Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Unclassified MEDIUM 6.1
CVE-2025-0690

The read command is used to read the keyboard input from the user, while reads it keeps the input length in a 32-bit integer value which is further u…

Mitigation only
Fix from $1,600 2025-02-24
Ffmpeg HIGH 8.8
CVE-2025-1594

A vulnerability, which was classified as critical, was found in FFmpeg up to 7.1. This affects the function ff_aac_search_for_tns of the file libavco…

Fix: after 7.1
Fix from $1,950 2025-02-23
Linux Kernel HIGH 7.8
CVE-2025-21704

In the Linux kernel, the following vulnerability has been resolved: usb: cdc-acm: Check control transfer buffer size before access If the first fra…

Fix: 5.4.291 / 5.10.235+
Fix from $1,950 2025-02-22
Vyper CRITICAL 9.1
CVE-2025-27105

vyper is a Pythonic Smart Contract Language for the EVM. Vyper handles AugAssign statements by first caching the target location to avoid double eval…

Fix: 0.4.1+
Fix from $2,300 2025-02-21
Dap 1320 Firmware HIGH 8.8
CVE-2025-1538

A vulnerability classified as critical was found in D-Link DAP-1320 1.00. Affected by this vulnerability is the function set_ws_action of the file /d…

No fix yet
Fix from $1,950 2025-02-21
Dap 1320 Firmware CRITICAL 9.8
CVE-2025-1539

A vulnerability, which was classified as critical, has been found in D-Link DAP-1320 1.00. Affected by this issue is the function replace_special_cha…

Mitigation only
Fix from $2,300 2025-02-21
Omr HIGH 7.8
CVE-2025-1471

In Eclipse OMR versions 0.2.0 to 0.4.0, some of the z/OS atoe print functions use a constant length buffer for string conversion. If the input format…

Fix: after 0.4.0
Fix from $1,950 2025-02-21
Ac8 Firmware CRITICAL 9.8
CVE-2025-25663

A vulnerability was found in Tenda AC8V4 V16.03.34.06. Affected is the function SUB_0046AC38 of the file /goform/WifiExtraSet. The manipulation of th…

No fix yet
Fix from $2,300 2025-02-20
Ac8 Firmware CRITICAL 9.8
CVE-2025-25664

Tenda AC8V4 V16.03.34.06 was discovered to contain a stack overflow via the shareSpeed parameter in the sub_49E098 function.

No fix yet
Fix from $2,300 2025-02-20
Openh264 HIGH 7.5
CVE-2025-27091

OpenH264 is a free license codec library which supports H.264 encoding and decoding. A vulnerability in the decoding functions of OpenH264 codec libr…

Fix: 2.5.1+
Fix from $1,950 2025-02-20
Unclassified HIGH 7.6
CVE-2025-0624

A flaw was found in grub2. During the network boot process, when trying to search for the configuration file, grub copies data from a user controlled…

Mitigation only
Fix from $1,950 2025-02-19
Unclassified MEDIUM 6.4
CVE-2025-0677

A flaw was found in grub2. When performing a symlink lookup, the grub's UFS module checks the inode's data size to allocate the internal buffer to re…

Mitigation only
Fix from $1,600 2025-02-19
Openshift MEDIUM 6.7
CVE-2024-45777

A flaw was found in grub2. The calculation of the translation buffer when reading a language .mo file in grub_gettext_getstr_from_position() may over…

Fix: after 2.12
Fix from $1,600 2025-02-19
Unclassified MEDIUM 6.7
CVE-2024-45776

When reading the language .mo file in grub_mofile_open(), grub2 fails to verify an integer overflow when allocating its internal buffer. A crafted .m…

Mitigation only
Fix from $1,600 2025-02-18
Unclassified MEDIUM 6.7
CVE-2024-45781

A flaw was found in grub2. When reading a symbolic link's name from a UFS filesystem, grub2 fails to validate the string length taken as an input. Th…

Mitigation only
Fix from $1,600 2025-02-18
Unclassified MEDIUM 6.7
CVE-2024-45774

A flaw was found in grub2. A specially crafted JPEG file can cause the JPEG parser of grub2 to incorrectly check the bounds of its internal buffers, …

Mitigation only
Fix from $1,600 2025-02-18
Firefox MEDIUM 6.5
CVE-2025-1414

Memory safety bugs present in Firefox 135. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of the…

Fix: 135.0.1+
Fix from $1,600 2025-02-18
Unclassified MEDIUM 6.5
CVE-2024-45320

Out-of-bounds write vulnerability exists in DocuPrint CP225w 01.22.01 and earlier, DocuPrint CP228w 01.22.01 and earlier, DocuPrint CM225fw 01.10.01 …

Mitigation only
Fix from $1,600 2025-02-18
X18 Firmware HIGH 8.8
CVE-2025-1340EPSS 17%

A vulnerability classified as critical has been found in TOTOLINK X18 9.1.0cu.2024_B20220329. Affected is the function setPasswordCfg of the file /cg…

Mitigation only
Fix from $1,950 2025-02-16
Futuresmart 3 CRITICAL 9.8
CVE-2025-26508

Certain HP LaserJet Pro, HP LaserJet Enterprise, and HP LaserJet Managed Printers may potentially be vulnerable to Remote Code Execution and Elevatio…

Fix: 6.17.5.34-202412122146 / 2309118_002274+
Fix from $2,300 2025-02-14
Musl HIGH 7.0
CVE-2025-26519

musl libc 0.9.13 through 1.2.5 before 1.2.6 has an out-of-bounds write vulnerability when an attacker can trigger iconv conversion of untrusted EUC-K…

Fix: 1.2.6+
Fix from $1,950 2025-02-14
Headunit Ntg6 Mercedes Benz User Experience HIGH 7.7
CVE-2023-34402

Mercedes-Benz head-unit NTG6 contains functions to import or export profile settings over USB. Inside file is encapsulate another file, which service…

Fix: after 2021
Fix from $1,950 2025-02-13
Unclassified HIGH 7.3
CVE-2024-11345

A heap-based memory vulnerability has been identified in the Postscript interpreter in various Lexmark devices. The vulnerability can be leveraged by…

Mitigation only
Fix from $1,950 2025-02-13
Tl Wr841nd Firmware HIGH 7.5
CVE-2025-25901

A buffer overflow vulnerability was discovered in TP-Link TL-WR841ND V11, triggered by the dnsserver1 and dnsserver2 parameters at /userRpm/WanSlaacC…

No fix yet
Fix from $1,950 2025-02-13
Tl Wr841nd Firmware HIGH 7.5
CVE-2025-25897

A buffer overflow vulnerability was discovered in TP-Link TL-WR841ND V11 via the 'ip' parameter at /userRpm/WanStaticIpV6CfgRpm.htm. This vulnerabili…

No fix yet
Fix from $1,950 2025-02-13
Tl Wr841nd Firmware HIGH 7.5
CVE-2025-25898

A buffer overflow vulnerability was discovered in TP-Link TL-WR841ND V11 via the pskSecret parameter at /userRpm/WlanSecurityRpm.htm. This vulnerabil…

No fix yet
Fix from $1,950 2025-02-13
Unclassified MEDIUM 6.5
CVE-2024-36274

Out-of-bounds write in the Intel(R) 800 Series Ethernet Driver for Intel(R) Ethernet Adapter Complete Driver Pack before versions 29.1 may allow an u…

Mitigation only
Fix from $1,600 2025-02-12
Quickassist Technology HIGH 7.8
CVE-2024-31858

Out-of-bounds write for some Intel(R) QuickAssist Technology software before version 2.2.0 may allow an authenticated user to potentially enable esca…

Fix: 2.2.0-0012+
Fix from $1,950 2025-02-12
Dir 853 Firmware CRITICAL 9.8
CVE-2025-25742

D-Link DIR-853 A1 FW1.20B07 was discovered to contain a stack-based buffer overflow vulnerability via the AccountPassword parameter in the SetSysEmai…

No fix yet
Fix from $2,300 2025-02-12
Dir 853 Firmware CRITICAL 9.8
CVE-2025-25744

D-Link DIR-853 A1 FW1.20B07 was discovered to contain a stack-based buffer overflow vulnerability via the Password parameter in the SetDynamicDNSSett…

No fix yet
Fix from $2,300 2025-02-12