Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
MEDIUM 6.6 CVE-2026-19696 Ixia IxVeriWave and Vector Informatik BLF file parser crashes in 4.6.0 to 4.6.7 allows denial of service on Windows No fix yet Fix from $4,0002026-08-13 MEDIUM 5.2 CVE-2026-0297 A buffer overflow vulnerability exists in the Palo Alto Networks GlobalProtect™ app that enables a man-in-the-middle (MitM) attacker or a rogue gatew… No fix yet Fix from $4,0002026-08-13 MEDIUM 6.5 CVE-2026-18888 The MongoDB BI Connector ODBC Driver converts floating point column values into text without checking that the result fits within the destination buf… No fix yet Fix from $4,0002026-08-12 MEDIUM 5.9 CVE-2026-19642 An out-of-bounds write issue in the Base64 decoder in Amazon aws-sdk-cpp before 1.11.862 might allow a remote authenticated user to cause a crash or … Aws Software Development Kit No fix yet Fix from $4,0002026-08-12 CRITICAL 9.8 CVE-2026-17083 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to execute arbitrary code due to a stack-based buffer overflow. I No fix yet Fix from $5,7502026-08-12 CRITICAL 9.8 CVE-2026-17218 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to execute arbitrary code due to an out-of-bounds write. I after 7.6 Fix from $5,7502026-08-12 HIGH 7.6 CVE-2026-16907 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary code due to improper bounds checking. I after 7.6 Fix from $4,9002026-08-12 MEDIUM 6.3 CVE-2026-12235 The Linkable Loadable Extensions (llext) subsystem mis-handles PLT/RELA relocation entries when linking a relocatable (partially-linked) ELF extensio… No fix yet Fix from $4,0002026-08-12 MEDIUM 6.5 CVE-2026-29035 CivetWeb (commit 4a4f0c95) contains a heap and stack buffer overflow vulnerability in the read_websocket() function that allows unauthenticated remot… No fix yet Fix from $4,0002026-08-11 HIGH 7.6 CVE-2026-18693 An issue in MongoDB Server's handling of timeseries collections could allow an authenticated user with write privileges to cause an internal data str… No fix yet Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-48407 Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current use… Lightroom 15.5+ Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-48408 Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current use… Lightroom 15.5+ Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-48409 Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current use… Lightroom 15.5+ Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-48410 Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current use… Lightroom 15.5+ Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-48404 Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current use… Lightroom 15.5+ Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-48405 Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current use… Lightroom 15.5+ Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-48406 Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current use… Lightroom 15.5+ Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-70354 Out-of-bounds write in .NET allows an unauthorized attacker to execute code locally. Visual Studio 2022 No fix yet Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-68806 Out-of-bounds write in Microsoft Office Excel allows an unauthorized attacker to execute code locally. 365 Apps No fix yet Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-62871 Out-of-bounds write in .NET allows an unauthorized attacker to execute code locally. .net 8.0.30 / 9.0.19+ Fix from $4,9002026-08-11 HIGH 8.8 CVE-2026-62817 Out-of-bounds write in Windows DNS allows an unauthorized attacker to execute code over an adjacent network. Windows 10 1809 No fix yet Fix from $4,9002026-08-11 MEDIUM 6.9 CVE-2026-20886 Out-of-bounds write for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 2: Device Drivers may allow a denial of service. Network … No fix yet Fix from $4,0002026-08-11 HIGH 7.1 CVE-2026-20745 Out-of-bounds write for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 2: Device Drivers may allow a denial of service. Network … No fix yet Fix from $4,9002026-08-11 HIGH 8.5 CVE-2026-73072 Vim is an open source, command line text editor. Prior to 9.2.0846, set_sofo() in src/spellfile.c reuses sl_sal_first[] without resetting values left… No fix yet Fix from $4,9002026-08-11 HIGH 8.3 CVE-2026-53413 Missing bounds check in the annotator function of Zoom Clients allows buffer over-write, which may allow a meeting participant to achieve remote code… No fix yet Fix from $4,9002026-08-11 MEDIUM 6.8 CVE-2026-73066 Tesseract is an open source OCR engine. Prior to 5.5.3, a crafted .traineddata LSTM model component loaded through Tesseract's deserializer can cause… No fix yet Fix from $4,0002026-08-11 HIGH 7.8 CVE-2026-50059 A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versions < V226.0 Update 7). The a… No fix yet Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-50064 A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versions < V226.0 Update 7). The a… No fix yet Fix from $4,9002026-08-11 MEDIUM 5.2 CVE-2026-12052 The USB device-side CDC NCM class control-to-host handler usbd_cdc_ncm_cth in subsys/usb/device_next/class/usbd_cdc_ncm.c builds a fixed-size respons… No fix yet Fix from $4,0002026-08-11 CRITICAL 9.8 CVE-2026-34265 SAP NetWeaver Application Server ABAP allows an unauthenticated attacker to exploit logical errors in DIAG protocol parsing, resulting in memory corr… No fix yet Fix from $5,7502026-08-11