Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Arena HIGH 7.3
CVE-2026-8085

A security issue exists within Arena® Simulation due to a memory corruption vulnerability in the model.exe (Siman) component. The vulnerability stems…

Fix: 17.00.01+
Fix from $1,950 2026-07-14
Arena HIGH 7.3
CVE-2026-8312

A security issue exists within Arena® Simulation due to a memory corruption vulnerability in the expmt.exe (Siman) component. The vulnerability stems…

Fix: 17.00.01+
Fix from $1,950 2026-07-14
Arena HIGH 7.3
CVE-2026-8313

A security issue exists within Arena® Simulation due to a memory corruption vulnerability in the linker.exe (Siman) component. The vulnerability stem…

Fix: 17.00.01+
Fix from $1,950 2026-07-14
Unclassified CRITICAL 9.9
CVE-2026-44747

SAP NetWeaver Application Server ABAP allows an authenticated attacker to leverage logical errors in memory management to cause a memory corruption t…

Mitigation only
Fix from $2,300 2026-07-14
Unclassified HIGH 8.8
CVE-2026-15545

A vulnerability was identified in Shibby Tomato up to 1.28.0000. Affected by this vulnerability is the function main of the file www/apcupsd/tomatoda…

Mitigation only
Fix from $1,950 2026-07-13
Zephyr MEDIUM 5.0
CVE-2026-10664

The nRF70 Wi-Fi driver's power-save event handler nrf_wifi_event_proc_get_power_save_info() in drivers/wifi/nrf_wifi/src/wifi_mgmt.c copied TWT (Targ…

Fix: 4.5.0+
Fix from $1,600 2026-07-12
Zephyr HIGH 7.4
CVE-2026-10665

In Zephyr's WireGuard subsystem (subsys/net/lib/wireguard), wg_process_data_message() in wg_crypto.c linearizes an inbound transport-data payload int…

Patch available
Fix from $1,950 2026-07-12
Zephyr CRITICAL 9.8
CVE-2026-10666

parse_ipv4() in subsys/net/ip/utils.c (reached via net_ipaddr_parse() for strings of the form "a.b.c.d:port") copies the port substring into a fixed …

Fix: after 4.4.1
Fix from $2,300 2026-07-12
Unclassified MEDIUM 6.4
CVE-2026-10660

The Bluetooth BAP Broadcast Assistant GATT client in subsys/bluetooth/audio/bap_broadcast_assistant.c reassembled remote Broadcast Receive State data…

Patch available
Fix from $1,600 2026-07-11
Openresty HIGH 7.5
CVE-2026-55233

OpenResty is a high performance web platform. From 1.29.2.1 to before 1.29.2.5, an out-of-bounds write vulnerability exists in the upstream PROXY pro…

Fix: 1.29.2.5+
Fix from $1,950 2026-07-10
Ddk HIGH 7.8
CVE-2026-41154

Software installed and run as a non-privileged user may cause OOB kernel memory reads or writes through GPU API calls. When indexing pages larger …

Fix: 26.1+
Fix from $1,950 2026-07-10
Freerdp HIGH 8.8
CVE-2026-55827

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.27.1, FreeRDP clients launched with the non-default /cache:codec:rfx opti…

Fix: 3.27.1+
Fix from $1,950 2026-07-10
Unclassified HIGH 7.5
CVE-2026-55687

ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. Versions 6.0.1, 5.5.4, 5.4.4, 5.3.5, and possibly prior contain an out-of-bo…

Patch available
Fix from $1,950 2026-07-10
Vim MEDIUM 5.5
CVE-2026-59857

Vim is an open source, command line text editor. Prior to 9.2.0725, the single-byte branch of spell_soundfold_sal() in src/spell.c translates a word …

Fix: 9.2.0725+
Fix from $1,600 2026-07-09
Junos MEDIUM 5.3
CVE-2026-57021

An Out-of-bounds Write vulnerability in the http-gatekeeper (http-gk) of Juniper Networks Junos OS on SRX Series allows an unauthenticated, network-b…

Mitigation only
Fix from $1,600 2026-07-09
Unclassified MEDIUM 6.5
CVE-2026-60094

Vinchin Backup & Recovery through 9.0.0.86562 contains a heap buffer overflow vulnerability that allows unauthenticated remote attackers to cause pro…

Mitigation only
Fix from $1,600 2026-07-09
Unclassified MEDIUM 6.1
CVE-2026-58304

Out-of-bounds read, Out-of-bounds write vulnerability in Samsung Open Source Escargot allows Overflow Buffers. This issue affects Escargot: before 7…

Patch available
Fix from $1,600 2026-07-09
Unclassified HIGH 7.1
CVE-2026-59691

A heap buffer overflow vulnerability was found in GStreamer's rfbsrc plugin. When a client connects to a malicious RFB/VNC server that advertises a 1…

Mitigation only
Fix from $1,950 2026-07-09
Chrome HIGH 8.8
CVE-2026-15114

Out of bounds read and write in Codecs in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to potentially exploit heap corruption via …

Fix: 150.0.7871.115+
Fix from $1,950 2026-07-08
Unclassified MEDIUM 6.3
CVE-2026-15105

A flaw has been found in davenardella snap7 up to 1.4.3. This affects the function TS7Worker::PerformFunctionRead of the file src/core/s7_server.cpp …

No fix yet
Fix from $1,600 2026-07-08
Pan Os HIGH 7.5
CVE-2026-0288

Multiple buffer overflow vulnerabilities in the User-ID Terminal Server Agent (TSA) component of Palo Alto Networks PAN-OS software allow an unauthen…

Fix: 10.2.7 / 10.2.10+
Fix from $1,950 2026-07-08
Unclassified HIGH 7.0
CVE-2026-59948

Composer is a dependency Manager for the PHP language. Prior to 2.2.29 and 2.10.2, a maliciously crafted package from an untrusted repository other t…

Patch available
Fix from $1,950 2026-07-08
Pdf Editor HIGH 7.8
CVE-2026-57260

The application opened a PDF file containing an abnormal Unity 3D object. During parsing, the application incorrectly resolved a portion of the abnor…

Fix: after 2026.1.1.70276
Fix from $1,950 2026-07-08
Dbi CRITICAL 9.8
CVE-2026-14739

DBI versions before 1.650 for Perl have a heap overflow when preparsing SQL statements with an extreme number of placeholders. The fix for CVE-2026-…

Fix: 1.650+
Fix from $2,300 2026-07-07
Unclassified HIGH 8.4
CVE-2026-42953

The application contains an out-of-bounds write vulnerability that can be exploited by an attacker to cause the program to write data past the end of…

No fix yet
Fix from $1,950 2026-07-07
Fastconnect 6700 Firmware MEDIUM 5.3
CVE-2026-21384

Memory Corruption when updating prepared commands with invalid port indices based on user space input exceeds supported read client limits.

Patch available
Fix from $1,600 2026-07-06
Fastconnect 6700 Firmware MEDIUM 5.3
CVE-2026-21368

Memory Corruption when parsing jpeg commands due to unaccounted extra writes to the buffer during validation checks.

Patch available
Fix from $1,600 2026-07-06
Fastconnect 6200 Firmware MEDIUM 5.3
CVE-2026-21369

Memory Corruption when handling flash commands due to outdated LED count values being used after userspace modification.

Patch available
Fix from $1,600 2026-07-06
Fastconnect 6700 Firmware MEDIUM 5.3
CVE-2026-21370

Memory Corruption when validating input batch size and buffer plane count exceeds maximum allowed values.

Patch available
Fix from $1,600 2026-07-06
Op Tee MEDIUM 5.5
CVE-2026-40257

OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Cortex-A cores using the TrustZone…

Fix: after 4.10.0
Fix from $1,600 2026-07-06