Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
HIGH 8.8 CVE-2024-23957 Autel MaxiCharger AC Elite Business C50 DLB_HostHeartBeat Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows … Maxicharger Ac Elite Business C50 Firmware Mitigation only Fix from $1,9502024-09-28 HIGH 7.8 CVE-2024-46853 In the Linux kernel, the following vulnerability has been resolved: spi: nxp-fspi: fix the KASAN report out-of-bounds bug Change the memcpy length … Debian Linux 5.4.285 / 5.10.227+ Fix from $1,9502024-09-27 HIGH 7.5 CVE-2024-47293 Out-of-bounds write vulnerability in the HAL-WIFI module Impact: Successful exploitation of this vulnerability may affect availability. Emui No fix yet Fix from $1,9502024-09-27 MEDIUM 6.7 CVE-2022-49039 Out-of-bounds write vulnerability in backup task management functionality in Synology Drive Client before 3.4.0-15721 allows local users with adminis… Drive Client 3.4.0-15721+ Fix from $1,6002024-09-26 MEDIUM 5.5 CVE-2024-46488 sqlite-vec v0.1.1 was discovered to contain a heap buffer overflow via the npy_token_next function. This vulnerability allows attackers to cause a De… Sqlite Vec No fix yet Fix from $1,6002024-09-25 MEDIUM 6.1 CVE-2024-20496 A vulnerability in the UDP packet validation code of Cisco SD-WAN vEdge Software could allow an unauthenticated, adjacent attacker to cause a denial … Mitigation only Fix from $1,6002024-09-25 MEDIUM 6.5 CVE-2024-20508 A vulnerability in Cisco Unified Threat Defense (UTD) Snort Intrusion Prevention System (IPS) Engine for Cisco IOS XE Software could allow an unauthe… Unified Threat Defense Snort Intrusion Prevention System Engine Mitigation only Fix from $1,6002024-09-25 MEDIUM 6.5 CVE-2024-41445 Library MDF (mdflib) v2.1 is vulnerable to a heap-based buffer overread via a crafted mdf4 file is parsed using the ReadData function Mdf Library Mitigation only Fix from $1,6002024-09-25 HIGH 7.5 CVE-2024-20433 A vulnerability in the Resource Reservation Protocol (RSVP) feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, r… iOS Mitigation only Fix from $1,9502024-09-25 HIGH 8.8 CVE-2024-9121 Inappropriate implementation in V8 in Google Chrome prior to 129.0.6668.70 allowed a remote attacker to potentially perform out of bounds memory acce… Chrome 129.0.6668.70+ Fix from $1,9502024-09-25 CRITICAL 9.6 CVE-2024-7024 Inappropriate implementation in V8 in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to potentially perform a sandbox escape via a cr… Chrome 126.0.6478.54+ Fix from $2,3002024-09-23 HIGH 7.8 CVE-2024-7018 Heap buffer overflow in PDF in Google Chrome prior to 124.0.6367.78 allowed a remote attacker to potentially exploit heap corruption via a crafted PD… Chrome 124.0.6367.78+ Fix from $1,9502024-09-23 CRITICAL 9.8 CVE-2024-46652 Tenda AC8v4 V16.03.34.06 has a stack overflow vulnerability in the fromAdvSetMacMtuWan function. Ac8 Firmware No fix yet Fix from $2,3002024-09-20 CRITICAL 9.8 CVE-2024-9043 Secure Email Gateway from Cellopoint has Buffer Overflow Vulnerability in authentication process. Remote unauthenticated attackers can send crafted p… Secure Email Gateway after 4.5.0 Fix from $2,3002024-09-20 HIGH 8.8 CVE-2024-43496 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Edge Chromium 129.0.2792.52+ Fix from $1,9502024-09-19 CRITICAL 9.8 CVE-2024-31570 libfreeimage in FreeImage 3.4.0 through 3.18.0 has a stack-based buffer overflow in the PluginXPM.cpp Load function via an XPM file. Freeimage after 3.18.0 Fix from $2,3002024-09-19 MEDIUM 5.5 CVE-2024-45769 A vulnerability was found in Performance Co-Pilot (PCP).  This flaw allows an attacker to send specially crafted data to the system, which could caus… No fix yet Fix from $1,6002024-09-19 HIGH 7.5 CVE-2024-7254 Any project that parses untrusted Protocol Buffers data containing an arbitrary number of nested groups / series of SGROUP tags can corrupted by exce… Protobuf 3.25.5 / 4.27.5+ Fix from $1,9502024-09-19 CRITICAL 9.8 CVE-2024-34026 A stack-based buffer overflow vulnerability exists in the OpenPLC Runtime EtherNet/IP parser functionality of OpenPLC _v3 b4702061dc14d1024856f71b454… Openplc V3 Firmware No fix yet Fix from $2,3002024-09-18 HIGH 7.1 CVE-2024-46774 In the Linux kernel, the following vulnerability has been resolved: powerpc/rtas: Prevent Spectre v1 gadget construction in sys_rtas() Smatch warns… Linux Kernel 6.10.10+ Fix from $1,9502024-09-18 HIGH 7.8 CVE-2024-46766 In the Linux kernel, the following vulnerability has been resolved: ice: move netif_queue_set_napi to rtnl-protected sections Currently, netif_queu… Linux Kernel 6.10.10+ Fix from $1,9502024-09-18 HIGH 7.8 CVE-2024-46725 In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix out-of-bounds write warning Check the ring type value to fix th… Debian Linux 5.10.226 / 5.15.167+ Fix from $1,9502024-09-18 HIGH 7.8 CVE-2024-46729 In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix incorrect size calculation for loop [WHY] fe_clk_en has si… Linux Kernel 6.10.9+ Fix from $1,9502024-09-18 MEDIUM 6.5 CVE-2022-39068 There is a buffer overflow vulnerability in ZTE MF296R. Due to insufficient validation of the SMS parameter length, an authenticated attacker could u… Mf296r Firmware Mitigation only Fix from $1,6002024-09-18 HIGH 8.8 CVE-2024-8905 Inappropriate implementation in V8 in Google Chrome prior to 129.0.6668.58 allowed a remote attacker to potentially exploit stack corruption via a cr… Chrome 129.0.6668.58+ Fix from $1,9502024-09-17 HIGH 7.5 CVE-2024-8946 A vulnerability was found in MicroPython 1.23.0. It has been classified as critical. Affected is the function mp_vfs_umount of the file extmod/vfs.c … Micropython Patch available Fix from $1,9502024-09-17 HIGH 7.5 CVE-2024-8948 A vulnerability was found in MicroPython 1.23.0. It has been rated as critical. Affected by this issue is the function mpz_as_bytes of the file py/ob… Micropython Patch available Fix from $1,9502024-09-17 CRITICAL 9.8 CVE-2024-38812 KEVEPSS 55% The vCenter Server contains a heap-overflow vulnerability in the implementation of the DCERPC protocol. A malicious actor with network access to vCen… Cloud Foundation 5.2+ Fix from $2,3002024-09-17 MEDIUM 5.5 CVE-2024-44178 This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7, macOS Ventura 13.7. An app… macOS 13.7 / 14.7+ Fix from $1,6002024-09-17 MEDIUM 5.5 CVE-2024-40841 An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7. Processing a ma… macOS 14.7+ Fix from $1,6002024-09-17