Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Qts HIGH 7.2
CVE-2024-38638

An out-of-bounds write vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow …

Mitigation only
Fix from $1,950 2025-03-07
Imagesharp HIGH 7.5
CVE-2025-27598

ImageSharp is a 2D graphics API. An Out-of-bounds Write vulnerability has been found in the ImageSharp gif decoder, allowing attackers to cause a cra…

Fix: 2.1.10 / 3.1.7+
Fix from $1,950 2025-03-06
Linux Kernel HIGH 7.8
CVE-2024-58069

In the Linux kernel, the following vulnerability has been resolved: rtc: pcf85063: fix potential OOB write in PCF85063 NVMEM read The nvmem interfa…

Fix: 5.4.291 / 5.10.235+
Fix from $1,950 2025-03-06
Notes HIGH 7.8
CVE-2025-20931

Out-of-bounds write in parsing bmp image in Samsung Notes prior to version 4.4.26.71 allows local attackers to execute arbitrary code.

Fix: 4.4.26.71+
Fix from $1,950 2025-03-06
Notes HIGH 7.8
CVE-2025-20929

Out-of-bounds write in parsing jpeg image in Samsung Notes prior to version 4.4.26.71 allows local attackers to execute arbitrary code.

Fix: 4.4.26.71+
Fix from $1,950 2025-03-06
Firefox MEDIUM 6.5
CVE-2025-1938

Memory safety bugs present in Firefox 135, Thunderbird 135, Firefox ESR 128.7, and Thunderbird 128.7. Some of these bugs showed evidence of memory co…

Fix: 128.7.0 / 135.0+
Fix from $1,600 2025-03-04
Esxi HIGH 8.2
CVE-2025-22225 KEV

VMware ESXi contains an arbitrary write vulnerability. A malicious actor with privileges within the VMX process may trigger an arbitrary kernel write…

Mitigation only
Fix from $1,950 2025-03-04
Openharmony HIGH 7.8
CVE-2025-23240

in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through out-of-bounds write. This vuln…

Fix: after 5.0.2
Fix from $1,950 2025-03-04
Openharmony HIGH 7.8
CVE-2025-23420

in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through out-of-bounds write. This vuln…

Fix: after 5.0.2
Fix from $1,950 2025-03-04
Openharmony HIGH 7.8
CVE-2025-24309

in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through out-of-bounds write. This vuln…

Fix: after 5.0.2
Fix from $1,950 2025-03-04
Openharmony HIGH 7.8
CVE-2025-22835

in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through out-of-bounds write. This vuln…

Fix: after 5.0.2
Fix from $1,950 2025-03-04
Grub2 MEDIUM 6.4
CVE-2025-0684

A flaw was found in grub2. When performing a symlink lookup from a reiserfs filesystem, grub's reiserfs fs module uses user-controlled parameters fro…

Fix: after 2.12
Fix from $1,600 2025-03-03
Grub2 MEDIUM 6.4
CVE-2025-0685

A flaw was found in grub2. When reading data from a jfs filesystem, grub's jfs filesystem module uses user-controlled parameters from the filesystem …

Fix: after 2.12
Fix from $1,600 2025-03-03
Grub2 MEDIUM 6.4
CVE-2025-0686

A flaw was found in grub2. When performing a symlink lookup from a romfs filesystem, grub's romfs filesystem module uses user-controlled parameters f…

Fix: after 2.12
Fix from $1,600 2025-03-03
Dap 1562 Firmware CRITICAL 9.8
CVE-2025-1876

A vulnerability, which was classified as critical, has been found in D-Link DAP-1562 1.10. Affected by this issue is the function http_request_parse …

No fix yet
Fix from $2,300 2025-03-03
Openshift Container Platform HIGH 7.8
CVE-2024-45782

A flaw was found in the HFS filesystem. When reading an HFS volume's name at grub_fs_mount(), the HFS filesystem driver performs a strcpy() using the…

Fix: after 2.12
Fix from $1,950 2025-03-03
Grub2 HIGH 7.8
CVE-2025-1125

When reading data from a hfs filesystem, grub's hfs filesystem module uses user-controlled parameters from the filesystem metadata to calculate the i…

Fix: after 2.12
Fix from $1,950 2025-03-03
Grub2 MEDIUM 6.7
CVE-2024-45780

A flaw was found in grub2. When reading tar files, grub2 allocates an internal buffer for the file name. However, it fails to properly verify the all…

Fix: after 2.12
Fix from $1,600 2025-03-03
Qam8255p Firmware HIGH 8.8
CVE-2024-53029

Memory corruption while reading a value from a buffer controlled by the Guest Virtual Machine.

Mitigation only
Fix from $1,950 2025-03-03
Msm8996au Firmware HIGH 7.8
CVE-2024-53030

Memory corruption while processing input message passed from FE driver.

No fix yet
Fix from $1,950 2025-03-03
Srv1l Firmware HIGH 7.8
CVE-2024-53031

Memory corruption while reading a type value from a buffer controlled by the Guest Virtual Machine.

No fix yet
Fix from $1,950 2025-03-03
Qam8255p Firmware HIGH 7.8
CVE-2024-53012

Memory corruption may occur due to improper input validation in clock device.

No fix yet
Fix from $1,950 2025-03-03
Qam8255p Firmware HIGH 7.8
CVE-2024-53022

Memory corruption may occur during communication between primary and guest VM.

No fix yet
Fix from $1,950 2025-03-03
Ac8 Firmware CRITICAL 9.8
CVE-2025-1853

A vulnerability was found in Tenda AC8 16.03.34.06 and classified as critical. This issue affects the function sub_49E098 of the file /goform/SetIpMa…

No fix yet
Fix from $2,300 2025-03-03
Android HIGH 7.8
CVE-2025-20645

In KeyInstall, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious…

Mitigation only
Fix from $1,950 2025-03-03
Software Development Kit CRITICAL 9.8
CVE-2025-20646

In wlan AP FW, there is a possible out of bounds write due to improper input validation. This could lead to remote escalation of privilege with no ad…

Fix: 7.6.7.2+
Fix from $2,300 2025-03-03
Yocto MEDIUM 6.8
CVE-2025-20650

In da, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has ph…

Mitigation only
Fix from $1,600 2025-03-03
Ac6 Firmware CRITICAL 9.8
CVE-2025-1814

A vulnerability, which was classified as critical, has been found in Tenda AC6 15.03.05.16. Affected by this issue is some unknown functionality of t…

Mitigation only
Fix from $2,300 2025-03-02
Radare2 CRITICAL 9.8
CVE-2025-1744

Out-of-bounds Write vulnerability in radareorg radare2 allows heap-based buffer over-read or buffer overflow.This issue affects radare2: before <5.…

Fix: after 5.9.8
Fix from $2,300 2025-02-28
Libmodbus CRITICAL 9.8
CVE-2024-10918

Stack-based Buffer Overflow vulnerability in libmodbus v3.1.10 allows to overflow the buffer allocated for the Modbus response if the function tries …

Mitigation only
Fix from $2,300 2025-02-27