Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Blu Ic2 Firmware CRITICAL 9.8
CVE-2025-12602

/etc/avahi/services/z9.service can be Arbitrarily Written.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5.

Fix: 1.20+
Fix from $2,300 2025-11-01
Xen HIGH 7.5
CVE-2025-58148

[This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Some Viridian hyper…

Patch available
Fix from $1,950 2025-10-31
Gimp HIGH 7.8
CVE-2025-10925

GIMP ILBM File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitra…

Patch available
Fix from $1,950 2025-10-29
Debian Linux HIGH 7.8
CVE-2025-10921

GIMP HDR File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary…

Patch available
Fix from $1,950 2025-10-29
Debian Linux HIGH 7.8
CVE-2025-10922

GIMP DCM File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary…

Patch available
Fix from $1,950 2025-10-29
Gimp HIGH 7.8
CVE-2025-10920

GIMP ICNS File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code …

Patch available
Fix from $1,950 2025-10-29
Fade In HIGH 7.8
CVE-2025-53855

An out-of-bounds write vulnerability exists in the XML parser functionality of GCC Productions Inc. Fade In 4.2.0. A specially crafted .fadein file c…

No fix yet
Fix from $1,950 2025-10-28
Db2 High Performance Unload Load MEDIUM 6.5
CVE-2025-33133

IBM DB2 High Performance Unload 6.1.0.3, 5.1.0.1, 6.1.0.2, 6.5, 6.5.0.0 IF1, 6.1.0.1, 6.1, and 5.1 could allow an authenticated user to cause the pro…

Fix: after 6.1.0.0
Fix from $1,600 2025-10-28
Kamailio HIGH 7.8
CVE-2025-12204

A security vulnerability has been detected in Kamailio 5.5. Impacted is the function rve_destroy of the file src/core/rvalue.c of the component Confi…

No fix yet
Fix from $1,950 2025-10-27
Ac6 Firmware HIGH 7.5
CVE-2025-60341

Tenda AC6 V2.0 15.03.06.50 was discovered to contain a stack overflow in the ssid parameter in the fast_setting_wifi_set function. This vulnerability…

No fix yet
Fix from $1,950 2025-10-22
Ac6 Firmware HIGH 7.5
CVE-2025-60342

Tenda AC6 V2.0 15.03.06.50 was discovered to contain a stack overflow in the page parameter in the addressNat function. This vulnerability allows att…

No fix yet
Fix from $1,950 2025-10-22
Ac6 Firmware HIGH 7.5
CVE-2025-60337

Tenda AC6 V2.0 15.03.06.50 was discovered to contain a buffer overflow in the speed_dir parameter in the SetSpeedWan function. This vulnerability all…

No fix yet
Fix from $1,950 2025-10-22
Ac6 Firmware HIGH 7.5
CVE-2025-60339

Multiple buffer overflow vulnerabilities in the openSchedWifi function of Tenda AC6 v.15.03.06.50 allows attackers to cause a Denial of Service (DoS)…

No fix yet
Fix from $1,950 2025-10-22
Ac6 Firmware HIGH 7.5
CVE-2025-60338

Tenda AC6 V2.0 15.03.06.50 was discovered to contain a stack overflow in the page parameter in the DhcpListClient function. This vulnerability allows…

No fix yet
Fix from $1,950 2025-10-22
Unclassified MEDIUM 6.7
CVE-2025-23299

NVIDIA Bluefield and ConnectX contain a vulnerability in the management interface that could allow a malicious actor with high privilege access to ex…

Mitigation only
Fix from $1,600 2025-10-22
Openwrt HIGH 8.8
CVE-2025-62525

OpenWrt Project is a Linux operating system targeting embedded devices. Prior to version 24.10.4, local users could read and write arbitrary kernel m…

Fix: 24.10.4+
Fix from $1,950 2025-10-22
Wolfssh CRITICAL 9.8
CVE-2025-11624

Potential stack buffer overwrite on the SFTP server side when receiving a malicious packet that has a handle size larger than the system handle or fi…

Fix: after 1.4.20
Fix from $2,300 2025-10-21
Unclassified CRITICAL 9.8
CVE-2025-54957

An issue was discovered in Dolby UDC 4.5 through 4.13. A crash of the DD+ decoder process can occur when a malformed DD+ bitstream is processed. When…

Mitigation only
Fix from $2,300 2025-10-20
Unclassified MEDIUM 5.9
CVE-2025-11680

Out-of-bounds Write in unfilter_scanline in warmcat libwebsockets allows, when the LWS_WITH_UPNG flag is enabled during compilation and the HTML disp…

Mitigation only
Fix from $1,600 2025-10-20
Unclassified HIGH 8.2
CVE-2025-61553

An out-of-bounds write in VirtIO network device emulation in BitVisor from commit 108df6 (2020-05-20) to commit 480907 (2025-07-06) allows local atta…

Mitigation only
Fix from $1,950 2025-10-16
F5os A MEDIUM 5.7
CVE-2025-60015

An out-of-bounds write vulnerability exists in F5OS-A and F5OS-C that could lead to memory corruption.  Note: Software versions which have reach…

Fix: 1.5.4 / 1.8.2+
Fix from $1,600 2025-10-15
Big Ip Access Policy Manager HIGH 7.5
CVE-2025-58096

When the database variable tm.tcpudptxchecksum is configured as non-default value Software-only on a BIG-IP system, undisclosed traffic can cause the…

Fix: 15.1.10.8 / 16.1.6.1+
Fix from $1,950 2025-10-15
Big Ip Ssl Orchestrator HIGH 7.5
CVE-2025-55036

When BIG-IP SSL Orchestrator explicit forward proxy is configured on a virtual server and the proxy connect feature is enabled, undisclosed traffic m…

Fix: 15.1.10.8 / 16.1.6+
Fix from $1,950 2025-10-15
Big Ip Next Cloud Native Network Functions HIGH 7.5
CVE-2025-54479

When a classification profile is configured on a virtual server without an HTTP or HTTP/2 profile, undisclosed requests can cause the Traffic Managem…

Fix: 15.1.10.8 / 16.1.6.1+
Fix from $1,950 2025-10-15
Illustrator HIGH 7.8
CVE-2025-54283

Illustrator versions 29.7, 28.7.9 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in t…

Fix: 28.7.10 / 29.8+
Fix from $1,950 2025-10-14
Illustrator HIGH 7.8
CVE-2025-54284

Illustrator versions 29.7, 28.7.9 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in t…

Fix: 28.7.10 / 29.8+
Fix from $1,950 2025-10-14
Substance 3d Viewer MEDIUM 5.5
CVE-2025-54275

Substance3D - Viewer versions 0.25.2 and earlier are affected by an out-of-bounds write vulnerability that could lead to application denial-of-servic…

Fix: after 0.25.2
Fix from $1,600 2025-10-14
Substance 3d Viewer HIGH 7.8
CVE-2025-54280

Substance3D - Viewer versions 0.25.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution i…

Fix: after 0.25.2
Fix from $1,950 2025-10-14
Substance 3d Viewer HIGH 7.8
CVE-2025-54273

Substance3D - Viewer versions 0.25.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution i…

Fix: after 0.25.2
Fix from $1,950 2025-10-14
Aptio V HIGH 7.8
CVE-2025-22831

APTIOV contains a vulnerability in BIOS where an attacker may cause an Out-of-bounds Write by local. Successful exploitation of this vulnerability ma…

Fix: 5.041+
Fix from $1,950 2025-10-14