in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentiall…

Fix: 151.0.7922.72+
Fix from $2,300 2026-07-30
Imagemagick MEDIUM 5.0
CVE-2026-62363

ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to 7.1.2-27, a heap buffer over-writ…

Fix: 7.1.2-27+
Fix from $1,600 2026-07-30
Unclassified HIGH 8.8
CVE-2026-18022

Integer wraparound in IVFFlat index build in pgvector before 0.8.6 allows a database user to write data out-of-bounds, which could lead to arbitrary …

No fix yet
Fix from $1,950 2026-07-29
Unclassified HIGH 8.4
CVE-2026-12927

CWE-787 Out-of-bounds write vulnerability exists that could cause loss of data or potentially risk arbitrary code execution when a malicious CGF file…

No fix yet
Fix from $1,950 2026-07-29
Unclassified HIGH 7.8
CVE-2026-18220

An out-of-bounds write vulnerability was found in the BFD library's DLX ELF backend (bfd/elf32-dlx.c) in GNU binutils. The dlx_rtype_to_howto() funct…

No fix yet
Fix from $1,950 2026-07-29
Traffic Server HIGH 8.2
CVE-2026-58188

Several Apache Traffic Server experimental plugins have memory-safety and limit-bypass errors. This issue affects Apache Traffic Server: from 8.0.0 …

Fix: 9.2.15 / 10.1.4+
Fix from $1,950 2026-07-29
Traffic Server HIGH 7.5
CVE-2026-58184

The Apache Traffic Server header_rewrite plugin can crash or corrupt memory during cookie operations and CIDR condition matching. This issue affects…

Fix: 9.2.15 / 10.1.4+
Fix from $1,950 2026-07-29
Traffic Server HIGH 7.5
CVE-2026-58187

The Apache Traffic Server multiplexer plugin overruns its chunk-decode buffer on upstream input, enabling denial of service. This issue affects Apac…

Fix: 9.2.15 / 10.1.4+
Fix from $1,950 2026-07-29
Traffic Server CRITICAL 9.8
CVE-2026-58177

The Apache Traffic Server Cripts framework has out-of-bounds writes, path traversal, and use-after-free errors. This issue affects Apache Traffic Se…

Fix: 10.1.4+
Fix from $2,300 2026-07-29
Traffic Server HIGH 8.9
CVE-2026-58154

Apache Traffic Server can write out of bounds or overflow integers while parsing MIME and HTTP headers. This issue affects Apache Traffic Server: fr…

Fix: 9.2.15 / 10.1.4+
Fix from $1,950 2026-07-29
Unclassified MEDIUM 6.5
CVE-2026-35226

An out‑of‑bounds write vulnerability in the CODESYS PROFINET Controller allows an unauthenticated attacker on the same network segment to send malfor…

No fix yet
Fix from $1,600 2026-07-29
Websphere Application Server HIGH 7.5
CVE-2026-15057

IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 is vulnerable to a denial of service due to uncontrolled heap allocation.

Fix: 26.0.0.8+
Fix from $1,950 2026-07-28
Bridge HIGH 7.8
CVE-2026-48392

Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploita…

Fix: 15.1.7 / 16.0.6+
Fix from $1,950 2026-07-28
Bridge HIGH 7.8
CVE-2026-48393

Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploita…

Fix: 15.1.7 / 16.0.6+
Fix from $1,950 2026-07-28
Bridge HIGH 7.8
CVE-2026-48394

Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploita…

Fix: 15.1.7 / 16.0.6+
Fix from $1,950 2026-07-28
Format Plugins HIGH 7.8
CVE-2026-48372

Format Plugins is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current …

Fix: 2026.07+
Fix from $1,950 2026-07-28