Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 7.3
CVE-2026-8085
A security issue exists within Arena® Simulation due to a memory corruption vulnerability in the model.exe (Siman) component. The vulnerability stems…
Arena
17.00.01+
HIGH 7.3
CVE-2026-8312
A security issue exists within Arena® Simulation due to a memory corruption vulnerability in the expmt.exe (Siman) component. The vulnerability stems…
Arena
17.00.01+
HIGH 7.3
CVE-2026-8313
A security issue exists within Arena® Simulation due to a memory corruption vulnerability in the linker.exe (Siman) component. The vulnerability stem…
Arena
17.00.01+
CRITICAL 9.9
CVE-2026-44747
SAP NetWeaver Application Server ABAP allows an authenticated attacker to leverage logical errors in memory management to cause a memory corruption t…
Mitigation only
HIGH 8.8
CVE-2026-15545
A vulnerability was identified in Shibby Tomato up to 1.28.0000. Affected by this vulnerability is the function main of the file www/apcupsd/tomatoda…
Mitigation only
MEDIUM 5.0
CVE-2026-10664
The nRF70 Wi-Fi driver's power-save event handler nrf_wifi_event_proc_get_power_save_info() in drivers/wifi/nrf_wifi/src/wifi_mgmt.c copied TWT (Targ…
Zephyr
4.5.0+
HIGH 7.4
CVE-2026-10665
In Zephyr's WireGuard subsystem (subsys/net/lib/wireguard), wg_process_data_message() in wg_crypto.c linearizes an inbound transport-data payload int…
Zephyr
Patch available
CRITICAL 9.8
CVE-2026-10666
parse_ipv4() in subsys/net/ip/utils.c (reached via net_ipaddr_parse() for strings of the form "a.b.c.d:port") copies the port substring into a fixed …
Zephyr
after 4.4.1
MEDIUM 6.4
CVE-2026-10660
The Bluetooth BAP Broadcast Assistant GATT client in subsys/bluetooth/audio/bap_broadcast_assistant.c reassembled remote Broadcast Receive State data…
Patch available
HIGH 7.5
CVE-2026-55233
OpenResty is a high performance web platform. From 1.29.2.1 to before 1.29.2.5, an out-of-bounds write vulnerability exists in the upstream PROXY pro…
Openresty
1.29.2.5+
HIGH 7.8
CVE-2026-41154
Software installed and run as a non-privileged user may cause OOB kernel memory reads or writes through GPU API calls.
When indexing pages larger …
Ddk
26.1+
HIGH 8.8
CVE-2026-55827
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.27.1, FreeRDP clients launched with the non-default /cache:codec:rfx opti…
Freerdp
3.27.1+
HIGH 7.5
CVE-2026-55687
ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. Versions 6.0.1, 5.5.4, 5.4.4, 5.3.5, and possibly prior contain an out-of-bo…
Patch available
MEDIUM 5.5
CVE-2026-59857
Vim is an open source, command line text editor. Prior to 9.2.0725, the single-byte branch of spell_soundfold_sal() in src/spell.c translates a word …
Vim
9.2.0725+
MEDIUM 5.3
CVE-2026-57021
An Out-of-bounds Write vulnerability in the http-gatekeeper (http-gk) of Juniper Networks Junos OS on SRX Series allows an unauthenticated, network-b…
Junos
Mitigation only
MEDIUM 6.5
CVE-2026-60094
Vinchin Backup & Recovery through 9.0.0.86562 contains a heap buffer overflow vulnerability that allows unauthenticated remote attackers to cause pro…
Mitigation only
MEDIUM 6.1
CVE-2026-58304
Out-of-bounds read, Out-of-bounds write vulnerability in Samsung Open Source Escargot allows Overflow Buffers.
This issue affects Escargot: before 7…
Patch available
HIGH 7.1
CVE-2026-59691
A heap buffer overflow vulnerability was found in GStreamer's rfbsrc plugin. When a client connects to a malicious RFB/VNC server that advertises a 1…
Mitigation only
HIGH 8.8
CVE-2026-15114
Out of bounds read and write in Codecs in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to potentially exploit heap corruption via …
Chrome
150.0.7871.115+
MEDIUM 6.3
CVE-2026-15105
A flaw has been found in davenardella snap7 up to 1.4.3. This affects the function TS7Worker::PerformFunctionRead of the file src/core/s7_server.cpp …
No fix yet
HIGH 7.5
CVE-2026-0288
Multiple buffer overflow vulnerabilities in the User-ID Terminal Server Agent (TSA) component of Palo Alto Networks PAN-OS software allow an unauthen…
Pan Os
10.2.7 / 10.2.10+
HIGH 7.0
CVE-2026-59948
Composer is a dependency Manager for the PHP language. Prior to 2.2.29 and 2.10.2, a maliciously crafted package from an untrusted repository other t…
Patch available
HIGH 7.8
CVE-2026-57260
The application opened a PDF file containing an abnormal Unity 3D object. During parsing, the application incorrectly resolved a portion of the abnor…
Pdf Editor
after 2026.1.1.70276
CRITICAL 9.8
CVE-2026-14739
DBI versions before 1.650 for Perl have a heap overflow when preparsing SQL statements with an extreme number of placeholders.
The fix for CVE-2026-…
Dbi
1.650+
HIGH 8.4
CVE-2026-42953
The application contains an out-of-bounds write vulnerability that can be exploited by an attacker to cause the program to write data past the end of…
No fix yet
MEDIUM 5.3
CVE-2026-21384
Memory Corruption when updating prepared commands with invalid port indices based on user space input exceeds supported read client limits.
Fastconnect 6700 Firmware
Patch available
MEDIUM 5.3
CVE-2026-21368
Memory Corruption when parsing jpeg commands due to unaccounted extra writes to the buffer during validation checks.
Fastconnect 6700 Firmware
Patch available
MEDIUM 5.3
CVE-2026-21369
Memory Corruption when handling flash commands due to outdated LED count values being used after userspace modification.
Fastconnect 6200 Firmware
Patch available
MEDIUM 5.3
CVE-2026-21370
Memory Corruption when validating input batch size and buffer plane count exceeds maximum allowed values.
Fastconnect 6700 Firmware
Patch available
MEDIUM 5.5
CVE-2026-40257
OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Cortex-A cores using the TrustZone…
Op Tee
after 4.10.0