Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
MEDIUM 5.5
CVE-2026-20478
In Audio HAL, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local denial of service with User execution p…
No fix yet
MEDIUM 6.1
CVE-2026-20466
In sec boot, there is a possible escalation of privilege due to a heap buffer overflow. This could lead to local escalation of privilege, if an attac…
No fix yet
MEDIUM 6.0
CVE-2026-20468
In apusys, there is a possible escalation of privilege due to a confused deputy. This could lead to local escalation of privilege if a malicious acto…
No fix yet
MEDIUM 6.5
CVE-2026-20464
In hevc decoder, there is a possible out of bounds write due to an integer overflow. This could lead to remote escalation of privilege if a malicious…
No fix yet
HIGH 8.6
CVE-2026-10848
The OCPP 1.6 client in subsys/net/lib/ocpp parsed inbound WAMP RPC frames in parse_rpc_msg() (subsys/net/lib/ocpp/ocpp_j.c) using a hand-rolled helpe…
Zephyr
4.5.0+
CRITICAL 9.6
CVE-2026-68579
FreeRDP before 3.30.0 (<= 3.29.0) contains a heap-based buffer overflow in the Windows clipboard client's CliprdrStream_Read function (client/Windows…
No fix yet
HIGH 7.8
CVE-2026-34641
Premiere Pro is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Ex…
Premiere
25.6.6 / 26.3+
HIGH 7.1
CVE-2026-54715
GoAccess is a real-time web log analyzer and interactive viewer that runs in a terminal in *nix systems or through the browser. In version 1.10.2, pa…
No fix yet
HIGH 7.5
CVE-2026-11771
OpenVPN version 2.1.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows attackers via an off-by-one buffer write in the NTLM proxy authentication to…
Openvpn
2.6.21 / 2.7.5+
CRITICAL 9.3
CVE-2026-47876
VMware ESX contains an out-of-bounds write vulnerability in the VMXNET3 virtual network adapter. A malicious actor with local administrative privileg…
No fix yet
CRITICAL 9.8
CVE-2026-17544
Attacker-provided inputs to bccomp() could lead to an out-of-bounds write with stack and heap corruption in PHP versions from 8.4.* before 8.4.24 and…
PHP
8.4.24 / 8.5.9+
CRITICAL 9.6
CVE-2026-17727
Out of bounds write in WebGL in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandbox escape via…
Chrome
151.0.7922.72+
CRITICAL 9.6
CVE-2026-17721
Out of bounds write in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandbox escape via a crafted …
Chrome
151.0.7922.72+
CRITICAL 9.6
CVE-2026-17691
Out of bounds write in ANGLE in Google Chrome on Windows prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandbox escape via…
Chrome
151.0.7922.72+
CRITICAL 9.6
CVE-2026-17675
Out of bounds write in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentiall…
Chrome
151.0.7922.72+
MEDIUM 5.0
CVE-2026-62363
ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to 7.1.2-27, a heap buffer over-writ…
Imagemagick
7.1.2-27+
HIGH 8.8
CVE-2026-18022
Integer wraparound in IVFFlat index build in pgvector before 0.8.6 allows a database user to write data out-of-bounds, which could lead to arbitrary …
No fix yet
HIGH 8.4
CVE-2026-12927
CWE-787 Out-of-bounds write vulnerability exists that could cause loss of data or potentially risk arbitrary code execution when a malicious CGF file…
No fix yet
HIGH 7.8
CVE-2026-18220
An out-of-bounds write vulnerability was found in the BFD library's DLX ELF backend (bfd/elf32-dlx.c) in GNU binutils. The dlx_rtype_to_howto() funct…
No fix yet
HIGH 8.2
CVE-2026-58188
Several Apache Traffic Server experimental plugins have memory-safety and limit-bypass errors.
This issue affects Apache Traffic Server: from 8.0.0 …
Traffic Server
9.2.15 / 10.1.4+
HIGH 7.5
CVE-2026-58184
The Apache Traffic Server header_rewrite plugin can crash or corrupt memory during cookie operations and CIDR condition matching.
This issue affects…
Traffic Server
9.2.15 / 10.1.4+
HIGH 7.5
CVE-2026-58187
The Apache Traffic Server multiplexer plugin overruns its chunk-decode buffer on upstream input, enabling denial of service.
This issue affects Apac…
Traffic Server
9.2.15 / 10.1.4+
CRITICAL 9.8
CVE-2026-58177
The Apache Traffic Server Cripts framework has out-of-bounds writes, path traversal, and use-after-free errors.
This issue affects Apache Traffic Se…
Traffic Server
10.1.4+
HIGH 8.9
CVE-2026-58154
Apache Traffic Server can write out of bounds or overflow integers while parsing MIME and HTTP headers.
This issue affects Apache Traffic Server: fr…
Traffic Server
9.2.15 / 10.1.4+
MEDIUM 6.5
CVE-2026-35226
An out‑of‑bounds write vulnerability in the CODESYS PROFINET Controller allows an unauthenticated attacker on the same network segment to send malfor…
No fix yet
HIGH 7.5
CVE-2026-15057
IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 is vulnerable to a denial of service due to uncontrolled heap allocation.
Websphere Application Server
26.0.0.8+
HIGH 7.8
CVE-2026-48392
Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploita…
Bridge
15.1.7 / 16.0.6+
HIGH 7.8
CVE-2026-48393
Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploita…
Bridge
15.1.7 / 16.0.6+
HIGH 7.8
CVE-2026-48394
Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploita…
Bridge
15.1.7 / 16.0.6+
HIGH 7.8
CVE-2026-48372
Format Plugins is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current …
Format Plugins
2026.07+