Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
CRITICAL 9.8 CVE-2025-22457 KEVEPSS 100% A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.6, Ivanti Policy Secure before version 22.7R1.4, and Ivanti ZTA Gateways… Connect Secure 22.7 / 22.8+ Fix from $2,3002025-04-03 HIGH 8.8 CVE-2025-3161 A vulnerability was found in Tenda AC10 16.03.10.13 and classified as critical. This issue affects the function ShutdownSetAdd of the file /goform/Sh… Ac10 Firmware Mitigation only Fix from $1,9502025-04-03 CRITICAL 9.8 CVE-2025-30356 CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communication… Cryptolib 1.4.0+ Fix from $2,3002025-04-01 HIGH 7.8 CVE-2025-21966 In the Linux kernel, the following vulnerability has been resolved: dm-flakey: Fix memory corruption in optional corrupt_bio_byte feature Fix memor… Linux Kernel 6.6.84 / 6.12.20+ Fix from $1,9502025-04-01 HIGH 7.8 CVE-2025-21927 In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: fix potential memory corruption in nvme_tcp_recv_pdu() nvme_tcp_recv_… Linux Kernel 6.12.19 / 6.13.7+ Fix from $1,9502025-04-01 HIGH 7.8 CVE-2025-21919 In the Linux kernel, the following vulnerability has been resolved: sched/fair: Fix potential memory corruption in child_cfs_rq_on_list child_cfs_r… Linux Kernel 5.15.179 / 6.1.131+ Fix from $1,9502025-04-01 HIGH 7.8 CVE-2025-21914 In the Linux kernel, the following vulnerability has been resolved: slimbus: messaging: Free transaction ID in delayed interrupt scenario In case o… Linux Kernel 5.4.291 / 5.10.235+ Fix from $1,9502025-04-01 HIGH 8.1 CVE-2025-3034 Memory safety bugs present in Firefox 136 and Thunderbird 136. Some of these bugs showed evidence of memory corruption and we presume that with enoug… Firefox 137.0+ Fix from $1,9502025-04-01 HIGH 7.8 CVE-2025-1660 A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force a Memory Corruption vulnerability. A malicious actor can leverage… Navisworks 2025.5+ Fix from $1,9502025-04-01 HIGH 7.8 CVE-2025-30464 An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventu… macOS 13.7.5 / 14.7.5+ Fix from $1,9502025-03-31 MEDIUM 5.5 CVE-2025-30441 This issue was addressed through improved state management. This issue is fixed in Xcode 16.3. An app may be able to overwrite arbitrary files. Xcode 16.3+ Fix from $1,6002025-03-31 MEDIUM 6.5 CVE-2025-30446 A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5.… macOS 13.7.5 / 14.7.5+ Fix from $1,6002025-03-31 CRITICAL 9.8 CVE-2025-24273 An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventu… macOS 13.7.5 / 14.7.5+ Fix from $2,3002025-03-31 HIGH 7.1 CVE-2025-24257 An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4, visio… Ipados 2.4 / 15.4+ Fix from $1,9502025-03-31 CRITICAL 9.8 CVE-2025-24231 The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. An app may be abl… macOS 13.7.5 / 14.7.5+ Fix from $2,3002025-03-31 MEDIUM 5.3 CVE-2025-3017 A vulnerability, which was classified as critical, has been found in TA-Lib up to 0.6.4. This issue affects the function setInputBuffer of the file s… Patch available Fix from $1,6002025-03-31 CRITICAL 9.4 CVE-2025-1268 Out-of-bounds vulnerability in EMF Recode processing of Generic Plus PCL6 Printer Driver / Generic Plus UFR II Printer Driver / Generic Plus LIPS4 Pr… Mitigation only Fix from $2,3002025-03-31 MEDIUM 5.5 CVE-2025-2924 A vulnerability, which was classified as problematic, was found in HDF5 up to 1.14.6. This affects the function H5HL__fl_deserialize of the file src/… Hdf5 after 1.14.6 Fix from $1,6002025-03-28 MEDIUM 5.5 CVE-2025-2915 A vulnerability classified as problematic was found in HDF5 up to 1.14.6. This vulnerability affects the function H5F__accum_free of the file src/H5F… Hdf5 after 1.14.6 Fix from $1,6002025-03-28 MEDIUM 5.3 CVE-2025-2912 A vulnerability was found in HDF5 up to 1.14.6. It has been declared as problematic. Affected by this vulnerability is the function H5O_msg_flush of … Hdf5 2.0.0+ Fix from $1,6002025-03-28 HIGH 7.8 CVE-2023-52980 In the Linux kernel, the following vulnerability has been resolved: block: ublk: extending queue_size to fix overflow When validating drafted SPDK … Linux Kernel 6.1.11+ Fix from $1,9502025-03-27 MEDIUM 5.5 CVE-2025-2849 A vulnerability, which was classified as problematic, was found in UPX up to 5.0.0. Affected is the function PackLinuxElf64::un_DT_INIT of the file s… Upx after 5.0.0 Fix from $1,6002025-03-27 HIGH 7.8 CVE-2025-21869 In the Linux kernel, the following vulnerability has been resolved: powerpc/code-patching: Disable KASAN report during patching via temporary mm Er… Linux Kernel 6.12.17 / 6.13.5+ Fix from $1,9502025-03-27 HIGH 7.5 CVE-2025-25372 NASA cFS (Core Flight System) Aquila is vulnerable to segmentation fault via sending a malicious telecommand to the Memory Management Module. Core Flight System No fix yet Fix from $1,9502025-03-25 CRITICAL 9.1 CVE-2025-30216 CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communication… Cryptolib 1.4.0+ Fix from $2,3002025-03-25 HIGH 7.8 CVE-2025-2531 Luxion KeyShot DAE File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute… Keyshot 2025.1+ Fix from $1,9502025-03-25 HIGH 8.8 CVE-2025-2750 A vulnerability, which was classified as critical, was found in Open Asset Import Library Assimp 5.4.3. This affects the function Assimp::CSMImporter… Assimp No fix yet Fix from $1,9502025-03-25 HIGH 8.8 CVE-2021-26105 A stack-based buffer overflow vulnerability (CWE-121) in the profile parser of FortiSandbox version 3.2.2 and below, version 3.1.4 and below may allo… Fortisandbox 3.2.3+ Fix from $1,9502025-03-24 CRITICAL 9.8 CVE-2025-2621 A vulnerability was found in D-Link DAP-1620 1.03 and classified as critical. This issue affects the function check_dws_cookie of the file /storage. … Dap 1620 Firmware No fix yet Fix from $2,3002025-03-22 CRITICAL 9.8 CVE-2025-2620EPSS 9% A vulnerability has been found in D-Link DAP-1620 1.03 and classified as critical. This vulnerability affects the function mod_graph_auth_uri_handler… Dap 1620 Firmware No fix yet Fix from $2,3002025-03-22