Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
MEDIUM 6.1 CVE-2025-0690 The read command is used to read the keyboard input from the user, while reads it keeps the input length in a 32-bit integer value which is further u… Mitigation only Fix from $1,6002025-02-24 HIGH 8.8 CVE-2025-1594 A vulnerability, which was classified as critical, was found in FFmpeg up to 7.1. This affects the function ff_aac_search_for_tns of the file libavco… Ffmpeg after 7.1 Fix from $1,9502025-02-23 HIGH 7.8 CVE-2025-21704 In the Linux kernel, the following vulnerability has been resolved: usb: cdc-acm: Check control transfer buffer size before access If the first fra… Linux Kernel 5.4.291 / 5.10.235+ Fix from $1,9502025-02-22 CRITICAL 9.1 CVE-2025-27105 vyper is a Pythonic Smart Contract Language for the EVM. Vyper handles AugAssign statements by first caching the target location to avoid double eval… Vyper 0.4.1+ Fix from $2,3002025-02-21 HIGH 8.8 CVE-2025-1538 A vulnerability classified as critical was found in D-Link DAP-1320 1.00. Affected by this vulnerability is the function set_ws_action of the file /d… Dap 1320 Firmware No fix yet Fix from $1,9502025-02-21 CRITICAL 9.8 CVE-2025-1539 A vulnerability, which was classified as critical, has been found in D-Link DAP-1320 1.00. Affected by this issue is the function replace_special_cha… Dap 1320 Firmware Mitigation only Fix from $2,3002025-02-21 HIGH 7.8 CVE-2025-1471 In Eclipse OMR versions 0.2.0 to 0.4.0, some of the z/OS atoe print functions use a constant length buffer for string conversion. If the input format… Omr after 0.4.0 Fix from $1,9502025-02-21 CRITICAL 9.8 CVE-2025-25663 A vulnerability was found in Tenda AC8V4 V16.03.34.06. Affected is the function SUB_0046AC38 of the file /goform/WifiExtraSet. The manipulation of th… Ac8 Firmware No fix yet Fix from $2,3002025-02-20 CRITICAL 9.8 CVE-2025-25664 Tenda AC8V4 V16.03.34.06 was discovered to contain a stack overflow via the shareSpeed parameter in the sub_49E098 function. Ac8 Firmware No fix yet Fix from $2,3002025-02-20 HIGH 7.5 CVE-2025-27091 OpenH264 is a free license codec library which supports H.264 encoding and decoding. A vulnerability in the decoding functions of OpenH264 codec libr… Openh264 2.5.1+ Fix from $1,9502025-02-20 HIGH 7.6 CVE-2025-0624 A flaw was found in grub2. During the network boot process, when trying to search for the configuration file, grub copies data from a user controlled… Mitigation only Fix from $1,9502025-02-19 MEDIUM 6.4 CVE-2025-0677 A flaw was found in grub2. When performing a symlink lookup, the grub's UFS module checks the inode's data size to allocate the internal buffer to re… Mitigation only Fix from $1,6002025-02-19 MEDIUM 6.7 CVE-2024-45777 A flaw was found in grub2. The calculation of the translation buffer when reading a language .mo file in grub_gettext_getstr_from_position() may over… Openshift after 2.12 Fix from $1,6002025-02-19 MEDIUM 6.7 CVE-2024-45776 When reading the language .mo file in grub_mofile_open(), grub2 fails to verify an integer overflow when allocating its internal buffer. A crafted .m… Mitigation only Fix from $1,6002025-02-18 MEDIUM 6.7 CVE-2024-45781 A flaw was found in grub2. When reading a symbolic link's name from a UFS filesystem, grub2 fails to validate the string length taken as an input. Th… Mitigation only Fix from $1,6002025-02-18 MEDIUM 6.7 CVE-2024-45774 A flaw was found in grub2. A specially crafted JPEG file can cause the JPEG parser of grub2 to incorrectly check the bounds of its internal buffers, … Mitigation only Fix from $1,6002025-02-18 MEDIUM 6.5 CVE-2025-1414 Memory safety bugs present in Firefox 135. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of the… Firefox 135.0.1+ Fix from $1,6002025-02-18 MEDIUM 6.5 CVE-2024-45320 Out-of-bounds write vulnerability exists in DocuPrint CP225w 01.22.01 and earlier, DocuPrint CP228w 01.22.01 and earlier, DocuPrint CM225fw 01.10.01 … Mitigation only Fix from $1,6002025-02-18 HIGH 8.8 CVE-2025-1340EPSS 17% A vulnerability classified as critical has been found in TOTOLINK X18 9.1.0cu.2024_B20220329. Affected is the function setPasswordCfg of the file /cg… X18 Firmware Mitigation only Fix from $1,9502025-02-16 CRITICAL 9.8 CVE-2025-26508 Certain HP LaserJet Pro, HP LaserJet Enterprise, and HP LaserJet Managed Printers may potentially be vulnerable to Remote Code Execution and Elevatio… Futuresmart 3 6.17.5.34-202412122146 / 2309118_002274+ Fix from $2,3002025-02-14 HIGH 7.0 CVE-2025-26519 musl libc 0.9.13 through 1.2.5 before 1.2.6 has an out-of-bounds write vulnerability when an attacker can trigger iconv conversion of untrusted EUC-K… Musl 1.2.6+ Fix from $1,9502025-02-14 HIGH 7.7 CVE-2023-34402 Mercedes-Benz head-unit NTG6 contains functions to import or export profile settings over USB. Inside file is encapsulate another file, which service… Headunit Ntg6 Mercedes Benz User Experience after 2021 Fix from $1,9502025-02-13 HIGH 7.3 CVE-2024-11345 A heap-based memory vulnerability has been identified in the Postscript interpreter in various Lexmark devices. The vulnerability can be leveraged by… Mitigation only Fix from $1,9502025-02-13 HIGH 7.5 CVE-2025-25901 A buffer overflow vulnerability was discovered in TP-Link TL-WR841ND V11, triggered by the dnsserver1 and dnsserver2 parameters at /userRpm/WanSlaacC… Tl Wr841nd Firmware No fix yet Fix from $1,9502025-02-13 HIGH 7.5 CVE-2025-25897 A buffer overflow vulnerability was discovered in TP-Link TL-WR841ND V11 via the 'ip' parameter at /userRpm/WanStaticIpV6CfgRpm.htm. This vulnerabili… Tl Wr841nd Firmware No fix yet Fix from $1,9502025-02-13 HIGH 7.5 CVE-2025-25898 A buffer overflow vulnerability was discovered in TP-Link TL-WR841ND V11 via the pskSecret parameter at /userRpm/WlanSecurityRpm.htm. This vulnerabil… Tl Wr841nd Firmware No fix yet Fix from $1,9502025-02-13 MEDIUM 6.5 CVE-2024-36274 Out-of-bounds write in the Intel(R) 800 Series Ethernet Driver for Intel(R) Ethernet Adapter Complete Driver Pack before versions 29.1 may allow an u… Mitigation only Fix from $1,6002025-02-12 HIGH 7.8 CVE-2024-31858 Out-of-bounds write for some Intel(R) QuickAssist Technology software before version 2.2.0 may allow an authenticated user to potentially enable esca… Quickassist Technology 2.2.0-0012+ Fix from $1,9502025-02-12 CRITICAL 9.8 CVE-2025-25742 D-Link DIR-853 A1 FW1.20B07 was discovered to contain a stack-based buffer overflow vulnerability via the AccountPassword parameter in the SetSysEmai… Dir 853 Firmware No fix yet Fix from $2,3002025-02-12 CRITICAL 9.8 CVE-2025-25744 D-Link DIR-853 A1 FW1.20B07 was discovered to contain a stack-based buffer overflow vulnerability via the Password parameter in the SetDynamicDNSSett… Dir 853 Firmware No fix yet Fix from $2,3002025-02-12