374 CVEs — updated 2026-09-19 · vulnfeed
| CVE / ID | Title | Severity | CVSS | EPSS | Source | Date |
|---|---|---|---|---|---|---|
| CVE-2026-10747 | IBM MQ Appliance could allow a remote attacker to cause a denial of service or potentially execute arbitrary code due to | CRITICAL | 10.0 | — | NVD | 2026-09-18 |
| CVE-2026-55209 | resdata is software for reading and writing result files from the Eclipse reservoir simulator. Prior to 6.2.9, resdata i | CRITICAL | 9.8 | 36%ile | NVD | 2026-09-14 |
| CVE-2026-84520 | A buffer overflow was addressed with improved size validation. This issue is fixed in macOS Golden Gate 27. A local atta | CRITICAL | 9.8 | 26%ile | NVD | 2026-09-14 |
| CVE-2026-55211 | Surfio is a library for reading and writing surface files. Prior to 0.0.19, surfio does not correctly validate size fiel | CRITICAL | 9.8 | 44%ile | NVD | 2026-09-15 |
| CVE-2026-11928 | IBM Verify Identity Access is vulnerable to a buffer overflow attack. | CRITICAL | 9.8 | 22%ile | NVD | 2026-09-15 |
| CVE-2026-76674 | Buffer overflow vulnerabilities exist in the underlying operating system of HPE Networking EdgeConnect SD-WAN Gateways t | CRITICAL | 9.8 | 63%ile | NVD | 2026-09-15 |
| CVE-2026-90823 | FatPipe MPVPN, WARP, and IPVPN appliances running the end-of-life firmware version 10.1.2r60p100 contain a stack-based b | CRITICAL | 9.8 | 51%ile | NVD | 2026-09-17 |
| CVE-2026-85504 | FreeIPMI before 1.6.19 has a stack-based buffer overflow in _ipmi_sel_oem_fujitsu_get_sel_entry_long_text in libfreeipmi | CRITICAL | 9.8 | 33%ile | Microsoft | 2026-09-08 |
| CVE-2026-85506 | ipmi-oem in FreeIPMI before 1.6.19 has a stack-based buffer overflow in _get_dell_system_info_idrac_info in ipmi-oem/ipm | CRITICAL | 9.8 | 33%ile | Microsoft | 2026-09-08 |
| CVE-2026-85507 | ipmi-oem in FreeIPMI before 1.6.19 has a stack-based buffer overflow in _output_dell_system_info_cmc_info in ipmi-oem/ip | CRITICAL | 9.8 | 33%ile | Microsoft | 2026-09-08 |
| CVE-2026-85508 | ipmi-oem in FreeIPMI before 1.6.19 has a stack-based buffer overflow in _output_dell_system_info_cmc_ipv6_info in ipmi-o | CRITICAL | 9.8 | 33%ile | Microsoft | 2026-09-08 |
| CVE-2026-85509 | FreeIPMI before 1.6.19 has a stack-based buffer overflow in _read_fru_data in libfreeipmi/fru/ipmi-fru.c when a BMC retu | CRITICAL | 9.8 | 33%ile | Microsoft | 2026-09-08 |
| CVE-2026-68349 | wifi: carl9170: fix buffer overflow in rx_stream failover path | CRITICAL | 9.8 | 11%ile | Microsoft | 2026-08-11 |
| CVE-2026-5450 | scanf %mc off-by-one heap buffer overflow | CRITICAL | 9.8 | 42%ile | Microsoft | 2026-04-14 |
| CVE-2025-34468 | libcoap Stack-Based Buffer Overflow in Address Resolution DoS or Potential RCE | CRITICAL | 9.8 | 53%ile | Microsoft | 2025-12-09 |
| CVE-2025-39985 | can: mcba_usb: populate ndo_change_mtu() to prevent buffer overflow | CRITICAL | 9.8 | 7%ile | Microsoft | 2025-10-14 |
| CVE-2025-39986 | can: sun4i_can: populate ndo_change_mtu() to prevent buffer overflow | CRITICAL | 9.8 | 7%ile | Microsoft | 2025-10-14 |
| CVE-2024-29157 | HDF5 through 1.14.3 contains a heap buffer overflow in H5HG_read resulting in the corruption of the instruction pointer | CRITICAL | 9.8 | 58%ile | Microsoft | 2024-05-14 |
| CVE-2024-29159 | HDF5 through 1.14.3 contains a buffer overflow in H5Z__filter_scaleoffset resulting in the corruption of the instruction | CRITICAL | 9.8 | 59%ile | Microsoft | 2024-05-14 |
| CVE-2024-29164 | HDF5 through 1.14.3 contains a stack buffer overflow in H5R__decode_heap resulting in the corruption of the instruction | CRITICAL | 9.8 | 57%ile | Microsoft | 2024-05-14 |
| CVE-2024-32615 | HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5Z__nbit_decompress_one_byte in H5Znbit.c caused b | CRITICAL | 9.8 | 64%ile | Microsoft | 2024-05-14 |
| CVE-2024-32621 | HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5HG_read in H5HG.c (called from H5VL__native_blob_ | CRITICAL | 9.8 | 59%ile | Microsoft | 2024-05-14 |
| CVE-2024-33874 | HDF5 Library through 1.14.3 has a heap buffer overflow in H5O__mtime_new_encode in H5Omtime.c. | CRITICAL | 9.8 | 59%ile | Microsoft | 2024-05-14 |
| CVE-2026-93372 | Buffer overflow in WebGL in Google Chrome on on Android prior to 153.0.8010.52 allowed a remote attacker to execute arbi | CRITICAL | 9.6 | 23%ile | NVD | 2026-09-17 |
| CVE-2026-90680 | A security flaw has been discovered in D-Link DIR-823G 1.0.2B05_20181207. The impacted element is the function strcpy of | CRITICAL | 9.4 | 42%ile | NVD | 2026-09-14 |
| CVE-2026-90692 | A vulnerability was detected in D-Link DIR-878 120B05. This affects the function SetDynamicDNSIPv6Settings of the compon | CRITICAL | 9.4 | 40%ile | NVD | 2026-09-14 |
| CVE-2026-90693 | A flaw has been found in D-Link DIR-878 120B05. This impacts the function SetWan3Settings of the component WAN Settings. | CRITICAL | 9.4 | 40%ile | NVD | 2026-09-14 |
| CVE-2026-90558 | sngrep through 1.8.4 contains stack buffer overflow vulnerabilities in SIP attribute formatting routines when header val | CRITICAL | 9.3 | 42%ile | NVD | 2026-09-12 |
| CVE-2026-39919 | Ghostscript before 10.08.0 contains a heap-based buffer overflow vulnerability in the JPEG 2000 output adapter (base/sjp | CRITICAL | 9.3 | 41%ile | NVD | 2026-09-15 |
| CVE-2026-93740 | A vulnerability was identified in Totolink A3002MU Hh-B20211125.1046. Affected is the function formWlEncrypt of the file | CRITICAL | 9.3 | — | NVD | 2026-09-18 |
| CVE-2026-93741 | A security flaw has been discovered in Totolink A3002MU Hh-B20211125.1046. Affected by this vulnerability is the functio | CRITICAL | 9.3 | — | NVD | 2026-09-19 |
| CVE-2026-93393 | A heap-based buffer overflow exists in the TLS transport layer of the MongoDB C Driver when built with the Windows platf | CRITICAL | 9.2 | 21%ile | NVD | 2026-09-17 |
| CVE-2026-44950 | fs_read_glyphs() heap buffer overflow via cumulative glyph data overflow in libXfont2 | CRITICAL | 9.0 | 38%ile | Microsoft | 2026-09-08 |
| CVE-2025-54351 | In iperf before 3.19.1, net.c has a buffer overflow when --skip-rx-copy is used (for MSG_TRUNC in recv). | HIGH | 8.9 | 35%ile | Microsoft | 2025-08-12 |
| CVE-2023-46273 | Bonjour Gateway in Extreme Networks IQ Engine before 10.6r1a, and through 10.6r4 before 10.6r5, has an ah_bgd buffer ove | HIGH | 8.8 | 24%ile | NVD | 2026-09-14 |
| CVE-2026-43815 | A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma | HIGH | 8.8 | 38%ile | NVD | 2026-09-14 |
| CVE-2026-84512 | A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Golden Gate 27, macOS Sequoi | HIGH | 8.8 | 39%ile | NVD | 2026-09-14 |
| CVE-2026-92054 | Privilege escalation in the Memory component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbir | HIGH | 8.8 | 18%ile | NVD | 2026-09-15 |
| CVE-2026-0200 | In Cellular Modem, there is a possible out-of-bounds write due to a heap buffer overflow. This could lead to remote esca | HIGH | 8.8 | 21%ile | NVD | 2026-09-15 |
| CVE-2026-76676 | Buffer overflow vulnerabilities exist in the underlying operating system of EdgeConnect SD-WAN Gateways that could allow | HIGH | 8.8 | 16%ile | NVD | 2026-09-15 |
| CVE-2026-69486 | Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a net | HIGH | 8.8 | 50%ile | NVD | 2026-09-15 |
| CVE-2026-93381 | Buffer overflow in PDFium in Google Chrome on on Windows prior to 153.0.8010.52 allowed a remote attacker leveraging soc | HIGH | 8.8 | 19%ile | NVD | 2026-09-17 |
| CVE-2026-15579 | An out-of-bounds write vulnerability exists in some of the Ethernet switches because of improper validation of the usern | HIGH | 8.8 | 50%ile | NVD | 2026-09-18 |
| CVE-2026-10575 | IBM MQ could allow an authenticated attacker to cause a denial of service or potentially escalate privileges due to a he | HIGH | 8.8 | — | NVD | 2026-09-18 |
| CVE-2026-11375 | IBM MQ could allow an authenticated attacker to cause a denial of service or potentially execute arbitrary code due to a | HIGH | 8.8 | — | NVD | 2026-09-18 |
| CVE-2026-14664 | PostgreSQL regexp heap buffer overflow executes arbitrary code | HIGH | 8.8 | 37%ile | Microsoft | 2026-08-11 |
| CVE-2026-14670 | PostgreSQL plperl tied object heap buffer overflow executes arbitrary code | HIGH | 8.8 | 37%ile | Microsoft | 2026-08-11 |
| CVE-2026-19385 | PostgreSQL pg_dump heap buffer overflow executes arbitrary code | HIGH | 8.8 | 36%ile | Microsoft | 2026-08-11 |
| CVE-2026-48715 | radvdump's Route Information Option Parser has a Stack Buffer Overflow | HIGH | 8.8 | 11%ile | Microsoft | 2026-06-09 |
| CVE-2024-29161 | HDF5 through 1.14.3 contains a heap buffer overflow in H5A__attr_release_table resulting in the corruption of the instru | HIGH | 8.8 | 57%ile | Microsoft | 2024-05-14 |
| CVE-2024-32623 | HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5VM_array_fill in H5VM.c (called from H5S_select_e | HIGH | 8.8 | 58%ile | Microsoft | 2024-05-14 |
| CVE-2024-33873 | HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5D__scatter_mem in H5Dscatgath.c. | HIGH | 8.8 | 58%ile | Microsoft | 2024-05-14 |
| CVE-2024-33877 | HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5T__conv_struct_opt in H5Tconv.c. | HIGH | 8.8 | 58%ile | Microsoft | 2024-05-14 |
| CVE-2026-6637 | PostgreSQL refint allows stack buffer overflow and SQL injection | HIGH | 8.8 | 31%ile | Microsoft | 2026-05-12 |
| CVE-2026-90778 | SIPp through 3.7.7 contains a buffer overflow vulnerability in get_peer_tag() function when processing SIP To headers wi | HIGH | 8.7 | 49%ile | NVD | 2026-09-13 |
| CVE-2026-90779 | SIPp through 3.7.7 contains a stack buffer overflow vulnerability in createAuthHeader() when processing SIP authenticati | HIGH | 8.7 | 46%ile | NVD | 2026-09-13 |
| CVE-2026-90780 | SIPp through 3.7.7 contains a buffer overflow vulnerability in the get_header() function in src/sip_parser.cpp when proc | HIGH | 8.7 | 49%ile | NVD | 2026-09-13 |
| CVE-2026-82770 | Buffer overflow vulnerability exists in Contec RP-WAH-SR Series. If a remote attacker sends a specially crafted request | HIGH | 8.7 | 39%ile | NVD | 2026-09-14 |
| CVE-2026-82772 | Buffer overflow vulnerability exists in Contec EC1000 series. If a remote attacker sends a specially crafted request to | HIGH | 8.7 | 39%ile | NVD | 2026-09-14 |
| CVE-2026-90689 | A security flaw has been discovered in Tenda W20E 15.11.0.61068_1546_841_CN_TDC. Impacted is the function formDelWebAuth | HIGH | 8.7 | 47%ile | NVD | 2026-09-14 |
| CVE-2026-91752 | GNU libextractor before 1.15 contains a stack-based buffer overflow vulnerability in the process_star_office function th | HIGH | 8.7 | 36%ile | NVD | 2026-09-15 |
| CVE-2026-91964 | FreeRDP versions before 3.31.0 contain a heap-based buffer overflow in nego_send_negotiation_request when processing Ser | HIGH | 8.7 | 45%ile | NVD | 2026-09-15 |
| CVE-2026-76860 | Netcore NR255-V version 1.5.130703 contains a stack-based buffer overflow in wake_up_set.cgi caused by unbounded tokeniz | HIGH | 8.7 | 36%ile | NVD | 2026-09-15 |
| CVE-2026-76861 | Netcore NR255-V version 1.5.130703 contains a stack-based buffer overflow in ntools_tcpdump_start_set.cgi caused by an u | HIGH | 8.7 | 42%ile | NVD | 2026-09-15 |
| CVE-2026-93452 | snappy-java through 1.1.10.8 contains a buffer overflow vulnerability in Snappy.compress(ByteBuffer, ByteBuffer) that wr | HIGH | 8.7 | 41%ile | NVD | 2026-09-18 |
| CVE-2026-90605 | A weakness has been identified in Totolink A3002MU Hh-B20211125.1046. This vulnerability affects the function formFilter | HIGH | 8.6 | 40%ile | NVD | 2026-09-14 |
| CVE-2026-90606 | A security vulnerability has been detected in Totolink A3002MU Hh-B20211125.1046. This issue affects the function formIp | HIGH | 8.6 | 41%ile | NVD | 2026-09-14 |
| CVE-2026-90607 | A vulnerability was detected in Totolink A3002MU Hh-B20211125.1046. Impacted is the function formNewSchedule of the file | HIGH | 8.6 | 40%ile | NVD | 2026-09-14 |
| CVE-2026-90608 | A flaw has been found in Totolink A3002MU Hh-B20211125.1046. The affected element is the function formPortFw of the file | HIGH | 8.6 | 55%ile | NVD | 2026-09-14 |
| CVE-2026-91001 | A security flaw has been discovered in D-Link DI-8400 16.07. This affects the function ddns_asp of the file /ddns.asp of | HIGH | 8.6 | 41%ile | NVD | 2026-09-15 |
| CVE-2026-76869 | Netcore NR255-V version 1.5.130703 contains a stack-based buffer overflow in reboot_timer_set.cgi caused by improper ssc | HIGH | 8.6 | 37%ile | NVD | 2026-09-15 |
| CVE-2026-20352 | A vulnerability in the RADIUS feature of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote att | HIGH | 8.6 | 34%ile | NVD | 2026-09-16 |
| CVE-2026-19477 | There is stack-based buffer overflow vulnerability recently discovered in MCC Universal Library for Linux (uldaq). This | HIGH | 8.6 | 3%ile | NVD | 2026-09-17 |
| CVE-2026-93738 | A vulnerability was found in Totolink A3002MU Hh-B20211125.1046. This affects the function formSchedule of the file /boa | HIGH | 8.6 | — | NVD | 2026-09-18 |
| CVE-2026-93739 | A vulnerability was determined in Totolink A3002MU Hh-B20211125.1046. This impacts the function formWlAc of the file /bo | HIGH | 8.6 | — | NVD | 2026-09-18 |
| CVE-2026-5435 | Potential buffer overflow in ns_sprintrrf TSIG handling path | HIGH | 8.6 | 15%ile | Microsoft | 2026-04-14 |
| CVE-2024-34402 | An issue was discovered in uriparser through 0.9.7. ComposeQueryEngine in UriQuery.c has an integer overflow via long ke | HIGH | 8.6 | 68%ile | Microsoft | 2024-05-14 |
| CVE-2026-90556 | Freeciv versions before 3.2.6 contain a heap buffer overflow in worklist_load() when processing savegame files with decl | HIGH | 8.5 | 4%ile | NVD | 2026-09-12 |
| CVE-2026-90783 | MKVToolNix through 101.0 contains a heap buffer overflow in the bundled avilib library's ODML superindex parser due to i | HIGH | 8.5 | 4%ile | NVD | 2026-09-13 |
| CVE-2026-91003 | A flaw has been found in D-Link DI-8300 16.07. The affected element is the function rzgl_asp of the file /rzgl.asp of th | HIGH | 8.5 | 43%ile | NVD | 2026-09-15 |
| CVE-2026-84581 | A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Golden Gate 27, macOS Sequoi | HIGH | 8.4 | 10%ile | NVD | 2026-09-14 |
| CVE-2026-58679 | In gf_ta_test_set_config of gf_ta_test.c, there is a possible heap buffer overflow due to a logic error in the code. Thi | HIGH | 8.4 | 0%ile | NVD | 2026-09-15 |
| CVE-2026-82717 | In NLnet Labs Unbound up to and including 1.26.0, a vulnerability was found in that can progressively corrupt heap memor | HIGH | 8.4 | 34%ile | NVD | 2026-09-16 |
| CVE-2026-93063 | In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mei: check SAP message length before | HIGH | 8.4 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-40706 | In NTFS-3G 2022.10.3 before 2026.2.25, a heap buffer overflow exists in ntfs_build_permissions_posix() in acls.c that al | HIGH | 8.4 | 6%ile | Microsoft | 2026-04-14 |
| CVE-2026-76682 | A vulnerability in the network security monitoring component of intrusion detection systems could allow an unauthenticat | HIGH | 8.2 | 43%ile | NVD | 2026-09-15 |
| CVE-2026-49759 | Stack buffer overflow in SCTP error cause parsing in inet_drv allows remote VM crash | HIGH | 8.2 | 42%ile | Microsoft | 2026-06-09 |
| CVE-2026-32316 | jq: Integer overflow in jvp_string_append() allows Heap-based Buffer Overflow | HIGH | 8.2 | 49%ile | Microsoft | 2026-04-14 |
| CVE-2026-11728 | IBM MQ 9.1.0.0 through 9.1.0.37 LTS, 9.2.0.0 through 9.2.0.43 LTS, 9.3.0.0 through 9.3.0.41 LTS, 9.3.0.0 through 9.3.5.1 | HIGH | 8.1 | 47%ile | NVD | 2026-09-15 |
| CVE-2026-76683 | Buffer overflow vulnerabilities exist in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways that could allow | HIGH | 8.1 | 47%ile | NVD | 2026-09-15 |
| CVE-2026-76685 | A vulnerability exists in the proxy packet processing logic of the affected component where it improperly processes malf | HIGH | 8.1 | 50%ile | NVD | 2026-09-15 |
| CVE-2026-10027 | IBM MQ could allow a remote attacker to cause a denial of service or execute arbitrary code due to a buffer overflow whe | HIGH | 8.1 | — | NVD | 2026-09-18 |
| CVE-2026-7383 | Possible Heap Buffer Overflow in ASN.1 Multibyte String Conversion | HIGH | 8.1 | 55%ile | Microsoft | 2026-06-09 |
| CVE-2026-56123 | socat 1.8.0.0 - 1.8.1.1 Heap Buffer Overflow via SOCKS5 Reply Parser | HIGH | 8.1 | 45%ile | Microsoft | 2026-06-09 |
| CVE-2024-53427 | decNumberCopy in decNumber.c in jq through 1.7.1 does not properly consider that NaN is interpreted as numeric, which ha | HIGH | 8.1 | 29%ile | Microsoft | 2025-02-11 |
| CVE-2024-33599 | nscd: Stack-based buffer overflow in netgroup cache | HIGH | 8.1 | 69%ile | Microsoft | 2024-05-14 |
| CVE-2024-5564 | Libndp: buffer overflow in route information length field | HIGH | 8.1 | 66%ile | Microsoft | 2024-05-14 |
| CVE-2026-6665 | PgBouncer buffer overflow in SCRAM | HIGH | 8.1 | 31%ile | Microsoft | 2026-05-12 |
| CVE-2026-56967 | In Cellular Modem, there is a possible out-of-bounds write due to a heap buffer overflow. This could lead to remote (pro | HIGH | 8.0 | 2%ile | NVD | 2026-09-15 |
| CVE-2026-86140 | In libxml2 before 2.15.4, xmlSnprintfElements in valid.c has a strcat stack-based buffer overflow. | HIGH | 8.0 | 4%ile | Microsoft | 2026-09-08 |
| CVE-2026-90948 | A flaw was found in GIMP's ICO file loader. When processing an ICO file containing an embedded PNG image, an integer ove | HIGH | 7.8 | 14%ile | NVD | 2026-09-14 |
| CVE-2026-90949 | A flaw was found in GIMP's PSP (Paint Shop Pro) file loader. When processing a compressed selection channel, a heap-base | HIGH | 7.8 | 14%ile | NVD | 2026-09-14 |
| CVE-2026-43702 | The issue was addressed with improved memory handling. This issue is fixed in iOS 26.6 and iPadOS 26.6, iOS 26.7 and iPa | HIGH | 7.8 | 4%ile | NVD | 2026-09-14 |
| CVE-2026-84497 | A buffer overflow was addressed with improved size validation. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 a | HIGH | 7.8 | 8%ile | NVD | 2026-09-14 |
| CVE-2026-84566 | The issue was addressed with improved memory handling. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadO | HIGH | 7.8 | 3%ile | NVD | 2026-09-14 |
| CVE-2026-19781 | Ashlar-Vellum Cobalt VS File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability | HIGH | 7.8 | 7%ile | NVD | 2026-09-15 |
| CVE-2026-19886 | OriginLab Origin Viewer OGM File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allow | HIGH | 7.8 | 7%ile | NVD | 2026-09-15 |
| CVE-2026-55323 | In gf_base_update_finger_base of gf_base.c, there is a possible out-of-bounds write due to a heap buffer overflow. This | HIGH | 7.8 | 0%ile | NVD | 2026-09-15 |
| CVE-2026-92178 | pdfforge PDF Architect PDF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows | HIGH | 7.8 | 7%ile | NVD | 2026-09-15 |
| CVE-2026-92248 | A flaw was found in the file-psd plugin in GIMP. When generating a thumbnail preview for a specially crafted PSD (Photos | HIGH | 7.8 | 8%ile | NVD | 2026-09-15 |
| CVE-2026-81474 | Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains a Heap-based Buffer Overflow vulnerability. A | HIGH | 7.8 | 5%ile | NVD | 2026-09-17 |
| CVE-2026-90052 | In the Linux kernel, the following vulnerability has been resolved: dm-integrity: fix buffer overflow with keyed discar | HIGH | 7.8 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-19582 | Binutils: stack buffer overflow in gnu binutils in rsrc_print_name from an untrusted pe file | HIGH | 7.8 | — | Microsoft | 2026-08-11 |
| CVE-2026-11824 | SQLite before 3.53.2 Heap Buffer Overflow via FTS5 fts5ChunkIterate | HIGH | 7.8 | 7%ile | Microsoft | 2026-06-09 |
| CVE-2026-43958 | Rrdtool: rrdtool: stack buffer overflow allows local code execution or denial of service | HIGH | 7.8 | 3%ile | Microsoft | 2026-06-09 |
| CVE-2026-50256 | Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in font alias resolution due to libxfo | HIGH | 7.8 | 5%ile | Microsoft | 2026-06-09 |
| CVE-2026-50258 | Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in xkb key types due to unchecked shif | HIGH | 7.8 | 6%ile | Microsoft | 2026-06-09 |
| CVE-2026-50259 | Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in xkb setmap request via mapwidths in | HIGH | 7.8 | 6%ile | Microsoft | 2026-06-09 |
| CVE-2026-53143 | drm/amdkfd: Fix buffer overflow in SDMA queue checkpoint/restore on GFX11 | HIGH | 7.8 | 5%ile | Microsoft | 2026-06-09 |
| CVE-2026-53194 | USB: serial: kl5kusb105: fix bulk-out buffer overflow | HIGH | 7.8 | 4%ile | Microsoft | 2026-06-09 |
| CVE-2023-6175 | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') in Wireshark | HIGH | 7.8 | 88%ile | Microsoft | 2025-07-08 |
| CVE-2026-39853 | osslsigncode has a Stack Buffer Overflow via Unbounded Digest Copy During Signature Verification | HIGH | 7.8 | 6%ile | Microsoft | 2026-04-14 |
| CVE-2025-68346 | ALSA: dice: fix buffer overflow in detect_stream_formats() | HIGH | 7.8 | 14%ile | Microsoft | 2025-12-09 |
| CVE-2025-39998 | scsi: target: target_core_configfs: Add length check to avoid buffer overflow | HIGH | 7.8 | 7%ile | Microsoft | 2025-10-14 |
| CVE-2025-39952 | wifi: wilc1000: avoid buffer overflow in WID string configuration | HIGH | 7.8 | 14%ile | Microsoft | 2025-10-14 |
| CVE-2025-21780 | drm/amdgpu: avoid buffer overflow attach in smu_sys_set_pp_table() | HIGH | 7.8 | 18%ile | Microsoft | 2025-02-11 |
| CVE-2025-24928 | libxml2 before 2.12.10 and 2.13.x before 2.13.6 has a stack-based buffer overflow in xmlSnprintfElements in valid.c. To | HIGH | 7.8 | 32%ile | Microsoft | 2025-02-11 |
| CVE-2025-26595 | Xorg: xwayland: buffer overflow in xkbvmodmasktext() | HIGH | 7.8 | 37%ile | Microsoft | 2025-02-11 |
| CVE-2025-26597 | Xorg: xwayland: buffer overflow in xkbchangetypesofkey() | HIGH | 7.8 | 37%ile | Microsoft | 2025-02-11 |
| CVE-2025-38702 | fbdev: fix potential buffer overflow in do_register_framebuffer() | HIGH | 7.8 | 8%ile | Microsoft | 2025-09-09 |
| CVE-2025-39751 | ALSA: hda/ca0132: Fix buffer overflow in add_tuning_control | HIGH | 7.8 | — | Microsoft | 2025-09-09 |
| CVE-2025-38585 | staging: media: atomisp: Fix stack buffer overflow in gmin_get_var_int() | HIGH | 7.8 | 12%ile | Microsoft | 2025-08-12 |
| CVE-2025-38676 | iommu/amd: Avoid stack buffer overflow from kernel cmdline | HIGH | 7.8 | 34%ile | Microsoft | 2025-08-12 |
| CVE-2026-48864 | Libsolv: heap buffer overflow in libsolv repopagestore via unchecked decompression of malicious .solv page data | HIGH | 7.8 | 14%ile | Microsoft | 2026-05-12 |
| CVE-2026-81546 | The Affinity by Canva application before 3.3.0 (September 2026 release) did not perform adequate bounds checking when pa | HIGH | 7.7 | 1%ile | NVD | 2026-09-17 |
| CVE-2026-81944 | PLANET IGS-5225-8P2T4S industrial managed switch V1 and V2 firmware versions before 1.2412b260707 and 2.2412b260519 cont | HIGH | 7.7 | — | NVD | 2026-09-18 |
| CVE-2026-68124 | mctp: serial: handle zero-length frames to prevent rx buffer overflow | HIGH | 7.7 | 28%ile | Microsoft | 2026-08-11 |
| CVE-2026-33963 | An issue was discovered in camera in Samsung Mobile Processor Exynos 1330, 1380, 1480, 2400, 1580, 2500, 2600, and 1680. | HIGH | 7.5 | 1%ile | NVD | 2026-09-14 |
| CVE-2026-28935 | The issue was addressed with improved memory handling. This issue is fixed in iOS 26.6.1 and iPadOS 26.6.1, macOS Sequoi | HIGH | 7.5 | 32%ile | NVD | 2026-09-14 |
| CVE-2026-81634 | In NLnet Labs Unbound up to and including 1.26.0, a 255 length query name with a large TCP response can lead to a heap b | HIGH | 7.5 | 29%ile | NVD | 2026-09-16 |
| CVE-2026-81945 | PLANET IGS-5225-8P2T4S industrial managed switch V1 and V2 firmware versions bfore 1.2412b260707 and 2.2412b260519 conta | HIGH | 7.5 | — | NVD | 2026-09-18 |
| CVE-2026-34501 | Apache Portable Runtime Utility: Heap buffer overflow in APR redis client | HIGH | 7.5 | 42%ile | Microsoft | 2026-08-11 |
| CVE-2026-34502 | Apache Portable Runtime Utility: Heap buffer overflow in APR memcached client | HIGH | 7.5 | 42%ile | Microsoft | 2026-08-11 |
| CVE-2026-63072 | Heap Buffer Overflow in CMS Key Unwrapping | HIGH | 7.5 | 51%ile | Microsoft | 2026-08-11 |
| CVE-2026-78002 | Rsyslog: rsyslog: denial of service via heap buffer overflow in rainerscript replace() function | HIGH | 7.5 | 48%ile | Microsoft | 2026-08-11 |
| CVE-2026-34355 | Apache HTTP Server: mod_proxy_html buffer overflow | HIGH | 7.5 | 66%ile | Microsoft | 2026-06-09 |
| CVE-2026-34356 | Apache HTTP Server: ProxyPassReverseCookieMap buffer overflow | HIGH | 7.5 | 52%ile | Microsoft | 2026-06-09 |
| CVE-2026-50031 | ipmi-oem in FreeIPMI before 1.6.18 has exploitable buffer overflows on response messages. The Intelligent Platform Manag | HIGH | 7.5 | 42%ile | Microsoft | 2026-06-09 |
| CVE-2026-37555 | An issue was discovered in libsndfile 1.2.2 IMA ADPCM codec. The AIFF code path (line 241) was fixed with (sf_count_t) c | HIGH | 7.5 | 42%ile | Microsoft | 2026-04-14 |
| CVE-2026-5928 | Static buffer overflow in deprecated nis_local_principal | HIGH | 7.5 | 31%ile | Microsoft | 2026-04-14 |
| CVE-2025-68255 | staging: rtl8723bs: fix stack buffer overflow in OnAssocReq IE parsing | HIGH | 7.5 | 31%ile | Microsoft | 2025-12-09 |
| CVE-2025-40928 | JSON::XS before version 4.04 for Perl has an integer buffer overflow causing a segfault when parsing crafted JSON, enabl | HIGH | 7.5 | 49%ile | Microsoft | 2025-09-09 |
| CVE-2025-55558 | A buffer overflow occurs in pytorch v2.7.0 when a PyTorch model consists of torch.nn.Conv2d, torch.nn.functional.hardshr | HIGH | 7.5 | 39%ile | Microsoft | 2025-09-09 |
| CVE-2025-52194 | A buffer overflow vulnerability exists in libsndfile version 1.2.2 and potentially earlier versions when processing malf | HIGH | 7.5 | 49%ile | Microsoft | 2025-08-12 |
| CVE-2026-33846 | Gnutls: gnutls: denial of service via heap buffer overflow in dtls handshake fragment reassembly | HIGH | 7.5 | 68%ile | Microsoft | 2026-05-12 |
| CVE-2026-44673 | libyang: lyb_read_string() integer overflow → heap buffer overflow | HIGH | 7.5 | 44%ile | Microsoft | 2026-05-12 |
| CVE-2026-85091 | zlib 1.3.1.2 through 1.3.2 Heap Buffer Overflow via gz_vacate | HIGH | 7.4 | 38%ile | Microsoft | 2026-09-08 |
| CVE-2026-86098 | ntop nDPI before 6.0 Heap Buffer Overflow via ndpi_json_string_escape | HIGH | 7.4 | 29%ile | Microsoft | 2026-09-08 |
| CVE-2026-3195 | Qemu-kvm: virtio-snd: heap buffer overflow in virtio_snd_pcm_in_cb (incomplete fix for cve-2024-7730) | HIGH | 7.4 | 3%ile | Microsoft | 2026-06-09 |
| CVE-2024-29158 | HDF5 through 1.14.3 contains a stack buffer overflow in H5FL_arr_malloc resulting in the corruption of the instruction p | HIGH | 7.4 | 13%ile | Microsoft | 2024-05-14 |
| CVE-2024-29160 | HDF5 through 1.14.3 contains a heap buffer overflow in H5HG__cache_heap_deserialize resulting in the corruption of the i | HIGH | 7.4 | 13%ile | Microsoft | 2024-05-14 |
| CVE-2024-29162 | HDF5 through 1.13.3 and/or 1.14.2 contains a stack buffer overflow in H5HG_read resulting in denial of service or potent | HIGH | 7.4 | 13%ile | Microsoft | 2024-05-14 |
| CVE-2024-29163 | HDF5 through 1.14.3 contains a heap buffer overflow in H5T__bit_find resulting in the corruption of the instruction poin | HIGH | 7.4 | 13%ile | Microsoft | 2024-05-14 |
| CVE-2024-29165 | HDF5 through 1.14.3 contains a buffer overflow in H5Z__filter_fletcher32 resulting in the corruption of the instruction | HIGH | 7.4 | 15%ile | Microsoft | 2024-05-14 |
| CVE-2024-32618 | HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5T__get_native_type in H5Tnative.c resulting in th | HIGH | 7.4 | 15%ile | Microsoft | 2024-05-14 |
| CVE-2024-32619 | HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5T_copy_reopen in H5T.c resulting in the corruptio | HIGH | 7.4 | 15%ile | Microsoft | 2024-05-14 |
| CVE-2024-32624 | HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5T__ref_mem_setnull in H5Tref.c (called from H5T__ | HIGH | 7.4 | 49%ile | Microsoft | 2024-05-14 |
| CVE-2026-12912 | Libtiff: libtiff: heap-based buffer overflow via crafted pixarlog-compressed tiff image | HIGH | 7.3 | 37%ile | Microsoft | 2026-06-09 |
| CVE-2025-39987 | can: hi311x: populate ndo_change_mtu() to prevent buffer overflow | HIGH | 7.3 | 7%ile | Microsoft | 2025-10-14 |
| CVE-2025-39988 | can: etas_es58x: populate ndo_change_mtu() to prevent buffer overflow | HIGH | 7.3 | 7%ile | Microsoft | 2025-10-14 |
| CVE-2026-76689 | A vulnerability exists in the configuration processing logic of the affected component where malformed input is improper | HIGH | 7.2 | 57%ile | NVD | 2026-09-15 |
| CVE-2026-76691 | Buffer overflow vulnerabilities exist in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways. Successful expl | HIGH | 7.2 | 54%ile | NVD | 2026-09-15 |
| CVE-2026-81477 | Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains a Heap-based Buffer Overflow vulnerability. A | HIGH | 7.2 | 48%ile | NVD | 2026-09-17 |
| CVE-2026-81480 | Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains a Stack-based Buffer Overflow vulnerability. | HIGH | 7.2 | 48%ile | NVD | 2026-09-17 |
| CVE-2026-90688 | A vulnerability was identified in Tenda W20E 15.11.0.61068_1546_841_CN_TDC. This issue affects the function formIPMacBin | HIGH | 7.1 | 34%ile | NVD | 2026-09-14 |
| CVE-2026-91953 | FreeRDP versions before 3.31.0 contain a heap buffer overflow vulnerability in nego_send_negotiation_request() that fail | HIGH | 7.1 | 36%ile | NVD | 2026-09-15 |
| CVE-2026-19774 | BlueZ A2DP Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent a | HIGH | 7.1 | 26%ile | NVD | 2026-09-15 |
| CVE-2023-50229 | BlueZ Phone Book Access Profile Heap-based Buffer Overflow Remote Code Execution Vulnerability | HIGH | 7.1 | 82%ile | Microsoft | 2024-05-14 |
| CVE-2023-50230 | BlueZ Phone Book Access Profile Heap-based Buffer Overflow Remote Code Execution Vulnerability | HIGH | 7.1 | 73%ile | Microsoft | 2024-05-14 |
| CVE-2026-63387 | Libevent: Off-by-one stack buffer overflow in dnsname_to_labels via crafted DNS server response | HIGH | 7.0 | 36%ile | Microsoft | 2026-08-11 |
| CVE-2026-90707 | A security flaw has been discovered in Open5GS up to 2.7.x. Affected is the function amf_nnrf_try_old_amf_discovery_fall | MEDIUM | 6.9 | 24%ile | NVD | 2026-09-14 |
| CVE-2026-54559 | PocketSphinx is a small speech recognizer. Prior to 5.1.1, the trie language-model loaders in src/lm/ngram_model_trie.c | MEDIUM | 6.9 | 26%ile | NVD | 2026-09-14 |
| CVE-2026-90439 | NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_v3_module module. When using HTTP/3 with OpenSSL v | MEDIUM | 6.9 | 18%ile | NVD | 2026-09-15 |
| CVE-2026-93451 | snappy-java through 1.1.10.8 contains a buffer overflow vulnerability in typed Snappy.uncompress*Array methods that allo | MEDIUM | 6.9 | 22%ile | NVD | 2026-09-18 |
| CVE-2026-93331 | A vulnerability was identified in GPAC 26.08-DEV. This vulnerability affects the function gf_rtp_parse_ttxt of the file | MEDIUM | 6.9 | 24%ile | NVD | 2026-09-18 |
| CVE-2026-86138 | In libxml2 before 2.15.4, xmlDictAddQString in dict.c has an integer overflow and resultant heap-based buffer overflow. | MEDIUM | 6.9 | 2%ile | Microsoft | 2026-09-08 |
| CVE-2026-86142 | In libxml2 before 2.15.4, there is a heap-based buffer overflow in xmlXPtrEvalXPtrPart because of xmlXPtrEval xpointer l | MEDIUM | 6.9 | 5%ile | Microsoft | 2026-09-08 |
| CVE-2026-56132 | In libexpat before 2.8.2, there is a heap-based buffer overflow in doProlog in xmlparse.c because scaffold backing array | MEDIUM | 6.9 | 1%ile | Microsoft | 2026-06-09 |
| CVE-2026-16726 | Buffer overflow vulnerability in Panasonic Industry USB Driver for MINAS A5/A6 allows attackers to stop Windows. | MEDIUM | 6.8 | 1%ile | NVD | 2026-09-14 |
| CVE-2026-48914 | Qemu-kvm: heap buffer overflow in virtio-blk scsi request handling | MEDIUM | 6.7 | 5%ile | Microsoft | 2026-06-09 |
| CVE-2026-84537 | The issue was addressed with improved memory handling. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, | MEDIUM | 6.6 | 5%ile | NVD | 2026-09-14 |
| CVE-2026-18917 | Libvirt: integer overflow in nodegetfreepages rpc handler leading to heap buffer overflow | MEDIUM | 6.6 | 7%ile | Microsoft | 2026-08-11 |
| CVE-2026-45130 | Vim: Heap Buffer Overflow in spell file loading | MEDIUM | 6.6 | 16%ile | Microsoft | 2026-05-12 |
| CVE-2026-28934 | A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Golden Gate 27, macOS Sequoi | MEDIUM | 6.5 | 27%ile | NVD | 2026-09-14 |
| CVE-2026-84510 | A heap buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS | MEDIUM | 6.5 | 29%ile | NVD | 2026-09-14 |
| CVE-2026-86870 | A heap buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS | MEDIUM | 6.5 | 27%ile | NVD | 2026-09-14 |
| CVE-2026-76695 | Buffer overflow vulnerabilities exist in the underlying operating system of HPE Networking EdgeConnect SD-WAN Gateways t | MEDIUM | 6.5 | 31%ile | NVD | 2026-09-15 |
| CVE-2026-86358 | Dell Update Package Framework, versions prior to 26.07.03, contains a Stack-based Buffer Overflow vulnerability. An unau | MEDIUM | 6.5 | 22%ile | NVD | 2026-09-16 |
| CVE-2026-56135 | In NTFS-3G through 2026.2.25, a heap-based buffer overflow exists in the function build_inherited_id() in libntfs-3g/sec | MEDIUM | 6.5 | 1%ile | Microsoft | 2026-08-11 |
| CVE-2025-14178 | Heap buffer overflow in array_merge() | MEDIUM | 6.5 | 40%ile | Microsoft | 2025-12-09 |
| CVE-2025-14512 | Glib: integer overflow in glib gio attribute escaping causes heap buffer overflow | MEDIUM | 6.5 | 46%ile | Microsoft | 2025-12-09 |
| CVE-2025-54349 | In iperf before 3.19.1, iperf_auth.c has an off-by-one error and resultant heap-based buffer overflow. | MEDIUM | 6.5 | 34%ile | Microsoft | 2025-08-12 |
| CVE-2026-9149 | Libsolv: heap buffer overflow in libsolv repo_add_solv via negative maxsize from crafted .solv file | MEDIUM | 6.5 | 24%ile | Microsoft | 2026-05-12 |
| CVE-2026-9150 | Libsolv: stack-based buffer overflow in libsolv's debian metadata parser when handling sha384/sha512 checksums | MEDIUM | 6.5 | 35%ile | Microsoft | 2026-05-12 |
| CVE-2026-76699 | A buffer overflow vulnerability exists in a system service within the underlying operating system of HPE Networking Edge | MEDIUM | 6.4 | 6%ile | NVD | 2026-09-15 |
| CVE-2025-12464 | Qemu-kvm: stack buffer overflow in e1000 device via short frames in loopback mode | MEDIUM | 6.2 | 7%ile | Microsoft | 2025-10-14 |
| CVE-2024-34250 | A heap buffer overflow vulnerability was discovered in Bytecode Alliance wasm-micro-runtime v2.0.0 which allows a remote | MEDIUM | 6.2 | 27%ile | Microsoft | 2024-05-14 |
| CVE-2026-12725 | Dnsmasq: dnsmasq: heap buffer overflow in log_query() when logging unsupported ds/dnskey replies | MEDIUM | 5.9 | 44%ile | Microsoft | 2026-06-09 |
| CVE-2026-72098 | dm-verity: fix buffer overflow in FEC calculation | MEDIUM | 5.7 | 50%ile | Microsoft | 2026-08-11 |
| CVE-2024-29166 | HDF5 through 1.14.3 contains a buffer overflow in H5O__linfo_decode resulting in the corruption of the instruction point | MEDIUM | 5.7 | 12%ile | Microsoft | 2024-05-14 |
| CVE-2024-33875 | HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5O__layout_encode in H5Olayout.c resulting in the corru | MEDIUM | 5.7 | 14%ile | Microsoft | 2024-05-14 |
| CVE-2024-33876 | HDF5 Library through 1.14.3 has a heap buffer overflow in H5S__point_deserialize in H5Spoint.c. | MEDIUM | 5.7 | 14%ile | Microsoft | 2024-05-14 |
| CVE-2026-8376 | Perl versions through 5.43.10 have a heap buffer overflow when compiling regular expressions with a repeated fixed strin | MEDIUM | 5.7 | 38%ile | Microsoft | 2026-05-12 |
| CVE-2026-90686 | A vulnerability was found in GPAC up to f1219cde. This affects the function gf_bt_report of the file scene_manager/loade | MEDIUM | 5.5 | 42%ile | NVD | 2026-09-14 |
| CVE-2026-90698 | A security flaw has been discovered in memcached 1.6.41/1.6.42/1.6.43. This vulnerability affects the function try_read_ | MEDIUM | 5.5 | 42%ile | NVD | 2026-09-14 |
| CVE-2026-64714 | A memory corruption issue was addressed with improved bounds checking. This issue is fixed in iOS 18.7.10 and iPadOS 18. | MEDIUM | 5.5 | 6%ile | NVD | 2026-09-14 |
| CVE-2026-84489 | A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, iO | MEDIUM | 5.5 | 7%ile | NVD | 2026-09-14 |
| CVE-2026-84567 | The issue was addressed with improved memory handling. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, | MEDIUM | 5.5 | 2%ile | NVD | 2026-09-14 |
| CVE-2026-90852 | A vulnerability has been found in luben zstd-jni up to 1.5.7-13. This vulnerability affects the function ZstdCompressCtx | MEDIUM | 5.5 | 25%ile | NVD | 2026-09-15 |
| CVE-2026-91087 | A flaw has been found in GPAC up to f1219cde. This vulnerability affects the function gf_mo_get_od_id of the file compos | MEDIUM | 5.5 | 31%ile | NVD | 2026-09-15 |
| CVE-2026-76703 | A buffer overflow vulnerability exists in the web-based management interface of HPE Networking EdgeConnect SD-WAN Gatewa | MEDIUM | 5.5 | 21%ile | NVD | 2026-09-15 |
| CVE-2026-76705 | A buffer overflow vulnerability exists in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways. Successful exp | MEDIUM | 5.5 | 44%ile | NVD | 2026-09-15 |
| CVE-2026-92259 | Integer overflow or wraparound vulnerability in Samsung Opensource Escargot allows attackers with write access to the by | MEDIUM | 5.5 | 6%ile | NVD | 2026-09-15 |
| CVE-2026-92399 | A vulnerability was determined in GPAC 26.07.0. This affects the function rmt_client_handle_ws_frame of the file src/uti | MEDIUM | 5.5 | 50%ile | NVD | 2026-09-16 |
| CVE-2026-44605 | Rpm: heap buffer overflow in ndb slot table parsing | MEDIUM | 5.5 | 3%ile | Microsoft | 2026-08-11 |
| CVE-2026-68293 | net/mlx5: Fix MCIA register buffer overflow on 32 dword reads | MEDIUM | 5.5 | 4%ile | Microsoft | 2026-08-11 |
| CVE-2026-49760 | Stack Buffer Overflow in ei_s_print_term at Very Large Integer | MEDIUM | 5.5 | 3%ile | Microsoft | 2026-06-09 |
| CVE-2025-68347 | ALSA: firewire-motu: fix buffer overflow in hwdep read for DSP events | MEDIUM | 5.5 | 7%ile | Microsoft | 2025-12-09 |
| CVE-2025-40306 | orangefs: fix xattr related buffer overflow... | MEDIUM | 5.5 | 6%ile | Microsoft | 2025-12-09 |
| CVE-2026-82785 | Stack-based buffer overflow vulnerability exists in Remote I/O Coupler Unit (Server Type) CPSN-MCB271-*. Receiving a spe | MEDIUM | 5.3 | 22%ile | NVD | 2026-09-14 |
| CVE-2026-89020 | MikroTik RouterOS before 7.23.4 (long-term) and 7.24.2 (stable) contains a stack-based buffer overflow vulnerability in | MEDIUM | 5.3 | 21%ile | NVD | 2026-09-14 |
| CVE-2026-92880 | A weakness has been identified in vgmstream up to r2117. Impacted is the function vadpcm_read_coefs_be of the file src/c | MEDIUM | 5.3 | 16%ile | NVD | 2026-09-17 |
| CVE-2026-52492 | An integer overflow in the libtiff rgb2ycbcr utility's cvtRaster() function when computing strip buffer sizes can result | MEDIUM | 5.3 | 3%ile | Microsoft | 2026-08-11 |
| CVE-2025-8177 | LibTIFF thumbnail.c setrow buffer overflow | MEDIUM | 5.3 | 20%ile | Microsoft | 2025-07-08 |
| CVE-2026-34743 | XZ Utils: Buffer overflow in lzma_index_append() | MEDIUM | 5.3 | 38%ile | Microsoft | 2026-04-14 |
| CVE-2025-1365 | GNU elfutils eu-readelf readelf.c process_symtab buffer overflow | MEDIUM | 5.3 | 28%ile | Microsoft | 2025-02-11 |
| CVE-2025-1372 | GNU elfutils eu-readelf readelf.c print_string_section buffer overflow | MEDIUM | 5.3 | 29%ile | Microsoft | 2025-02-11 |
| CVE-2025-9390 | vim xxd xxd.c main buffer overflow | MEDIUM | 5.3 | 20%ile | Microsoft | 2025-08-12 |
| CVE-2026-19280 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a denial of service as a result of a buffer overflow in a PASE process. An auth | MEDIUM | 5.2 | 2%ile | NVD | 2026-09-14 |
| CVE-2026-10275 | OpenSC pkcs11-tool Key Generation pkcs11-tool.c test_kpgen_certwrite buffer overflow | MEDIUM | 5.0 | 22%ile | Microsoft | 2026-06-09 |
| CVE-2026-90781 | alsa-lib through 1.2.16.1 contains a stack buffer overflow in the __snd_ctl_ascii_elem_id_parse() function that writes o | MEDIUM | 4.8 | 8%ile | NVD | 2026-09-13 |
| CVE-2026-41989 | Libgcrypt before 1.12.2 sometimes allows a heap-based buffer overflow and denial of service via crafted ECDH ciphertext | MEDIUM | 4.8 | 8%ile | Microsoft | 2026-04-14 |
| CVE-2025-67873 | Capstone doesn't check Skipdata length, leading to cs_insn.bytes heap buffer overflow | MEDIUM | 4.8 | 15%ile | Microsoft | 2025-12-09 |
| CVE-2026-31789 | Heap Buffer Overflow in Hexadecimal Conversion | MEDIUM | 4.7 | 16%ile | Microsoft | 2026-04-14 |
| CVE-2026-68278 | drm/dp/mst: fix buffer overflows in sideband chunk accumulation | MEDIUM | 4.6 | 15%ile | Microsoft | 2026-08-11 |
| CVE-2026-91826 | Stack-based buffer overflow vulnerability in Samsung Opensource rLottie allows attackers to overflow buffers, leading to | MEDIUM | 4.4 | 2%ile | NVD | 2026-09-15 |
| CVE-2026-84571 | A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden | MEDIUM | 4.3 | 33%ile | NVD | 2026-09-14 |
| CVE-2026-5358 | Static buffer overflow in deprecated nis_local_principal | MEDIUM | 4.3 | — | Microsoft | 2026-04-14 |
| CVE-2016-9535 | MITRE CVE-2016-9535: LibTIFF Heap Buffer Overflow Vulnerability | MEDIUM | 4.0 | 92%ile | Microsoft | 2025-10-14 |
| CVE-2026-40510 | OpenSC < 0.27.0-rc1 Stack Buffer Overflow via piv_process_history() in card-piv.c | LOW | 3.8 | 22%ile | Microsoft | 2026-05-12 |
| CVE-2026-57226 | Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Pr | LOW | 3.7 | — | NVD | 2026-09-18 |
| CVE-2026-19086 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a denial of service as a result of a buffer overflow in a PASE process. An auth | LOW | 3.3 | 2%ile | NVD | 2026-09-14 |
| CVE-2026-63451 | Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Fr | LOW | 3.3 | — | NVD | 2026-09-18 |
| CVE-2025-1147 | GNU Binutils nm nm.c internal_strlen buffer overflow | LOW | 3.1 | 50%ile | Microsoft | 2025-02-11 |
| CVE-2023-24283 | Portable Puzzle Collection before 20230116.5782e29 was discovered to contain a buffer overflow which allows attackers to | LOW | 2.9 | 2%ile | NVD | 2026-09-14 |
| CVE-2023-24284 | Portable Puzzle Collection before 20230116.5782e29 was discovered to contain a buffer overflow via the is_markable() fun | LOW | 2.9 | 2%ile | NVD | 2026-09-14 |
| CVE-2023-24285 | Portable Puzzle Collection before 20230116.5782e29 was discovered to contain a buffer overflow which is triggered when a | LOW | 2.9 | 2%ile | NVD | 2026-09-14 |
| CVE-2023-24286 | Portable Puzzle Collection before 20230116.5782e29 was discovered to contain a buffer overflow via the game description | LOW | 2.9 | 1%ile | NVD | 2026-09-14 |
| CVE-2023-24287 | Portable Puzzle Collection before 20230116.5782e29 was discovered to contain a buffer overflow via the "M" command. | LOW | 2.9 | 2%ile | NVD | 2026-09-14 |
| CVE-2023-24291 | Portable Puzzle Collection before 20230116.5782e29 was discovered to contain a buffer overflow via the record length par | LOW | 2.9 | 2%ile | NVD | 2026-09-14 |
| CVE-2025-64031 | libarchive 3.8.x before 3.8.2 has a strcpy heap-based buffer overflow in the gzip writer via the original-filename field | LOW | 2.5 | 2%ile | NVD | 2026-09-14 |
| CVE-2026-91088 | A vulnerability has been found in GPAC up to f1219cde. This issue affects the function gf_url_concatenate_ex of the file | LOW | 2.4 | 2%ile | NVD | 2026-09-15 |
| CVE-2026-93894 | In Vinyl Cache before 9.0,2, workspace buffer overflow vulnerability was found in the .upper() and .lower() string type | LOW | 2.3 | — | NVD | 2026-09-18 |
| CVE-2026-90687 | A vulnerability was determined in GPAC up to f1219cde. This vulnerability affects the function gf_node_changed_internal | LOW | 2.1 | 22%ile | NVD | 2026-09-14 |
| CVE-2026-90714 | A weakness has been identified in marcobambini Gravity up to 0.9.7. The impacted element is an unknown function of the f | LOW | 2.1 | 19%ile | NVD | 2026-09-14 |
| CVE-2026-90791 | A vulnerability was detected in GPAC up to f1219cde. This vulnerability affects the function gf_node_unregister of the f | LOW | 2.1 | 22%ile | NVD | 2026-09-14 |
| CVE-2026-90793 | A vulnerability has been found in GPAC up to f1219cde. Impacted is the function gf_node_get_name of the file scenegraph/ | LOW | 2.1 | 26%ile | NVD | 2026-09-14 |
| CVE-2026-90794 | A vulnerability was found in GPAC up to f1219cde. The affected element is the function gf_sg_script_load of the file sce | LOW | 2.1 | 22%ile | NVD | 2026-09-14 |
| CVE-2026-90815 | A vulnerability has been found in FFmpeg up to 4.4.6/5.1.8/6.1.4/7.1.3/8.0.1. Affected by this issue is the function set | LOW | 2.1 | 16%ile | NVD | 2026-09-14 |
| CVE-2026-91086 | A security vulnerability has been detected in GPAC up to f1219cde. Affected by this issue is the function mpgviddmx_proc | LOW | 2.1 | 26%ile | NVD | 2026-09-15 |
| CVE-2026-91089 | A vulnerability was found in GPAC up to f1219cde. Impacted is the function gf_node_get_name_and_id of the file scenegrap | LOW | 2.1 | 22%ile | NVD | 2026-09-15 |
| CVE-2026-91091 | A vulnerability was identified in GPAC up to f1219cde. The impacted element is the function gf_node_list_insert_child of | LOW | 2.1 | 33%ile | NVD | 2026-09-15 |
| CVE-2026-90572 | A vulnerability was determined in davenardella snap7 up to 1.4.3. The affected element is the function TSnap7MicroClient | LOW | 2.0 | 34%ile | NVD | 2026-09-13 |
| CVE-2026-90716 | A vulnerability was detected in marcobambini Gravity up to 0.9.7. This impacts the function parse_number_expression of t | LOW | 2.0 | 19%ile | NVD | 2026-09-14 |
| CVE-2026-90577 | A vulnerability was detected in GPAC up to f1219cde. Affected by this vulnerability is the function gf_node_get_field of | LOW | 1.9 | 7%ile | NVD | 2026-09-13 |
| CVE-2026-90578 | A flaw has been found in GPAC up to f1219cde. Affected by this issue is the function gf_list_count of the file utils/lis | LOW | 1.9 | 6%ile | NVD | 2026-09-13 |
| CVE-2026-90610 | A vulnerability was found in GPAC up to f1219cde. This affects the function gf_svg_attributes_copy of the file scenegrap | LOW | 1.9 | 2%ile | NVD | 2026-09-14 |
| CVE-2026-90681 | A weakness has been identified in Matthias-Wandel jhead up to 3.3. This affects the function Get16u of the file exif.c o | LOW | 1.9 | 2%ile | NVD | 2026-09-14 |
| CVE-2026-90682 | A security vulnerability has been detected in Matthias-Wandel jhead up to 3.3. This impacts the function ProcessGpsInfo | LOW | 1.9 | 2%ile | NVD | 2026-09-14 |
| CVE-2026-90801 | A security flaw has been discovered in GNU Binutils 2.47. This impacts the function cache_bwrite of the file bfd/cache.c | LOW | 1.9 | 3%ile | NVD | 2026-09-14 |
| CVE-2026-90803 | A security vulnerability has been detected in GNU Binutils 2.47. Affected by this vulnerability is the function elf_x86_ | LOW | 1.9 | 2%ile | NVD | 2026-09-14 |
| CVE-2026-90824 | A vulnerability has been found in GPAC 26.07.0. Affected is the function gf_sg_dom_event_bubble of the file src/scenegra | LOW | 1.9 | 7%ile | NVD | 2026-09-14 |
| CVE-2026-90825 | A vulnerability was found in GPAC 26.07.0. Affected by this vulnerability is the function gf_node_unregister of the file | LOW | 1.9 | 6%ile | NVD | 2026-09-14 |
| CVE-2026-90827 | A vulnerability was identified in GPAC 26.07.0. This affects the function gf_node_deactivate_ex of the file scenegraph/b | LOW | 1.9 | 6%ile | NVD | 2026-09-14 |
| CVE-2026-90831 | A vulnerability was detected in GNU Binutils 2.47. The affected element is the function _bfd_elf_strtab_delref of the fi | LOW | 1.9 | 6%ile | NVD | 2026-09-14 |
| CVE-2026-92472 | A vulnerability was determined in GPAC 26.08-DEV. The affected element is the function gf_node_deactivate_ex of the file | LOW | 1.9 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-92473 | A vulnerability was identified in GPAC 26.08-DEV. The impacted element is the function gf_sg_command_del of the file src | LOW | 1.9 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-92474 | A security flaw has been discovered in GPAC 26.08-DEV. This affects the function gf_inline_get_proto_lib of the file src | LOW | 1.9 | 4%ile | NVD | 2026-09-16 |
| CVE-2026-92475 | A weakness has been identified in GPAC 26.08-DEV. This impacts the function wait_for_header_and_parse of the file src/ut | LOW | 1.9 | 4%ile | NVD | 2026-09-16 |
| CVE-2026-90804 | A vulnerability was detected in GNU Binutils 2.47. Affected by this issue is the function _bfd_elf_write_section_eh_fram | LOW | 0.9 | 2%ile | NVD | 2026-09-14 |
| CVE-2026-90826 | A vulnerability was determined in GPAC 26.07.0. Affected by this issue is the function gf_node_del of the file scenegrap | LOW | 0.9 | 5%ile | NVD | 2026-09-14 |
| CVE-2026-91090 | A vulnerability was determined in GPAC up to f1219cde. The affected element is the function gf_node_activate_ex of the f | LOW | 0.9 | 2%ile | NVD | 2026-09-15 |
| CVE-2026-75893 | In osmo-bsc from 1.0.1 through 1.14.1 a heap based buffer overflow issue was found in the ipaccess_proxy_read_msg() fun | UNKNOWN | — | — | NVD | 2026-09-18 |
| CVE-2026-76022 | Chromium CVE-2026-76022: Buffer overflow in Network | UNKNOWN | — | 40%ile | Microsoft | 2026-09-08 |
| CVE-2026-76036 | Chromium CVE-2026-76036: Buffer overflow in Dawn | UNKNOWN | — | 55%ile | Microsoft | 2026-09-08 |
| CVE-2026-84351 | Chromium: CVE-2026-84351 Buffer overflow in GPU | UNKNOWN | — | 20%ile | Microsoft | 2026-09-08 |
| CVE-2026-87430 | Chromium CVE-2026-87430: Buffer overflow in WebRTC | UNKNOWN | — | 43%ile | Microsoft | 2026-09-08 |
| CVE-2026-87527 | Chromium CVE-2026-87527: Buffer overflow in WebGL | UNKNOWN | — | 40%ile | Microsoft | 2026-09-08 |
| CVE-2026-87579 | Chromium CVE-2026-87579: Buffer overflow in WebRTC | UNKNOWN | — | 37%ile | Microsoft | 2026-09-08 |
| CVE-2026-87654 | Chromium CVE-2026-87654: Buffer overflow in ANGLE | UNKNOWN | — | 30%ile | Microsoft | 2026-09-08 |
| CVE-2026-55893 | Capstone SH disassembler `set_reg_n` heap buffer overflow via crafted SH2A FPU bytecode | UNKNOWN | — | 4%ile | Microsoft | 2026-08-11 |
| CVE-2026-73070 | Vim: Stack Buffer Overflow in the Vim Socket Server | UNKNOWN | — | 2%ile | Microsoft | 2026-08-11 |
| CVE-2026-73072 | Vim: Heap Buffer Overflow when Loading a Spell File | UNKNOWN | — | 3%ile | Microsoft | 2026-08-11 |
| CVE-2026-73074 | Vim: Heap Buffer Overflow in Text Property Handling | UNKNOWN | — | 1%ile | Microsoft | 2026-08-11 |
| CVE-2026-19138 | CVE-2026-19138 Heap buffer overflow in CrashReporting | UNKNOWN | — | 30%ile | Microsoft | 2026-08-11 |
| CVE-2026-19156 | CVE-2026-19156 Heap buffer overflow in Base | UNKNOWN | — | 18%ile | Microsoft | 2026-08-11 |
| CVE-2026-76034 | Chromium: CVE-2026-76034 Buffer overflow in WebGL | UNKNOWN | — | 52%ile | Microsoft | 2026-08-11 |
| CVE-2026-78891 | Chromium: CVE-2026-78891 Buffer overflow in WebRTC | UNKNOWN | — | 36%ile | Microsoft | 2026-08-11 |
| CVE-2026-78910 | Chromium: CVE-2026-78910 Buffer overflow in V8 | UNKNOWN | — | 41%ile | Microsoft | 2026-08-11 |
| CVE-2026-78948 | Chromium: CVE-2026-78948 Buffer overflow in WebGL | UNKNOWN | — | 41%ile | Microsoft | 2026-08-11 |
| CVE-2026-79130 | Chromium: CVE-2026-79130 Buffer overflow in ANGLE | UNKNOWN | — | 36%ile | Microsoft | 2026-08-11 |
| CVE-2026-79142 | Chromium: CVE-2026-79142 Buffer overflow in ANGLE | UNKNOWN | — | 36%ile | Microsoft | 2026-08-11 |
| CVE-2026-79216 | Chromium: CVE-2026-79216 Buffer overflow in Blink | UNKNOWN | — | 30%ile | Microsoft | 2026-08-11 |
| CVE-2026-79231 | Chromium: CVE-2026-79231 Buffer overflow in Media | UNKNOWN | — | 36%ile | Microsoft | 2026-08-11 |
| CVE-2026-41992 | Global Buffer Overflow in GNU gzip | UNKNOWN | — | 36%ile | Microsoft | 2026-06-09 |
| CVE-2026-9669 | bz2.BZ2Decompressor reuse after error can cause a stack buffer overflow | UNKNOWN | — | 51%ile | Microsoft | 2026-06-09 |
| CVE-2026-10898 | Chromium: CVE-2026-10898 Stack buffer overflow in GPU | UNKNOWN | — | 27%ile | Microsoft | 2026-06-09 |
| CVE-2026-10929 | Chromium: CVE-2026-10929 Heap buffer overflow in ANGLE | UNKNOWN | — | 24%ile | Microsoft | 2026-06-09 |
| CVE-2026-10946 | Chromium: CVE-2026-10946 Heap buffer overflow in Media | UNKNOWN | — | 31%ile | Microsoft | 2026-06-09 |
| CVE-2026-10949 | Chromium: CVE-2026-10949 Heap buffer overflow in Video | UNKNOWN | — | 24%ile | Microsoft | 2026-06-09 |
| CVE-2026-10993 | Chromium: CVE-2026-10993 Heap buffer overflow in Skia | UNKNOWN | — | 27%ile | Microsoft | 2026-06-09 |
| CVE-2026-10995 | Chromium: CVE-2026-10995 Heap buffer overflow in TabStrip | UNKNOWN | — | 29%ile | Microsoft | 2026-06-09 |
| CVE-2026-11024 | Chromium: CVE-2026-11024 Stack buffer overflow in Skia | UNKNOWN | — | 29%ile | Microsoft | 2026-06-09 |
| CVE-2026-11124 | Chromium: CVE-2026-11124 Heap buffer overflow in Skia | UNKNOWN | — | 15%ile | Microsoft | 2026-06-09 |
| CVE-2026-11143 | Chromium: CVE-2026-11143 Heap buffer overflow in Extensions | UNKNOWN | — | 7%ile | Microsoft | 2026-06-09 |
| CVE-2026-12010 | Chromium: CVE-2026-12010 Heap buffer overflow GPU | UNKNOWN | — | 20%ile | Microsoft | 2026-06-09 |
| CVE-2026-12447 | Chromium: CVE-2026-12447 Heap buffer overflow in WebRTC | UNKNOWN | — | 36%ile | Microsoft | 2026-06-09 |
| CVE-2026-12466 | Chromium: CVE-2026-12466 Heap buffer overflow in WebRTC | UNKNOWN | — | 36%ile | Microsoft | 2026-06-09 |
| CVE-2026-11979 | Stack-Based Buffer Overflow in libxml2 | UNKNOWN | — | 4%ile | Microsoft | 2026-06-09 |
| CVE-2026-27820 | zlib: Buffer Overflow in Zlib::GzipReader ungetc via large input leads to memory corruption | UNKNOWN | — | 45%ile | Microsoft | 2026-04-14 |
| CVE-2026-5272 | Chromium: CVE-2026-5272 Heap buffer overflow in GPU | UNKNOWN | — | 44%ile | Microsoft | 2026-04-14 |
| CVE-2026-5275 | Chromium: CVE-2026-5275 Heap buffer overflow in ANGLE | UNKNOWN | — | 37%ile | Microsoft | 2026-04-14 |
| CVE-2026-5448 | 1-2 Byte Buffer Overflow in wolfSSL_X509_notAfter/notBefore | UNKNOWN | — | 2%ile | Microsoft | 2026-04-14 |
| CVE-2026-5858 | Chromium: CVE-2026-5858 Heap buffer overflow in WebML | UNKNOWN | — | 48%ile | Microsoft | 2026-04-14 |
| CVE-2026-5864 | Chromium: CVE-2026-5864 Heap buffer overflow in WebAudio | UNKNOWN | — | 16%ile | Microsoft | 2026-04-14 |
| CVE-2026-5867 | Chromium: CVE-2026-5867 Heap buffer overflow in WebML | UNKNOWN | — | 21%ile | Microsoft | 2026-04-14 |
| CVE-2026-5868 | Chromium: CVE-2026-5868 Heap buffer overflow in ANGLE | UNKNOWN | — | 28%ile | Microsoft | 2026-04-14 |
| CVE-2026-5869 | Chromium: CVE-2026-5869 Heap buffer overflow in WebML | UNKNOWN | — | 16%ile | Microsoft | 2026-04-14 |
| CVE-2026-6296 | Chromium: CVE-2026-6296 Heap buffer overflow in ANGLE | UNKNOWN | — | 27%ile | Microsoft | 2026-04-14 |
| CVE-2026-6298 | Chromium: CVE-2026-6298 Heap buffer overflow in Skia | UNKNOWN | — | 21%ile | Microsoft | 2026-04-14 |
| CVE-2026-6305 | Chromium: CVE-2026-6305 Heap buffer overflow in PDFium | UNKNOWN | — | 27%ile | Microsoft | 2026-04-14 |
| CVE-2026-6306 | Chromium: CVE-2026-6306 Heap buffer overflow in PDFium | UNKNOWN | — | 27%ile | Microsoft | 2026-04-14 |
| CVE-2026-6361 | Chromium: CVE-2026-6361 Heap buffer overflow in PDFium | UNKNOWN | — | 24%ile | Microsoft | 2026-04-14 |
| CVE-2025-34297 | KissFFT Integer Overflow Heap Buffer Overflow via kiss_fft_alloc | UNKNOWN | — | 6%ile | Microsoft | 2025-12-09 |
| CVE-2025-11205 | Chromium: CVE-2025-11205 Heap buffer overflow in WebGPU | UNKNOWN | — | 25%ile | Microsoft | 2025-10-14 |
| CVE-2025-11458 | Chromium: CVE-2025-11458 Heap buffer overflow in Sync | UNKNOWN | — | 21%ile | Microsoft | 2025-10-14 |
| CVE-2025-11206 | Chromium: CVE-2025-11206 Heap buffer overflow in Video | UNKNOWN | — | 12%ile | Microsoft | 2025-10-14 |
| CVE-2025-0999 | Chromium: CVE-2025-0999 Heap buffer overflow in V8 | UNKNOWN | — | 49%ile | Microsoft | 2025-02-11 |
| CVE-2025-1006 | Chromium: CVE-2025-1426 Heap buffer overflow in GPU | UNKNOWN | — | 42%ile | Microsoft | 2025-02-11 |
| CVE-2024-27045 | drm/amd/display: Fix a potential buffer overflow in 'dp_dsc_clock_en_read()' | UNKNOWN | — | 24%ile | Microsoft | 2024-05-14 |
| CVE-2024-4559 | Chromium: CVE-2024-4559 Heap buffer overflow in WebAudio | UNKNOWN | — | 66%ile | Microsoft | 2024-05-14 |
| CVE-2024-5159 | Chromium: CVE-2024-5159 Heap buffer overflow in ANGLE | UNKNOWN | — | 50%ile | Microsoft | 2024-05-14 |
| CVE-2024-5160 | Chromium: CVE-2024-5160 Heap buffer overflow in Dawn | UNKNOWN | — | 48%ile | Microsoft | 2024-05-14 |
| CVE-2025-10502 | Chromium: CVE-2025-10502 Heap buffer overflow in ANGLE | UNKNOWN | — | 20%ile | Microsoft | 2025-09-09 |
| CVE-2015-3310 | Buffer overflow in the rc_mksid function in plugins/radius/util.c in Paul's PPP Package (ppp) 2.4.6 and earlier, when th | UNKNOWN | — | 92%ile | Microsoft | 2025-08-12 |
| CVE-2025-8879 | Chromium: CVE-2025-8879 Heap buffer overflow in libaom | UNKNOWN | — | 20%ile | Microsoft | 2025-08-12 |
| CVE-2026-7900 | Chromium: CVE-2026-7900 Heap buffer overflow in ANGLE | UNKNOWN | — | 14%ile | Microsoft | 2026-05-12 |
| CVE-2026-8509 | Chromium: CVE-2026-8509 Heap buffer overflow in WebML | UNKNOWN | — | 34%ile | Microsoft | 2026-05-12 |
| CVE-2026-8525 | Chromium: CVE-2026-8525 Heap buffer overflow in ANGLE | UNKNOWN | — | 14%ile | Microsoft | 2026-05-12 |
| CVE-2026-8529 | Chromium: CVE-2026-8529 Heap buffer overflow in Codecs | UNKNOWN | — | 23%ile | Microsoft | 2026-05-12 |
| CVE-2026-8531 | Chromium: CVE-2026-8531 Heap buffer overflow in WebML | UNKNOWN | — | 18%ile | Microsoft | 2026-05-12 |
| CVE-2026-8552 | Chromium: CVE-2026-8552 Heap buffer overflow in GPU | UNKNOWN | — | 10%ile | Microsoft | 2026-05-12 |
| CVE-2026-8560 | Chromium: CVE-2026-8560 Heap buffer overflow in SwiftShader | UNKNOWN | — | 17%ile | Microsoft | 2026-05-12 |
| CVE-2026-9119 | Chromium: CVE-2026-9119 Heap buffer overflow in WebRTC | UNKNOWN | — | 44%ile | Microsoft | 2026-05-12 |
| CVE-2026-9124 | Chromium: CVE-2026-9123 Heap buffer overflow in Chromecast | UNKNOWN | — | 18%ile | Microsoft | 2026-05-12 |
| CVE-2026-9915 | Chromium: CVE-2026-9915 Heap buffer overflow in ANGLE | UNKNOWN | — | 16%ile | Microsoft | 2026-05-12 |
| CVE-2026-9924 | Chromium: CVE-2026-9924 Heap buffer overflow in ANGLE | UNKNOWN | — | 16%ile | Microsoft | 2026-05-12 |
| CVE-2026-9926 | Chromium: CVE-2026-9926 Heap buffer overflow in ANGLE | UNKNOWN | — | 16%ile | Microsoft | 2026-05-12 |
| CVE-2026-9939 | Chromium: CVE-2026-9939 Heap buffer overflow in WebCodecs | UNKNOWN | — | 35%ile | Microsoft | 2026-05-12 |
| CVE-2026-9940 | Chromium: CVE-2026-9940 Heap buffer overflow in ANGLE | UNKNOWN | — | 18%ile | Microsoft | 2026-05-12 |
| CVE-2026-44662 | rust-openssl: Heap buffer overflow when encrypting with AES key-wrap-with-padding | UNKNOWN | — | 7%ile | Microsoft | 2026-05-12 |
| CVE-2017-14491 | OSSN-0082: = Heap and Stack based buffer overflows in dnsmasq prior to version 2.78 = | UNKNOWN | — | 100%ile | OpenStack | 2026-08-27 |
| FG-IR-26-161 | Stack buffer overflow in WAD | UNKNOWN | — | — | Fortinet | 2026-08-12 |
| FG-IR-26-148 | Stack Buffer Overflow in Log Report | UNKNOWN | — | — | Fortinet | 2026-07-14 |