Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Unclassified HIGH 7.5
CVE-2025-41649

An unauthenticated remote attacker can exploit insufficient input validation to write data beyond the bounds of a buffer, potentially leading to a de…

Mitigation only
Fix from $1,950 2025-05-27
Dcs 5020l Firmware CRITICAL 9.8
CVE-2025-5215

A vulnerability classified as critical has been found in D-Link DCS-5020L 1.01_B2. This affects the function websReadEvent of the file /rame/ptdc.cgi…

Mitigation only
Fix from $2,300 2025-05-27
Satera Mf656cdw Firmware CRITICAL 9.8
CVE-2025-2146

Buffer overflow in WebService Authentication processing of Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on t…

Fix: after 05.07
Fix from $2,300 2025-05-26
Printershare CRITICAL 9.8
CVE-2025-5099

An Out of Bounds Write occurs when the native library attempts PDF rendering, which can be exploited to achieve memory corruption and potentially arb…

Fix: after 12.15.01
Fix from $2,300 2025-05-23
Sandboxie HIGH 7.8
CVE-2025-46715

Sandboxie is a sandbox-based isolation software for 32-bit and 64-bit Windows NT-based operating systems. Starting in version 1.3.0 and prior to vers…

Fix: 1.15.12+
Fix from $1,950 2025-05-22
Fh451 Firmware HIGH 8.8
CVE-2025-5080

A vulnerability classified as critical has been found in Tenda FH451 1.0.0.9. Affected is the function webExcptypemanFilter of the file /goform/webEx…

No fix yet
Fix from $1,950 2025-05-22
Debian Linux HIGH 8.8
CVE-2025-3887

GStreamer H265 Codec Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute a…

Fix: 1.26.1+
Fix from $1,950 2025-05-22
Jq HIGH 7.5
CVE-2025-48060

jq is a command-line JSON processor. In versions up to and including 1.7.1, a heap-buffer-overflow is present in function `jv_string_vfmt` in the jq_…

Fix: after 1.7.1
Fix from $1,950 2025-05-21
Linux Kernel HIGH 7.8
CVE-2025-37979

In the Linux kernel, the following vulnerability has been resolved: ASoC: qcom: Fix sc7280 lpass potential buffer overflow Case values introduced i…

Fix: 6.1.136 / 6.6.88+
Fix from $1,950 2025-05-20
Linux Kernel HIGH 7.8
CVE-2025-37981

In the Linux kernel, the following vulnerability has been resolved: scsi: smartpqi: Use is_kdump_kernel() to check for kdump The smartpqi driver ch…

Fix: 6.12.25 / 6.14.4+
Fix from $1,950 2025-05-20
Linux Kernel HIGH 7.8
CVE-2025-37943

In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Fix invalid data access in ath12k_dp_rx_h_undecap_nwifi In certai…

Fix: 6.6.88 / 6.12.24+
Fix from $1,950 2025-05-20
Linux Kernel HIGH 7.8
CVE-2025-37944

In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Fix invalid entry fetch in ath12k_dp_mon_srng_process Currently, …

Fix: 6.6.88 / 6.12.25+
Fix from $1,950 2025-05-20
Linux Kernel HIGH 7.8
CVE-2025-37947

In the Linux kernel, the following vulnerability has been resolved: ksmbd: prevent out-of-bounds stream writes by validating *pos ksmbd_vfs_stream_…

Fix: 6.1.139 / 6.6.91+
Fix from $1,950 2025-05-20
Linux Kernel HIGH 7.8
CVE-2025-37927

In the Linux kernel, the following vulnerability has been resolved: iommu/amd: Fix potential buffer overflow in parse_ivrs_acpihid There is a strin…

Fix: 5.4.294 / 5.10.238+
Fix from $1,950 2025-05-20
Linux Kernel HIGH 7.8
CVE-2025-37923

In the Linux kernel, the following vulnerability has been resolved: tracing: Fix oob write in trace_seq_to_buffer() syzbot reported this bug: =====…

Fix: 5.4.294 / 5.10.238+
Fix from $1,950 2025-05-20
Monitouch V Sft HIGH 7.8
CVE-2025-47758

V-SFT v6.2.5.0 and earlier contains an issue with stack-based buffer overflow in VS6File!CTxSubFile::get_ProgramFile_name function. Opening specially…

Fix: 6.2.6.0+
Fix from $1,950 2025-05-19
Monitouch V Sft HIGH 7.8
CVE-2025-47759

V-SFT v6.2.5.0 and earlier contains an issue with stack-based buffer overflow in VS6ComFile!CV7BaseMap::WriteV7DataToRom function. Opening specially …

Fix: 6.2.6.0+
Fix from $1,950 2025-05-19
Monitouch V Sft HIGH 7.8
CVE-2025-47760

V-SFT v6.2.5.0 and earlier contains an issue with stack-based buffer overflow in VS6MemInIF!set_temp_type_default function. Opening specially crafted…

Fix: 6.2.6.0+
Fix from $1,950 2025-05-19
Monitouch V Sft HIGH 7.8
CVE-2025-47750

V-SFT v6.2.5.0 and earlier contains an issue with out-of-bounds write in VS6MemInIF!set_temp_type_default function. Opening specially crafted V7 or V…

Fix: 6.2.6.0+
Fix from $1,950 2025-05-19
Monitouch V Sft HIGH 7.8
CVE-2025-47751

V-SFT v6.2.5.0 and earlier contains an issue with out-of-bounds write in VS6EditData!CDataRomErrorCheck::MacroCommandCheck function. Opening speciall…

Fix: 6.2.6.0+
Fix from $1,950 2025-05-19
Monitouch V Sft HIGH 7.8
CVE-2025-47752

V-SFT v6.2.5.0 and earlier contains an issue with out-of-bounds write in VS6ComFile!MakeItemGlidZahyou function. Opening specially crafted V7 or V8 f…

Fix: 6.2.6.0+
Fix from $1,950 2025-05-19
Tourism Management System HIGH 7.8
CVE-2025-4890

A vulnerability was found in code-projects Tourism Management System 1.0 and classified as critical. This issue affects the function LoginUser of the…

No fix yet
Fix from $1,950 2025-05-18
Di 8100g Firmware HIGH 7.2
CVE-2025-4883EPSS 8%

A vulnerability was found in D-Link DI-8100 16.07.26A1. It has been declared as critical. This vulnerability affects the function ctxz_asp of the fil…

No fix yet
Fix from $1,950 2025-05-18
Dcs 932l Firmware CRITICAL 9.8
CVE-2025-4843

A vulnerability was found in D-Link DCS-932L 2.18.01. It has been classified as critical. This affects the function SubUPnPCSInit of the file /sbin/u…

No fix yet
Fix from $2,300 2025-05-18
Dcs 932l Firmware CRITICAL 9.8
CVE-2025-4841

A vulnerability was found in D-Link DCS-932L 2.18.01 and classified as critical. Affected by this issue is the function sub_404780 of the file /bin/g…

No fix yet
Fix from $2,300 2025-05-17
Dcs 932l Firmware CRITICAL 9.8
CVE-2025-4842

A vulnerability was found in D-Link DCS-932L 2.18.01. It has been declared as critical. This vulnerability affects the function isUCPCameraNameChange…

No fix yet
Fix from $2,300 2025-05-17
Firefox CRITICAL 9.8
CVE-2025-4918EPSS 9%

An attacker was able to perform an out-of-bounds read or write on a JavaScript `Promise` object. This vulnerability was fixed in Firefox 138.0.4, Fir…

Fix: 115.23.1 / 128.10.1+
Fix from $2,300 2025-05-17
Firefox HIGH 8.8
CVE-2025-4919EPSS 9%

An attacker was able to perform an out-of-bounds read or write on a JavaScript object by confusing array index sizes. This vulnerability was fixed in…

Fix: 115.23.1 / 128.10.1+
Fix from $1,950 2025-05-17
Ac7 Firmware HIGH 8.8
CVE-2025-4810

A vulnerability was found in Tenda AC7 15.03.06.44. It has been declared as critical. Affected by this vulnerability is the function formSetRebootTim…

No fix yet
Fix from $1,950 2025-05-16
Ac7 Firmware HIGH 8.8
CVE-2025-4809

A vulnerability was found in Tenda AC7 15.03.06.44. It has been classified as critical. Affected is the function fromSafeSetMacFilter of the file /go…

No fix yet
Fix from $1,950 2025-05-16