Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Fireware HIGH 8.8
CVE-2026-8247

An Out-of-bounds Write vulnerability in WatchGuard Fireware OS may allow an unauthenticated attacker on the same local network segment to execute arb…

Fix: 11.12.4 / 12.5.19+
Fix from $1,950 2026-07-03
Fireware HIGH 7.2
CVE-2026-13383

An Out-of-bounds Write vulnerability in WatchGuard Fireware OS ikestubd process could allow an authenticated privileged user to execute arbitrary cod…

Fix: 12.12.1 / 2026.2.1+
Fix from $1,950 2026-07-03
Fireware HIGH 7.2
CVE-2026-13384

An Out-of-bounds Write vulnerability in WatchGuard Fireware OS wgagent process could allow an authenticated privileged user to execute arbitrary code…

Fix: 12.12.1 / 2026.2.1+
Fix from $1,950 2026-07-03
Fireware HIGH 7.2
CVE-2026-13053

An Out-of-bounds Write vulnerability in WatchGuard Fireware OS's CLI could allow an authenticated privileged user to execute arbitrary code via a spe…

Fix: 12.12.1 / 2026.2.1+
Fix from $1,950 2026-07-03
Fireware HIGH 7.2
CVE-2026-13050

An Out-of-bounds Write vulnerability in WatchGuard Fireware OS networkd process could allow an authenticated privileged user to execute arbitrary cod…

Fix: 11.12.4 / 12.5.19+
Fix from $1,950 2026-07-03
Chrome CRITICAL 9.6
CVE-2026-14420

Out of bounds read and write in Dawn in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentially perform a sandbox escape via a …

Fix: 150.0.7871.46+
Fix from $2,300 2026-07-01
Chrome HIGH 8.8
CVE-2026-14422

Out of bounds read and write in Tint in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentially perform out of bounds memory ac…

Fix: 150.0.7871.46+
Fix from $1,950 2026-07-01
Chrome CRITICAL 9.6
CVE-2026-14397

Out of bounds write in ANGLE in Google Chrome on Mac prior to 150.0.7871.46 allowed a remote attacker to potentially perform a sandbox escape via a c…

Fix: 150.0.7871.46+
Fix from $2,300 2026-07-01
Chrome HIGH 8.3
CVE-2026-14400

Out of bounds write in ANGLE in Google Chrome prior to 150.0.7871.46 allowed a remote attacker who had compromised the renderer process to potentiall…

Fix: 150.0.7871.46+
Fix from $1,950 2026-07-01
Chrome CRITICAL 9.6
CVE-2026-14392

Out of bounds write in Tint in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentially perform a sandbox escape via a crafted H…

Fix: 150.0.7871.46+
Fix from $2,300 2026-07-01
Chrome HIGH 8.8
CVE-2026-14395

Out of bounds write in V8 in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted …

Fix: 150.0.7871.46+
Fix from $1,950 2026-07-01
Chrome HIGH 8.8
CVE-2026-14385

Heap buffer overflow in ANGLE in Google Chrome on Mac prior to 150.0.7871.46 allowed a remote attacker to perform out of bounds memory access via a c…

Fix: 150.0.7871.46+
Fix from $1,950 2026-07-01
Unclassified HIGH 8.3
CVE-2026-58592

Ladybird contains a dangling-reference memory-safety flaw in its WebAssembly ESM-integration module loader. When a JavaScript function is imported in…

Mitigation only
Fix from $1,950 2026-07-01
Imagemagick MEDIUM 5.5
CVE-2026-55597

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-26, an incorrect handling of ar…

Fix: 7.1.2-26+
Fix from $1,600 2026-07-01
Imagemagick MEDIUM 5.9
CVE-2026-55577

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-51 and 7.1.2-26, a heap buffe…

Fix: 6.9.13-51 / 7.1.2-26+
Fix from $1,600 2026-07-01
Unclassified CRITICAL 9.0
CVE-2025-23350

NVIDIA ConnectX and BlueField contain a vulnerability in the command interface where a local user with virtual function (VF) access may cause a write…

Mitigation only
Fix from $2,300 2026-07-01
Unclassified CRITICAL 9.0
CVE-2025-23351

NVIDIA ConnectX and BlueField contain a vulnerability in the command interface where a local user with virtual function (VF) access may cause a write…

Mitigation only
Fix from $2,300 2026-07-01
Ultravnc HIGH 7.2
CVE-2026-7829

UltraVNC repeater through 1.8.2.2 contains a post-authentication out-of-bounds write in the allow/deny rule parser. In repeater/webgui/settings.c:225…

Fix: after 1.8.2.2
Fix from $1,950 2026-07-01
Ultravnc HIGH 7.6
CVE-2026-7831

UltraVNC viewer through 1.8.2.2 contains an off-by-one stack buffer overflow in the RFB ServerInit message handler. In vncviewer/ClientConnection.cpp…

Fix: after 1.8.2.2
Fix from $1,950 2026-07-01
Ultravnc HIGH 8.8
CVE-2026-7838

UltraVNC viewer through 1.8.2.2 contains an integer overflow leading to a heap buffer overflow in the RFB protocol failure-response parsing path. In …

Fix: after 1.8.2.2
Fix from $1,950 2026-07-01
Ultravnc CRITICAL 9.8
CVE-2026-7840

UltraVNC repeater through 1.8.2.2 contains a global buffer overflow in its embedded HTTP administration server. The functions wi_senderr() and wi_rep…

Fix: after 1.8.2.2
Fix from $2,300 2026-07-01
Unclassified MEDIUM 5.3
CVE-2026-20461

In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote denial of service, if a UE has connected t…

Mitigation only
Fix from $1,600 2026-07-01
Unclassified HIGH 7.5
CVE-2026-20458

In Modem, there is a possible memory corruption due to a missing bounds check. This could lead to remote escalation of privilege, if a UE has connect…

Mitigation only
Fix from $1,950 2026-07-01
Unclassified HIGH 7.8
CVE-2026-14191

An out-of-bounds heap write exists in the RAR5 recovery-volume (.rev) parser in WinRAR and UnRAR (RecVolumes5::ReadHeader in recvol5.cpp). The RecIte…

Mitigation only
Fix from $1,950 2026-07-01
Unclassified MEDIUM 6.3
CVE-2026-54900

Oj (Optimized JSON) is a JSON parser and Object marshaller packaged as a Ruby gem. In versions prior to 3.17.2, when in usual mode with create_id ena…

Mitigation only
Fix from $1,600 2026-07-01
Unclassified HIGH 7.5
CVE-2026-54592

Oj (Optimized JSON) is a JSON parser and Object marshaller packaged as a Ruby gem. In versions prior to 3.17.3, Oj::Doc#each_child, when invoked recu…

Mitigation only
Fix from $1,950 2026-07-01
Chrome CRITICAL 9.6
CVE-2026-14152

Out of bounds read and write in ANGLE in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to p…

Fix: 150.0.7871.47+
Fix from $2,300 2026-06-30
Chrome HIGH 8.8
CVE-2026-14087

Heap buffer overflow in WebNN in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process t…

Fix: 150.0.7871.47+
Fix from $1,950 2026-06-30
Chrome MEDIUM 5.7
CVE-2026-14063

Out of bounds read in Chromecast in Google Chrome prior to 150.0.7871.47 allowed a local attacker to obtain potentially sensitive information from pr…

Fix: 150.0.7871.46+
Fix from $1,600 2026-06-30
Chrome MEDIUM 6.5
CVE-2026-13873

Out of bounds read in Layout in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to obtain potentially sensitive information from proce…

Fix: 150.0.7871.46+
Fix from $1,600 2026-06-30