Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
HIGH 7.8 CVE-2026-26108 Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. 365 Apps 16.0.10417.20102+ Fix from $1,9502026-03-10 HIGH 7.8 CVE-2026-25569 A vulnerability has been identified in SICAM SIAPP SDK (All versions < V2.1.7). An out-of-bounds write vulnerability exists in SICAM SIAPP SDK. This … Sicam Siapp Sdk 2.17+ Fix from $1,9502026-03-10 MEDIUM 6.6 CVE-2026-24640 A Stack-based Buffer Overflow vulnerability [CWE-121] vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.2, FortiWeb 7.6.0 through 7.6.6, FortiWeb … Fortiweb 7.6.7 / 8.0.3+ Fix from $1,6002026-03-10 HIGH 7.8 CVE-2026-23665 Heap-based buffer overflow in Azure Linux Virtual Machines allows an authorized attacker to elevate privileges locally. Linux Diagnostic Extension 2.1.24+ Fix from $1,9502026-03-10 HIGH 8.1 CVE-2025-54820 A Stack-based Buffer Overflow vulnerability [CWE-121] vulnerability in Fortinet FortiManager 7.4.0 through 7.4.2, FortiManager 7.2.0 through 7.2.10, … Fortimanager 7.2.11 / 7.4.3+ Fix from $1,9502026-03-10 HIGH 7.8 CVE-2026-30929 ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, MagnifyImage… Imagemagick 6.9.13-41 / 7.1.2-16+ Fix from $1,9502026-03-10 HIGH 8.1 CVE-2026-28693 ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, an integer o… Imagemagick 6.9.13-41 / 7.1.2-16+ Fix from $1,9502026-03-10 HIGH 7.5 CVE-2026-3038 The rtsock_msg_buffer() function serializes routing information into a buffer. As a part of this, it copies sockaddr structures into a sockaddr_stor… FreeBSD Mitigation only Fix from $1,9502026-03-09 HIGH 8.8 CVE-2025-41766 A low-privileged remote attacker can trigger a stack-based buffer overflow via a crafted HTTP POST request using the ubr-network method resulting in … Universal Bacnet Router Firmware 6.0.1.0+ Fix from $1,9502026-03-09 CRITICAL 9.8 CVE-2026-3823 EHG2408 series switch developed by Atop Technologies has a Stack-based Buffer Overflow vulnerability, allowing unauthenticated remote attackers to co… Atop Ehg2408 Firmware 3.36+ Fix from $2,3002026-03-09 CRITICAL 9.8 CVE-2026-3630 Delta Electronics COMMGR2 has Stack-based Buffer Overflow vulnerability. Commgr2 2.11.1+ Fix from $2,3002026-03-09 CRITICAL 9.8 CVE-2026-3703 A flaw has been found in Wavlink NU516U1 251208. This affects the function sub_401A10 of the file /cgi-bin/login.cgi. Executing a manipulation of the… Wl Nu516u1 Firmware Mitigation only Fix from $2,3002026-03-08 MEDIUM 6.2 CVE-2018-25198 eToolz 3.4.8.0 contains a denial of service vulnerability that allows local attackers to crash the application by supplying oversized input buffers. … No fix yet Fix from $1,6002026-03-06 MEDIUM 5.5 CVE-2026-3606 A vulnerability has been found in Ettercap 0.8.4-Garofalo. Affected by this vulnerability is the function add_data_segment of the file src/ettercap/u… Ettercap No fix yet Fix from $1,6002026-03-05 HIGH 7.5 CVE-2026-28552 Out-of-bounds write vulnerability in the IMS module. Impact: Successful exploitation of this vulnerability may affect availability. Emui No fix yet Fix from $1,9502026-03-05 CRITICAL 9.8 CVE-2026-1678 dns_unpack_name() caches the buffer tailroom once and reuses it while appending DNS labels. As the buffer grows, the cached size becomes incorrect, a… Zephyr after 4.3.0 Fix from $2,3002026-03-05 HIGH 8.8 CVE-2026-3544 Heap buffer overflow in WebCodecs in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to perform an out of bounds memory write via a c… Chrome 145.0.7632.159 / 145.0.7632.160+ Fix from $1,9502026-03-04 HIGH 8.8 CVE-2026-3537 Object lifecycle issue in PowerVR in Google Chrome on Android prior to 145.0.7632.159 allowed a remote attacker to potentially exploit heap corruptio… Chrome 145.0.7632.159+ Fix from $1,9502026-03-04 MEDIUM 6.5 CVE-2026-20023 A vulnerability in the OSPF protocol of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FT… Secure Firewall Threat Defense Mitigation only Fix from $1,6002026-03-04 MEDIUM 5.8 CVE-2026-20067 Multiple Cisco products are affected by a vulnerability in the Snort 3 detection engine that could allow an unauthenticated, remote attacker to cause… Snort 3.9.5.0+ Fix from $1,6002026-03-04 HIGH 7.8 CVE-2026-23233 In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid mapping wrong physical block for swapfile Xiaolong Guo repor… Linux Kernel 6.6.127 / 6.12.74+ Fix from $1,9502026-03-04 HIGH 7.8 CVE-2026-3094 Delta Electronics CNCSoft-G2 lacks proper validation of the user-supplied file. If a user opens a malicious file, an attacker can leverage this vulne… Cncsoft G2 2.1.0.39+ Fix from $1,9502026-03-04 HIGH 7.8 CVE-2026-27622 OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. In C… Openexr 3.2.6 / 3.3.8+ Fix from $1,9502026-03-03 CRITICAL 9.8 CVE-2025-70234 Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetQoS. Dir 513 Firmware Mitigation only Fix from $2,3002026-03-03 CRITICAL 9.8 CVE-2025-70239 Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetWAN_Wizard55. Dir 513 Firmware Mitigation only Fix from $2,3002026-03-03 CRITICAL 9.8 CVE-2025-70240 Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetWAN_Wizard51. Dir 513 Firmware Mitigation only Fix from $2,3002026-03-03 HIGH 7.8 CVE-2026-29022 dr_libs dr_wav.h version 0.14.4 and earlier (fixed in commit 8a7258c) contain a heap buffer overflow vulnerability in the drwav__read_smpl_to_metadat… Dr Libs after 0.14.4 Fix from $1,9502026-03-03 CRITICAL 9.1 CVE-2025-66945 A path traversal vulnerability exists in the ZIP extraction API of Zdir Pro 4.x. When a crafted ZIP archive is processed by the backend at /api/extra… Zdir after 4.6.2 Fix from $2,3002026-03-03 CRITICAL 9.8 CVE-2025-70236 Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetDomainFilter. Dir 513 Firmware Mitigation only Fix from $2,3002026-03-03 CRITICAL 9.8 CVE-2025-70237 Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetPortTr. Dir 513 Firmware Mitigation only Fix from $2,3002026-03-03