Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
CRITICAL 9.8 CVE-2016-20049 JAD 1.5.8e-1kali1 and prior contains a stack-based buffer overflow vulnerability that allows attackers to execute arbitrary code by supplying oversiz… Jad Java Decompiler Mitigation only Fix from $2,3002026-03-28 CRITICAL 9.8 CVE-2017-20225 TiEmu 2.08 and prior contains a stack-based buffer overflow vulnerability that allows attackers to execute arbitrary code by exploiting inadequate bo… Tiemu after 2.0.8 Fix from $2,3002026-03-28 HIGH 8.4 CVE-2017-20226 Mapscrn 2.0.3 contains a stack-based buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying an oversized in… No fix yet Fix from $1,9502026-03-28 CRITICAL 9.8 CVE-2017-20227 JAD Java Decompiler 1.5.8e-1kali1 and prior contains a stack-based buffer overflow vulnerability that allows attackers to execute arbitrary code by s… Jad Java Decompiler Mitigation only Fix from $2,3002026-03-28 HIGH 8.4 CVE-2016-20042 TRN 3.6-23 contains a stack buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying an oversized argument to… No fix yet Fix from $1,9502026-03-28 HIGH 7.8 CVE-2016-20043 NRSS RSS Reader 0.3.9-1 contains a stack buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying an oversize… Nrss after 0.3.9-1 Fix from $1,9502026-03-28 HIGH 7.8 CVE-2016-20044 PInfo 0.6.9-5.1 contains a local buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying an oversized argume… Pinfo after 0.6.9-5.1 Fix from $1,9502026-03-28 HIGH 7.8 CVE-2016-20045 HNB Organizer 1.9.18-10 contains a local buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying an oversize… Hierarchical Notebook after 1.9.18-10 Fix from $1,9502026-03-28 HIGH 8.4 CVE-2016-20046 zFTP Client 20061220+dfsg3-4.1 contains a buffer overflow vulnerability in the NAME parameter handling of FTP connections that allows local attackers… No fix yet Fix from $1,9502026-03-28 HIGH 8.4 CVE-2016-20038 yTree 1.94-1.1 contains a stack-based buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying an excessively… No fix yet Fix from $1,9502026-03-28 HIGH 8.4 CVE-2016-20039 Multi Emulator Super System 0.154-3.1 contains a buffer overflow vulnerability in the gamma parameter handling that allows local attackers to crash t… No fix yet Fix from $1,9502026-03-28 HIGH 8.4 CVE-2016-20037 xwpe 1.5.30a-2.1 and prior contains a stack-based buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying ov… No fix yet Fix from $1,9502026-03-28 HIGH 8.8 CVE-2026-4974 A flaw has been found in Tenda AC7 15.03.06.44. Affected by this issue is the function fromSetSysTime of the file /goform/SetSysTimeCfg of the compon… Ac7 Firmware No fix yet Fix from $1,9502026-03-27 HIGH 8.8 CVE-2026-4975 A vulnerability has been found in Tenda AC15 15.03.05.19. This affects the function formSetCfm of the file /goform/setcfm of the component POST Reque… Ac15 Firmware No fix yet Fix from $1,9502026-03-27 HIGH 8.8 CVE-2026-4961 A vulnerability was identified in Tenda AC6 15.03.05.16. Affected by this vulnerability is the function formQuickIndex of the file /goform/QuickIndex… Ac6 Firmware No fix yet Fix from $1,9502026-03-27 HIGH 8.8 CVE-2026-4960 A vulnerability was determined in Tenda AC6 15.03.05.16. Affected is the function fromWizardHandle of the file /goform/WizardHandle of the component … Ac6 Firmware No fix yet Fix from $1,9502026-03-27 MEDIUM 6.5 CVE-2026-27879 A resample query can be used to trigger out-of-memory crashes in Grafana. Grafana 8.0.0 / 12.0.0+ Fix from $1,6002026-03-27 HIGH 7.5 CVE-2026-27880 The OpenFeature feature toggle evaluation endpoint reads unbounded values into memory, which can cause out-of-memory crashes. Grafana 12.1.0 / 12.2.0+ Fix from $1,9502026-03-27 HIGH 8.8 CVE-2026-4906 A vulnerability was determined in Tenda AC5 15.03.06.47. The affected element is the function decodePwd of the file /goform/WizardHandle of the compo… Ac5 Firmware No fix yet Fix from $1,9502026-03-27 HIGH 7.5 CVE-2026-33721 MapServer is a system for developing web-based GIS applications. Starting in version 4.2 and prior to version 8.6.1, a heap-buffer-overflow write in … Mapserver 8.6.1+ Fix from $1,9502026-03-27 HIGH 8.8 CVE-2026-4904 A vulnerability has been found in Tenda AC5 15.03.06.47. This issue affects the function formSetCfm of the file /goform/setcfm of the component POST … Ac5 Firmware No fix yet Fix from $1,9502026-03-27 HIGH 8.8 CVE-2026-4905 A vulnerability was found in Tenda AC5 15.03.06.47. Impacted is the function formWifiWpsOOB of the file /goform/WifiWpsOOB of the component POST Requ… Ac5 Firmware No fix yet Fix from $1,9502026-03-27 HIGH 8.8 CVE-2026-4902 A vulnerability was detected in Tenda AC5 15.03.06.47. This affects the function fromAddressNat of the file /goform/addressNat of the component POST … Ac5 Firmware No fix yet Fix from $1,9502026-03-26 HIGH 8.8 CVE-2026-4903EPSS 5% A flaw has been found in Tenda AC5 15.03.06.47. This vulnerability affects the function formQuickIndex of the file /goform/QuickIndex of the componen… Ac5 Firmware No fix yet Fix from $1,9502026-03-26 MEDIUM 5.5 CVE-2026-33535 ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-18 and 6.9.13-43, an out-of-bounds writ… Imagemagick 6.9.13-43 / 7.1.2-18+ Fix from $1,6002026-03-26 HIGH 7.8 CVE-2026-33491 Zen C is a systems programming language that compiles to human-readable GNU C/C11. Prior to version 0.4.4, a stack-based buffer overflow vulnerabilit… Zen C 0.4.4+ Fix from $1,9502026-03-26 HIGH 7.6 CVE-2026-33636 LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. In versio… Libpng 1.6.56+ Fix from $1,9502026-03-26 CRITICAL 9.1 CVE-2026-27815 EVerest is an EV charging software stack. Prior to versions to 2026.02.0, ISO15118_chargerImpl::handle_session_setup copies a variable-length payment… Everest 2026.02.0+ Fix from $2,3002026-03-26 CRITICAL 9.1 CVE-2026-27816 EVerest is an EV charging software stack. Prior to versions to 2026.02.0, ISO15118_chargerImpl::handle_update_energy_transfer_modes copies a variable… Everest 2026.02.0+ Fix from $2,3002026-03-26 MEDIUM 5.9 CVE-2026-26073 EVerest is an EV charging software stack. Versions prior to 2026.02.0 have a data race leading to possible `std::queue`/`std::deque` corruption. The … Everest 2026.02.0+ Fix from $1,6002026-03-26