Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
HIGH 7.3 CVE-2026-8085 A security issue exists within Arena® Simulation due to a memory corruption vulnerability in the model.exe (Siman) component. The vulnerability stems… Arena 17.00.01+ Fix from $1,9502026-07-14 HIGH 7.3 CVE-2026-8312 A security issue exists within Arena® Simulation due to a memory corruption vulnerability in the expmt.exe (Siman) component. The vulnerability stems… Arena 17.00.01+ Fix from $1,9502026-07-14 HIGH 7.3 CVE-2026-8313 A security issue exists within Arena® Simulation due to a memory corruption vulnerability in the linker.exe (Siman) component. The vulnerability stem… Arena 17.00.01+ Fix from $1,9502026-07-14 CRITICAL 9.9 CVE-2026-44747 SAP NetWeaver Application Server ABAP allows an authenticated attacker to leverage logical errors in memory management to cause a memory corruption t… Mitigation only Fix from $2,3002026-07-14 HIGH 8.8 CVE-2026-15545 A vulnerability was identified in Shibby Tomato up to 1.28.0000. Affected by this vulnerability is the function main of the file www/apcupsd/tomatoda… Mitigation only Fix from $1,9502026-07-13 MEDIUM 5.0 CVE-2026-10664 The nRF70 Wi-Fi driver's power-save event handler nrf_wifi_event_proc_get_power_save_info() in drivers/wifi/nrf_wifi/src/wifi_mgmt.c copied TWT (Targ… Zephyr 4.5.0+ Fix from $1,6002026-07-12 HIGH 7.4 CVE-2026-10665 In Zephyr's WireGuard subsystem (subsys/net/lib/wireguard), wg_process_data_message() in wg_crypto.c linearizes an inbound transport-data payload int… Zephyr Patch available Fix from $1,9502026-07-12 CRITICAL 9.8 CVE-2026-10666 parse_ipv4() in subsys/net/ip/utils.c (reached via net_ipaddr_parse() for strings of the form "a.b.c.d:port") copies the port substring into a fixed … Zephyr after 4.4.1 Fix from $2,3002026-07-12 MEDIUM 6.4 CVE-2026-10660 The Bluetooth BAP Broadcast Assistant GATT client in subsys/bluetooth/audio/bap_broadcast_assistant.c reassembled remote Broadcast Receive State data… Patch available Fix from $1,6002026-07-11 HIGH 7.5 CVE-2026-55233 OpenResty is a high performance web platform. From 1.29.2.1 to before 1.29.2.5, an out-of-bounds write vulnerability exists in the upstream PROXY pro… Openresty 1.29.2.5+ Fix from $1,9502026-07-10 HIGH 7.8 CVE-2026-41154 Software installed and run as a non-privileged user may cause OOB kernel memory reads or writes through GPU API calls. When indexing pages larger … Ddk 26.1+ Fix from $1,9502026-07-10 HIGH 8.8 CVE-2026-55827 FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.27.1, FreeRDP clients launched with the non-default /cache:codec:rfx opti… Freerdp 3.27.1+ Fix from $1,9502026-07-10 HIGH 7.5 CVE-2026-55687 ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. Versions 6.0.1, 5.5.4, 5.4.4, 5.3.5, and possibly prior contain an out-of-bo… Patch available Fix from $1,9502026-07-10 MEDIUM 5.5 CVE-2026-59857 Vim is an open source, command line text editor. Prior to 9.2.0725, the single-byte branch of spell_soundfold_sal() in src/spell.c translates a word … Vim 9.2.0725+ Fix from $1,6002026-07-09 MEDIUM 5.3 CVE-2026-57021 An Out-of-bounds Write vulnerability in the http-gatekeeper (http-gk) of Juniper Networks Junos OS on SRX Series allows an unauthenticated, network-b… Junos Mitigation only Fix from $1,6002026-07-09 MEDIUM 6.5 CVE-2026-60094 Vinchin Backup & Recovery through 9.0.0.86562 contains a heap buffer overflow vulnerability that allows unauthenticated remote attackers to cause pro… Mitigation only Fix from $1,6002026-07-09 MEDIUM 6.1 CVE-2026-58304 Out-of-bounds read, Out-of-bounds write vulnerability in Samsung Open Source Escargot allows Overflow Buffers. This issue affects Escargot: before 7… Patch available Fix from $1,6002026-07-09 HIGH 7.1 CVE-2026-59691 A heap buffer overflow vulnerability was found in GStreamer's rfbsrc plugin. When a client connects to a malicious RFB/VNC server that advertises a 1… Mitigation only Fix from $1,9502026-07-09 HIGH 8.8 CVE-2026-15114 Out of bounds read and write in Codecs in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to potentially exploit heap corruption via … Chrome 150.0.7871.115+ Fix from $1,9502026-07-08 MEDIUM 6.3 CVE-2026-15105 A flaw has been found in davenardella snap7 up to 1.4.3. This affects the function TS7Worker::PerformFunctionRead of the file src/core/s7_server.cpp … No fix yet Fix from $1,6002026-07-08 HIGH 7.5 CVE-2026-0288 Multiple buffer overflow vulnerabilities in the User-ID Terminal Server Agent (TSA) component of Palo Alto Networks PAN-OS software allow an unauthen… Pan Os 10.2.7 / 10.2.10+ Fix from $1,9502026-07-08 HIGH 7.0 CVE-2026-59948 Composer is a dependency Manager for the PHP language. Prior to 2.2.29 and 2.10.2, a maliciously crafted package from an untrusted repository other t… Patch available Fix from $1,9502026-07-08 HIGH 7.8 CVE-2026-57260 The application opened a PDF file containing an abnormal Unity 3D object. During parsing, the application incorrectly resolved a portion of the abnor… Pdf Editor after 2026.1.1.70276 Fix from $1,9502026-07-08 CRITICAL 9.8 CVE-2026-14739 DBI versions before 1.650 for Perl have a heap overflow when preparsing SQL statements with an extreme number of placeholders. The fix for CVE-2026-… Dbi 1.650+ Fix from $2,3002026-07-07 HIGH 8.4 CVE-2026-42953 The application contains an out-of-bounds write vulnerability that can be exploited by an attacker to cause the program to write data past the end of… No fix yet Fix from $1,9502026-07-07 MEDIUM 5.3 CVE-2026-21384 Memory Corruption when updating prepared commands with invalid port indices based on user space input exceeds supported read client limits. Fastconnect 6700 Firmware Patch available Fix from $1,6002026-07-06 MEDIUM 5.3 CVE-2026-21368 Memory Corruption when parsing jpeg commands due to unaccounted extra writes to the buffer during validation checks. Fastconnect 6700 Firmware Patch available Fix from $1,6002026-07-06 MEDIUM 5.3 CVE-2026-21369 Memory Corruption when handling flash commands due to outdated LED count values being used after userspace modification. Fastconnect 6200 Firmware Patch available Fix from $1,6002026-07-06 MEDIUM 5.3 CVE-2026-21370 Memory Corruption when validating input batch size and buffer plane count exceeds maximum allowed values. Fastconnect 6700 Firmware Patch available Fix from $1,6002026-07-06 MEDIUM 5.5 CVE-2026-40257 OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Cortex-A cores using the TrustZone… Op Tee after 4.10.0 Fix from $1,6002026-07-06