211 CVEs — updated 2026-08-04 · vulnfeed
| CVE / ID | Title | Severity | CVSS | EPSS | Source | Date |
|---|---|---|---|---|---|---|
| CVE-2026-67822 | Tenda W6-S 1.0.0.4(510) contains a stack-based buffer overflow vulnerability in the /goform/wifiSSIDset endpoint. The fu | CRITICAL | 9.8 | 22%ile | NVD | 2026-07-31 |
| CVE-2026-22184 | zlib <= 1.3.1.2 untgz Global Buffer Overflow in TGZfname() | CRITICAL | 9.8 | 31%ile | Microsoft | 2026-01-13 |
| CVE-2026-5450 | scanf %mc off-by-one heap buffer overflow | CRITICAL | 9.8 | 40%ile | Microsoft | 2026-04-14 |
| CVE-2024-29157 | HDF5 through 1.14.3 contains a heap buffer overflow in H5HG_read resulting in the corruption of the instruction pointer | CRITICAL | 9.8 | 56%ile | Microsoft | 2024-05-14 |
| CVE-2024-29159 | HDF5 through 1.14.3 contains a buffer overflow in H5Z__filter_scaleoffset resulting in the corruption of the instruction | CRITICAL | 9.8 | 57%ile | Microsoft | 2024-05-14 |
| CVE-2024-32615 | HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5Z__nbit_decompress_one_byte in H5Znbit.c caused b | CRITICAL | 9.8 | 62%ile | Microsoft | 2024-05-14 |
| CVE-2024-32621 | HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5HG_read in H5HG.c (called from H5VL__native_blob_ | CRITICAL | 9.8 | 57%ile | Microsoft | 2024-05-14 |
| CVE-2024-33874 | HDF5 Library through 1.14.3 has a heap buffer overflow in H5O__mtime_new_encode in H5Omtime.c. | CRITICAL | 9.8 | 57%ile | Microsoft | 2024-05-14 |
| CVE-2024-29164 | HDF5 through 1.14.3 contains a stack buffer overflow in H5R__decode_heap resulting in the corruption of the instruction | CRITICAL | 9.8 | 55%ile | Microsoft | 2024-05-14 |
| CVE-2026-17680 | Heap buffer overflow in Color in Google Chrome on ChromeOS prior to 151.0.7922.72 allowed a remote attacker who had comp | CRITICAL | 9.6 | 33%ile | NVD | 2026-07-30 |
| CVE-2026-17758 | Heap buffer overflow in Dawn in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to potentially perform a | CRITICAL | 9.6 | 27%ile | NVD | 2026-07-30 |
| CVE-2026-67305 | FreeRDP Windows client before 3.29.0 contains a heap buffer overflow vulnerability in the clipboard virtual channel when | CRITICAL | 9.4 | 40%ile | NVD | 2026-08-01 |
| CVE-2026-67191 | Xlight FTP Server before 3.9.5 contains a pre-authentication heap buffer overflow vulnerability that allows remote unaut | CRITICAL | 9.3 | 44%ile | NVD | 2026-07-29 |
| CVE-2026-18588 | A vulnerability has been found in Wavlink WL-NU516U1 708c073-mt7628. This affects the function fgets of the file nas.cgi | CRITICAL | 9.3 | 46%ile | NVD | 2026-08-03 |
| CVE-2026-67192 | Xlight FTP Server before 3.9.5 contains a pre-authentication stack buffer overflow vulnerability that allows unauthentic | CRITICAL | 9.2 | 46%ile | NVD | 2026-07-29 |
| CVE-2026-18589 | A vulnerability was found in Wavlink WL-NU516U1 708c073-mt7628. This impacts the function change_password of the file na | HIGH | 8.9 | 46%ile | NVD | 2026-08-03 |
| CVE-2026-17935 | Heap buffer overflow in Codecs in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary co | HIGH | 8.8 | 26%ile | NVD | 2026-07-30 |
| CVE-2026-17951 | Heap buffer overflow in WebRTC in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to perform an out of bo | HIGH | 8.8 | 20%ile | NVD | 2026-07-30 |
| CVE-2026-41445 | KissFFT Integer Overflow Heap Buffer Overflow via kiss_fftndr_alloc() | HIGH | 8.8 | 21%ile | Microsoft | 2026-04-14 |
| CVE-2026-6637 | PostgreSQL refint allows stack buffer overflow and SQL injection | HIGH | 8.8 | 30%ile | Microsoft | 2026-05-12 |
| CVE-2026-48715 | radvdump's Route Information Option Parser has a Stack Buffer Overflow | HIGH | 8.8 | 10%ile | Microsoft | 2026-06-09 |
| CVE-2025-44904 | hdf5 v1.14.6 was discovered to contain a heap buffer overflow via the H5VM_memcpyvv function. | HIGH | 8.8 | 30%ile | Microsoft | 2025-05-13 |
| CVE-2024-29161 | HDF5 through 1.14.3 contains a heap buffer overflow in H5A__attr_release_table resulting in the corruption of the instru | HIGH | 8.8 | 55%ile | Microsoft | 2024-05-14 |
| CVE-2024-32623 | HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5VM_array_fill in H5VM.c (called from H5S_select_e | HIGH | 8.8 | 57%ile | Microsoft | 2024-05-14 |
| CVE-2024-33873 | HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5D__scatter_mem in H5Dscatgath.c. | HIGH | 8.8 | 57%ile | Microsoft | 2024-05-14 |
| CVE-2024-33877 | HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5T__conv_struct_opt in H5Tconv.c. | HIGH | 8.8 | 57%ile | Microsoft | 2024-05-14 |
| CVE-2026-12935 | The TL-WR940N v6 router contains a vulnerability in its RTSP connection tracking module that can lead to a stack-based b | HIGH | 8.7 | 53%ile | NVD | 2026-07-29 |
| CVE-2026-67248 | A stack-based buffer overflow vulnerability was found in the File Explorer on the ADM. The vulnerability occurs because | HIGH | 8.7 | 14%ile | NVD | 2026-07-30 |
| CVE-2026-67298 | FreeRDP versions 3.28.0 and earlier contain a heap buffer overflow in the server-side RAIL channel handler (rail_server_ | HIGH | 8.7 | 31%ile | NVD | 2026-08-01 |
| CVE-2026-68579 | FreeRDP before 3.30.0 (<= 3.29.0) contains a heap-based buffer overflow in the Windows clipboard client's CliprdrStream_ | HIGH | 8.7 | 19%ile | NVD | 2026-08-02 |
| CVE-2026-5435 | Potential buffer overflow in ns_sprintrrf TSIG handling path | HIGH | 8.6 | 15%ile | Microsoft | 2026-04-14 |
| CVE-2024-34402 | An issue was discovered in uriparser through 0.9.7. ComposeQueryEngine in UriQuery.c has an integer overflow via long ke | HIGH | 8.6 | 66%ile | Microsoft | 2024-05-14 |
| CVE-2026-56002 | libXfont2 PCF Font Parsing Heap Buffer Overflow | HIGH | 8.5 | 35%ile | Microsoft | 2026-07-14 |
| CVE-2026-56001 | libXfont2 BitmapScaleBitmaps Integer Overflow Heap Buffer Overflow | HIGH | 8.5 | 31%ile | Microsoft | 2026-07-14 |
| CVE-2026-56003 | libXfont2 computeProps Property Buffer Heap Buffer Overflow | HIGH | 8.5 | 30%ile | Microsoft | 2026-07-14 |
| CVE-2026-55999 | xorg-server / xwayland glamor font atlas Heap Buffer Overflow | HIGH | 8.5 | 19%ile | Microsoft | 2026-07-14 |
| CVE-2026-10535 | IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 is vulnerable to buffer overflow in setgid helper db2flacc. | HIGH | 8.4 | 2%ile | NVD | 2026-07-30 |
| CVE-2026-32316 | jq: Integer overflow in jvp_string_append() allows Heap-based Buffer Overflow | HIGH | 8.2 | 39%ile | Microsoft | 2026-04-14 |
| CVE-2026-49759 | Stack buffer overflow in SCTP error cause parsing in inet_drv allows remote VM crash | HIGH | 8.2 | 40%ile | Microsoft | 2026-06-09 |
| CVE-2026-6665 | PgBouncer buffer overflow in SCRAM | HIGH | 8.1 | 30%ile | Microsoft | 2026-05-12 |
| CVE-2026-56123 | socat 1.8.0.0 - 1.8.1.1 Heap Buffer Overflow via SOCKS5 Reply Parser | HIGH | 8.1 | 23%ile | Microsoft | 2026-06-09 |
| CVE-2026-7383 | Possible Heap Buffer Overflow in ASN.1 Multibyte String Conversion | HIGH | 8.1 | 47%ile | Microsoft | 2026-06-09 |
| CVE-2024-33599 | nscd: Stack-based buffer overflow in netgroup cache | HIGH | 8.1 | 68%ile | Microsoft | 2024-05-14 |
| CVE-2024-5564 | Libndp: buffer overflow in route information length field | HIGH | 8.1 | 64%ile | Microsoft | 2024-05-14 |
| CVE-2026-48372 | Format Plugins is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution i | HIGH | 7.8 | 8%ile | NVD | 2026-07-28 |
| CVE-2026-5056 | GStreamer qtdemux Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote atta | HIGH | 7.8 | 35%ile | NVD | 2026-07-29 |
| CVE-2026-10709 | A maliciously crafted FBX file, when parsed through Autodesk FBX SDK, can trigger a stack-based buffer overflow vulnerab | HIGH | 7.8 | — | NVD | 2026-08-04 |
| CVE-2026-10710 | A maliciously crafted FBX file, when parsed through Autodesk FBX SDK, can trigger a stack-based buffer overflow vulnerab | HIGH | 7.8 | — | NVD | 2026-08-04 |
| CVE-2026-64446 | staging: rtl8723bs: fix heap buffer overflow in rtw_cfg80211_set_wpa_ie() | HIGH | 7.8 | 9%ile | Microsoft | 2026-07-14 |
| CVE-2026-39853 | osslsigncode has a Stack Buffer Overflow via Unbounded Digest Copy During Signature Verification | HIGH | 7.8 | 6%ile | Microsoft | 2026-04-14 |
| CVE-2026-48864 | Libsolv: heap buffer overflow in libsolv repopagestore via unchecked decompression of malicious .solv page data | HIGH | 7.8 | 14%ile | Microsoft | 2026-05-12 |
| CVE-2025-39751 | ALSA: hda/ca0132: Fix buffer overflow in add_tuning_control | HIGH | 7.8 | — | Microsoft | 2025-09-09 |
| CVE-2025-38702 | fbdev: fix potential buffer overflow in do_register_framebuffer() | HIGH | 7.8 | 7%ile | Microsoft | 2025-09-09 |
| CVE-2026-43958 | Rrdtool: rrdtool: stack buffer overflow allows local code execution or denial of service | HIGH | 7.8 | 3%ile | Microsoft | 2026-06-09 |
| CVE-2026-50256 | Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in font alias resolution due to libxfo | HIGH | 7.8 | 5%ile | Microsoft | 2026-06-09 |
| CVE-2026-50258 | Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in xkb key types due to unchecked shif | HIGH | 7.8 | 6%ile | Microsoft | 2026-06-09 |
| CVE-2026-50259 | Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in xkb setmap request via mapwidths in | HIGH | 7.8 | 6%ile | Microsoft | 2026-06-09 |
| CVE-2026-11824 | SQLite before 3.53.2 Heap Buffer Overflow via FTS5 fts5ChunkIterate | HIGH | 7.8 | 7%ile | Microsoft | 2026-06-09 |
| CVE-2026-53143 | drm/amdkfd: Fix buffer overflow in SDMA queue checkpoint/restore on GFX11 | HIGH | 7.8 | 4%ile | Microsoft | 2026-06-09 |
| CVE-2023-6175 | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') in Wireshark | HIGH | 7.8 | 88%ile | Microsoft | 2025-07-08 |
| CVE-2023-0051 | Heap-based Buffer Overflow in vim/vim | HIGH | 7.8 | 41%ile | Microsoft | 2023-01-10 |
| CVE-2023-0288 | Heap-based Buffer Overflow in vim/vim | HIGH | 7.8 | 38%ile | Microsoft | 2023-01-10 |
| CVE-2023-0433 | Heap-based Buffer Overflow in vim/vim | HIGH | 7.8 | 43%ile | Microsoft | 2023-01-10 |
| CVE-2022-3715 | A flaw was found in the bash package, where a heap-buffer overflow can occur in valid parameter_transform. This issue ma | HIGH | 7.8 | 28%ile | Microsoft | 2023-01-10 |
| CVE-2026-68580 | FreeRDP before 3.29.0 contains integer overflow vulnerabilities in the audio input redirection channel (audin) across AL | HIGH | 7.7 | 15%ile | NVD | 2026-08-02 |
| CVE-2026-15722 | A stack buffer overflow flaw was found in 389 Directory Server (389-ds-base). The get_ruvelement_from_berval() function | HIGH | 7.5 | 41%ile | NVD | 2026-07-31 |
| CVE-2026-32203 | Microsoft Security Advisory CVE-2026-32203 – .NET and Visual Studio Denial of Service Vulnerability | HIGH | 7.5 | 78%ile | GitHub | 2026-07-28 |
| CVE-2026-48863 | Libsolv: stack-based buffer overflow in libsolv eddsa pgp signature verification allows denial of service | HIGH | 7.5 | 38%ile | Microsoft | 2026-07-14 |
| CVE-2026-55973 | 'dns-error-reporting: yes' leads to stack buffer overflow | HIGH | 7.5 | 21%ile | Microsoft | 2026-07-14 |
| CVE-2026-66035 | libssh2 Heap Buffer Overflow via ETM Cipher Negotiation | HIGH | 7.5 | 24%ile | Microsoft | 2026-07-14 |
| CVE-2026-0719 | Libsoup: signed to unsigned conversion error leading to stack-based buffer overflow in libsoup ntlm authentication | HIGH | 7.5 | 43%ile | Microsoft | 2026-01-13 |
| CVE-2026-5928 | Static buffer overflow in deprecated nis_local_principal | HIGH | 7.5 | 30%ile | Microsoft | 2026-04-14 |
| CVE-2026-33846 | Gnutls: gnutls: denial of service via heap buffer overflow in dtls handshake fragment reassembly | HIGH | 7.5 | 67%ile | Microsoft | 2026-05-12 |
| CVE-2026-44673 | libyang: lyb_read_string() integer overflow → heap buffer overflow | HIGH | 7.5 | 35%ile | Microsoft | 2026-05-12 |
| CVE-2025-40928 | JSON::XS before version 4.04 for Perl has an integer buffer overflow causing a segfault when parsing crafted JSON, enabl | HIGH | 7.5 | 45%ile | Microsoft | 2025-09-09 |
| CVE-2025-55558 | A buffer overflow occurs in pytorch v2.7.0 when a PyTorch model consists of torch.nn.Conv2d, torch.nn.functional.hardshr | HIGH | 7.5 | 35%ile | Microsoft | 2025-09-09 |
| CVE-2026-50031 | ipmi-oem in FreeIPMI before 1.6.18 has exploitable buffer overflows on response messages. The Intelligent Platform Manag | HIGH | 7.5 | 32%ile | Microsoft | 2026-06-09 |
| CVE-2026-34356 | Apache HTTP Server: ProxyPassReverseCookieMap buffer overflow | HIGH | 7.5 | 50%ile | Microsoft | 2026-06-09 |
| CVE-2026-34355 | Apache HTTP Server: mod_proxy_html buffer overflow | HIGH | 7.5 | 63%ile | Microsoft | 2026-06-09 |
| CVE-2026-18607 | A security vulnerability has been detected in Wavlink WN572, WN570H, WN573, WN529, WN530, WN531, WN535, etc. WN529, WN53 | HIGH | 7.4 | 36%ile | NVD | 2026-08-03 |
| CVE-2024-29165 | HDF5 through 1.14.3 contains a buffer overflow in H5Z__filter_fletcher32 resulting in the corruption of the instruction | HIGH | 7.4 | 14%ile | Microsoft | 2024-05-14 |
| CVE-2024-32619 | HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5T_copy_reopen in H5T.c resulting in the corruptio | HIGH | 7.4 | 15%ile | Microsoft | 2024-05-14 |
| CVE-2024-29158 | HDF5 through 1.14.3 contains a stack buffer overflow in H5FL_arr_malloc resulting in the corruption of the instruction p | HIGH | 7.4 | 13%ile | Microsoft | 2024-05-14 |
| CVE-2024-29160 | HDF5 through 1.14.3 contains a heap buffer overflow in H5HG__cache_heap_deserialize resulting in the corruption of the i | HIGH | 7.4 | 13%ile | Microsoft | 2024-05-14 |
| CVE-2024-29162 | HDF5 through 1.13.3 and/or 1.14.2 contains a stack buffer overflow in H5HG_read resulting in denial of service or potent | HIGH | 7.4 | 13%ile | Microsoft | 2024-05-14 |
| CVE-2024-29163 | HDF5 through 1.14.3 contains a heap buffer overflow in H5T__bit_find resulting in the corruption of the instruction poin | HIGH | 7.4 | 13%ile | Microsoft | 2024-05-14 |
| CVE-2024-32618 | HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5T__get_native_type in H5Tnative.c resulting in th | HIGH | 7.4 | 15%ile | Microsoft | 2024-05-14 |
| CVE-2024-32624 | HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5T__ref_mem_setnull in H5Tref.c (called from H5T__ | HIGH | 7.4 | 47%ile | Microsoft | 2024-05-14 |
| CVE-2026-42169 | A heap-buffer-overflow vulnerability exists in the APNG (Animated PNG) file loader of GIMP. This flaw occurs when the `f | HIGH | 7.3 | 3%ile | NVD | 2026-08-04 |
| CVE-2026-31789 | Heap Buffer Overflow in Hexadecimal Conversion | HIGH | 7.3 | 16%ile | Microsoft | 2026-04-14 |
| CVE-2025-44905 | hdf5 v1.14.6 was discovered to contain a heap buffer overflow via the H5Z__filter_scaleoffset function. | HIGH | 7.3 | 32%ile | Microsoft | 2025-05-13 |
| CVE-2026-15314 | Tapo P110 v1 smart Wi-Fi Plug contains an improper boundary validation vulnerability in the handling of authenticated HT | HIGH | 7.1 | — | NVD | 2026-08-04 |
| CVE-2023-50230 | BlueZ Phone Book Access Profile Heap-based Buffer Overflow Remote Code Execution Vulnerability | HIGH | 7.1 | 72%ile | Microsoft | 2024-05-14 |
| CVE-2023-50229 | BlueZ Phone Book Access Profile Heap-based Buffer Overflow Remote Code Execution Vulnerability | HIGH | 7.1 | 82%ile | Microsoft | 2024-05-14 |
| CVE-2026-14266 | 7-Zip XZ Decompression Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote | HIGH | 7.0 | 57%ile | NVD | 2026-07-29 |
| CVE-2025-5222 | Icu: stack buffer overflow in the srbroot::addtag function | HIGH | 7.0 | 24%ile | Microsoft | 2025-05-13 |
| CVE-2026-13307 | Autel MaxiCharger AC Elite Home USB Heap-based Buffer Overflow Arbitrary Code Execution Vulnerability. This vulnerabilit | MEDIUM | 6.8 | 27%ile | NVD | 2026-07-29 |
| CVE-2026-13309 | Autel MaxiCharger AC Elite Home NFC Stack-based Buffer Overflow Arbitrary Code Execution Vulnerability. This vulnerabili | MEDIUM | 6.8 | 14%ile | NVD | 2026-07-29 |
| CVE-2026-45130 | Vim: Heap Buffer Overflow in spell file loading | MEDIUM | 6.6 | 16%ile | Microsoft | 2026-05-12 |
| CVE-2025-46836 | net-tools Stack-based Buffer Overflow vulnerability | MEDIUM | 6.6 | 8%ile | Microsoft | 2025-05-13 |
| CVE-2026-16277 | Rpcbind: rpcbind: stack buffer overflow in rpcinfo rpcbaddrlist() | MEDIUM | 6.5 | 20%ile | Microsoft | 2026-07-14 |
| CVE-2026-16461 | Rpcbind: rpcbind: stack buffer overflow in rpcinfo rpcbdump() short-mode version-list formatting | MEDIUM | 6.5 | 14%ile | Microsoft | 2026-07-14 |
| CVE-2026-9150 | Libsolv: stack-based buffer overflow in libsolv's debian metadata parser when handling sha384/sha512 checksums | MEDIUM | 6.5 | 34%ile | Microsoft | 2026-05-12 |
| CVE-2026-9149 | Libsolv: heap buffer overflow in libsolv repo_add_solv via negative maxsize from crafted .solv file | MEDIUM | 6.5 | 24%ile | Microsoft | 2026-05-12 |
| CVE-2022-3437 | A heap-based buffer overflow vulnerability was found in Samba within the GSSAPI unwrap_des() and unwrap_des3() routines | MEDIUM | 6.5 | 89%ile | Microsoft | 2023-01-10 |
| CVE-2024-31950 | In FRRouting (FRR) through 9.1 there can be a buffer overflow and daemon crash in ospf_te_parse_ri for OSPF LSA packets | MEDIUM | 6.5 | 41%ile | Microsoft | 2024-04-09 |
| CVE-2024-31951 | In the Opaque LSA Extended Link parser in FRRouting (FRR) through 9.1 there can be a buffer overflow and daemon crash in | MEDIUM | 6.5 | 43%ile | Microsoft | 2024-04-09 |
| CVE-2024-23594 | Lenovo: CVE-2024-23594 Stack buffer overflow in Lenovo system recovery boot manager | MEDIUM | 6.4 | 15%ile | Microsoft | 2024-04-09 |
| CVE-2024-34250 | A heap buffer overflow vulnerability was discovered in Bytecode Alliance wasm-micro-runtime v2.0.0 which allows a remote | MEDIUM | 6.2 | 26%ile | Microsoft | 2024-05-14 |
| CVE-2026-20466 | In sec boot, there is a possible escalation of privilege due to a heap buffer overflow. This could lead to local escalat | MEDIUM | 6.1 | 6%ile | NVD | 2026-08-03 |
| CVE-2022-46456 | NASM v2.16 was discovered to contain a global buffer overflow in the component dbgdbg_typevalue at /output/outdbg.c. | MEDIUM | 6.1 | 28%ile | Microsoft | 2023-01-10 |
| CVE-2026-12725 | Dnsmasq: dnsmasq: heap buffer overflow in log_query() when logging unsupported ds/dnskey replies | MEDIUM | 5.9 | 33%ile | Microsoft | 2026-06-09 |
| CVE-2026-8376 | Perl versions through 5.43.10 have a heap buffer overflow when compiling regular expressions with a repeated fixed strin | MEDIUM | 5.7 | 36%ile | Microsoft | 2026-05-12 |
| CVE-2024-33876 | HDF5 Library through 1.14.3 has a heap buffer overflow in H5S__point_deserialize in H5Spoint.c. | MEDIUM | 5.7 | 14%ile | Microsoft | 2024-05-14 |
| CVE-2024-29166 | HDF5 through 1.14.3 contains a buffer overflow in H5O__linfo_decode resulting in the corruption of the instruction point | MEDIUM | 5.7 | 12%ile | Microsoft | 2024-05-14 |
| CVE-2024-33875 | HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5O__layout_encode in H5Olayout.c resulting in the corru | MEDIUM | 5.7 | 14%ile | Microsoft | 2024-05-14 |
| CVE-2026-20478 | In Audio HAL, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local denial of | MEDIUM | 5.5 | 1%ile | NVD | 2026-08-03 |
| CVE-2026-20480 | In Audio HAL, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local denial of | MEDIUM | 5.5 | 1%ile | NVD | 2026-08-03 |
| CVE-2026-18583 | A weakness has been identified in mz-automation libiec61850 up to 1.6.1. This issue affects the function checkDataSetAcc | MEDIUM | 5.5 | 40%ile | NVD | 2026-08-03 |
| CVE-2026-6694 | A flaw was found in GIMP's file-png plugin. A remote attacker can exploit this by crafting a malicious Animated Portable | MEDIUM | 5.5 | 5%ile | NVD | 2026-08-03 |
| CVE-2026-49760 | Stack Buffer Overflow in ei_s_print_term at Very Large Integer | MEDIUM | 5.5 | 4%ile | Microsoft | 2026-06-09 |
| CVE-2025-37891 | ALSA: ump: Fix buffer overflow at UMP SysEx message conversion | MEDIUM | 5.5 | 12%ile | Microsoft | 2025-05-13 |
| CVE-2025-37927 | iommu/amd: Fix potential buffer overflow in parse_ivrs_acpihid | MEDIUM | 5.5 | 11%ile | Microsoft | 2025-05-13 |
| CVE-2025-37979 | ASoC: qcom: Fix sc7280 lpass potential buffer overflow | MEDIUM | 5.5 | 8%ile | Microsoft | 2025-05-13 |
| CVE-2022-48281 | processCropSelections in tools/tiffcrop.c in LibTIFF through 4.5.0 has a heap-based buffer overflow (e.g. "WRITE of size | MEDIUM | 5.5 | 36%ile | Microsoft | 2023-01-10 |
| CVE-2026-18585 | A vulnerability was detected in GL.iNet MT3000, MT6000, BE9300, BE3600, MT3600BE, E5800, BE6500, MT5000, X3000, XE3000 a | MEDIUM | 5.3 | 22%ile | NVD | 2026-08-03 |
| CVE-2025-8177 | LibTIFF thumbnail.c setrow buffer overflow | MEDIUM | 5.3 | 19%ile | Microsoft | 2025-07-08 |
| CVE-2026-10275 | OpenSC pkcs11-tool Key Generation pkcs11-tool.c test_kpgen_certwrite buffer overflow | MEDIUM | 5.0 | 22%ile | Microsoft | 2026-06-09 |
| CVE-2026-56416 | Possible heap buffer overflow when validator canonicalizes RDATA that contains domain name | MEDIUM | 4.8 | 2%ile | Microsoft | 2026-07-14 |
| CVE-2026-18321 | Buffer overflow in NTPsec's Zyfer refclock allows local attacker to crash ntpd | MEDIUM | 4.7 | 0%ile | NVD | 2026-07-31 |
| CVE-2026-5358 | Static buffer overflow in deprecated nis_local_principal | MEDIUM | 4.3 | — | Microsoft | 2026-04-14 |
| CVE-2024-31580 | PyTorch before v2.2.0 was discovered to contain a heap buffer overflow vulnerability in the component /runtime/vararg_fu | MEDIUM | 4.0 | 13%ile | Microsoft | 2024-04-09 |
| CVE-2026-40510 | OpenSC < 0.27.0-rc1 Stack Buffer Overflow via piv_process_history() in card-piv.c | LOW | 3.8 | 12%ile | Microsoft | 2026-05-12 |
| CVE-2026-18784 | A vulnerability was found in o6 open62541 up to 1.5.5. This issue affects the function UA_Client_readNodeClassAttribute | LOW | 1.9 | — | NVD | 2026-08-04 |
| CVE-2026-18785 | A vulnerability was determined in o6 open62541 ca356b088ada7dee824d1b4acd07c1ff07ce242b. Impacted is the function UA_Cli | LOW | 1.9 | — | NVD | 2026-08-04 |
| CVE-2026-67673 | A stack-based buffer overflow vulnerability exists in the cmd_edl function of OreSat Firmware v1.0. The vulnerability is | UNKNOWN | — | 4%ile | NVD | 2026-08-03 |
| CVE-2026-64565 | In the Linux kernel, the following vulnerability has been resolved: Input: ims-pcu - fix heap-buffer-overflow in ims_pc | UNKNOWN | — | 7%ile | NVD | 2026-08-04 |
| CVE-2026-16418 | Chromium: CVE-2026-16418 Stack buffer overflow in V8 | UNKNOWN | — | 19%ile | Microsoft | 2026-07-14 |
| CVE-2026-15767 | Chromium: CVE-2026-15767 Heap buffer overflow in libyuv | UNKNOWN | — | 27%ile | Microsoft | 2026-07-14 |
| CVE-2026-13798 | Chromium: CVE-2026-13798 Heap buffer overflow in Chromecast | UNKNOWN | — | 28%ile | Microsoft | 2026-07-14 |
| CVE-2026-13884 | Chromium: CVE-2026-13884 Heap buffer overflow in Chromecast | UNKNOWN | — | 21%ile | Microsoft | 2026-07-14 |
| CVE-2026-13976 | Chromium: CVE-2026-13976 Heap buffer overflow in Storage | UNKNOWN | — | 8%ile | Microsoft | 2026-07-14 |
| CVE-2026-14385 | Chromium: CVE-2026-14385 Heap buffer overflow in ANGLE | UNKNOWN | — | 25%ile | Microsoft | 2026-07-14 |
| CVE-2026-14427 | Chromium: CVE-2026-14427 Heap buffer overflow in Skia | UNKNOWN | — | 16%ile | Microsoft | 2026-07-14 |
| CVE-2026-40468 | Heap buffer overflow in gawk | UNKNOWN | — | 10%ile | Microsoft | 2026-07-14 |
| CVE-2026-53910 | Heap-based Buffer Overflow in GNU diffutils | UNKNOWN | — | 17%ile | Microsoft | 2026-07-14 |
| CVE-2026-40553 | Stack-based buffer overflow in gawk | UNKNOWN | — | 21%ile | Microsoft | 2026-07-14 |
| CVE-2026-40469 | Heap buffer overflow in gawk | UNKNOWN | — | 12%ile | Microsoft | 2026-07-14 |
| CVE-2026-56392 | Heap-based Buffer Overflow in GNU coreutils | UNKNOWN | — | 5%ile | Microsoft | 2026-07-14 |
| CVE-2026-5275 | Chromium: CVE-2026-5275 Heap buffer overflow in ANGLE | UNKNOWN | — | 28%ile | Microsoft | 2026-04-14 |
| CVE-2026-5272 | Chromium: CVE-2026-5272 Heap buffer overflow in GPU | UNKNOWN | — | 37%ile | Microsoft | 2026-04-14 |
| CVE-2026-5867 | Chromium: CVE-2026-5867 Heap buffer overflow in WebML | UNKNOWN | — | 21%ile | Microsoft | 2026-04-14 |
| CVE-2026-5868 | Chromium: CVE-2026-5868 Heap buffer overflow in ANGLE | UNKNOWN | — | 26%ile | Microsoft | 2026-04-14 |
| CVE-2026-5869 | Chromium: CVE-2026-5869 Heap buffer overflow in WebML | UNKNOWN | — | 15%ile | Microsoft | 2026-04-14 |
| CVE-2026-5864 | Chromium: CVE-2026-5864 Heap buffer overflow in WebAudio | UNKNOWN | — | 15%ile | Microsoft | 2026-04-14 |
| CVE-2026-5858 | Chromium: CVE-2026-5858 Heap buffer overflow in WebML | UNKNOWN | — | 46%ile | Microsoft | 2026-04-14 |
| CVE-2026-6296 | Chromium: CVE-2026-6296 Heap buffer overflow in ANGLE | UNKNOWN | — | 26%ile | Microsoft | 2026-04-14 |
| CVE-2026-6361 | Chromium: CVE-2026-6361 Heap buffer overflow in PDFium | UNKNOWN | — | 23%ile | Microsoft | 2026-04-14 |
| CVE-2026-6306 | Chromium: CVE-2026-6306 Heap buffer overflow in PDFium | UNKNOWN | — | 26%ile | Microsoft | 2026-04-14 |
| CVE-2026-6305 | Chromium: CVE-2026-6305 Heap buffer overflow in PDFium | UNKNOWN | — | 26%ile | Microsoft | 2026-04-14 |
| CVE-2026-6298 | Chromium: CVE-2026-6298 Heap buffer overflow in Skia | UNKNOWN | — | 21%ile | Microsoft | 2026-04-14 |
| CVE-2026-34743 | XZ Utils: Buffer overflow in lzma_index_append() | UNKNOWN | — | 37%ile | Microsoft | 2026-04-14 |
| CVE-2026-5448 | 1-2 Byte Buffer Overflow in wolfSSL_X509_notAfter/notBefore | UNKNOWN | — | 2%ile | Microsoft | 2026-04-14 |
| CVE-2026-5264 | DTLS 1.3 ACK heap buffer overflow | UNKNOWN | — | 37%ile | Microsoft | 2026-04-14 |
| CVE-2026-27820 | zlib: Buffer Overflow in Zlib::GzipReader ungetc via large input leads to memory corruption | UNKNOWN | — | 44%ile | Microsoft | 2026-04-14 |
| CVE-2026-5295 | Stack Buffer Overflow in wolfSSL PKCS7 wc_PKCS7_DecryptOri() via Oversized OID | UNKNOWN | — | 7%ile | Microsoft | 2026-04-14 |
| CVE-2026-5447 | Heap buffer overflow in CertFromX509() via AuthorityKeyIdentifier | UNKNOWN | — | 13%ile | Microsoft | 2026-04-14 |
| CVE-2026-44662 | rust-openssl: Heap buffer overflow when encrypting with AES key-wrap-with-padding | UNKNOWN | — | 7%ile | Microsoft | 2026-05-12 |
| CVE-2026-7900 | Chromium: CVE-2026-7900 Heap buffer overflow in ANGLE | UNKNOWN | — | 14%ile | Microsoft | 2026-05-12 |
| CVE-2026-8560 | Chromium: CVE-2026-8560 Heap buffer overflow in SwiftShader | UNKNOWN | — | 16%ile | Microsoft | 2026-05-12 |
| CVE-2026-8552 | Chromium: CVE-2026-8552 Heap buffer overflow in GPU | UNKNOWN | — | 9%ile | Microsoft | 2026-05-12 |
| CVE-2026-8531 | Chromium: CVE-2026-8531 Heap buffer overflow in WebML | UNKNOWN | — | 18%ile | Microsoft | 2026-05-12 |
| CVE-2026-8529 | Chromium: CVE-2026-8529 Heap buffer overflow in Codecs | UNKNOWN | — | 22%ile | Microsoft | 2026-05-12 |
| CVE-2026-8509 | Chromium: CVE-2026-8509 Heap buffer overflow in WebML | UNKNOWN | — | 32%ile | Microsoft | 2026-05-12 |
| CVE-2026-8525 | Chromium: CVE-2026-8525 Heap buffer overflow in ANGLE | UNKNOWN | — | 14%ile | Microsoft | 2026-05-12 |
| CVE-2026-9119 | Chromium: CVE-2026-9119 Heap buffer overflow in WebRTC | UNKNOWN | — | 42%ile | Microsoft | 2026-05-12 |
| CVE-2026-9124 | Chromium: CVE-2026-9123 Heap buffer overflow in Chromecast | UNKNOWN | — | 18%ile | Microsoft | 2026-05-12 |
| CVE-2026-9915 | Chromium: CVE-2026-9915 Heap buffer overflow in ANGLE | UNKNOWN | — | 16%ile | Microsoft | 2026-05-12 |
| CVE-2026-9924 | Chromium: CVE-2026-9924 Heap buffer overflow in ANGLE | UNKNOWN | — | 16%ile | Microsoft | 2026-05-12 |
| CVE-2026-9926 | Chromium: CVE-2026-9926 Heap buffer overflow in ANGLE | UNKNOWN | — | 16%ile | Microsoft | 2026-05-12 |
| CVE-2026-9939 | Chromium: CVE-2026-9939 Heap buffer overflow in WebCodecs | UNKNOWN | — | 34%ile | Microsoft | 2026-05-12 |
| CVE-2026-9940 | Chromium: CVE-2026-9940 Heap buffer overflow in ANGLE | UNKNOWN | — | 18%ile | Microsoft | 2026-05-12 |
| CVE-2025-10502 | Chromium: CVE-2025-10502 Heap buffer overflow in ANGLE | UNKNOWN | — | 18%ile | Microsoft | 2025-09-09 |
| CVE-2024-5835 | Chromium: CVE-2024-5835 Heap buffer overflow in Tab Groups | UNKNOWN | — | 41%ile | Microsoft | 2024-06-11 |
| CVE-2024-5844 | Chromium: CVE-2024-5844 Heap buffer overflow in Tab Strip | UNKNOWN | — | 42%ile | Microsoft | 2024-06-11 |
| CVE-2024-5493 | Chromium: CVE-2024-5493 Heap buffer overflow in WebRTC | UNKNOWN | — | 51%ile | Microsoft | 2024-06-11 |
| CVE-2026-10898 | Chromium: CVE-2026-10898 Stack buffer overflow in GPU | UNKNOWN | — | 26%ile | Microsoft | 2026-06-09 |
| CVE-2026-10946 | Chromium: CVE-2026-10946 Heap buffer overflow in Media | UNKNOWN | — | 30%ile | Microsoft | 2026-06-09 |
| CVE-2026-10949 | Chromium: CVE-2026-10949 Heap buffer overflow in Video | UNKNOWN | — | 23%ile | Microsoft | 2026-06-09 |
| CVE-2026-10993 | Chromium: CVE-2026-10993 Heap buffer overflow in Skia | UNKNOWN | — | 26%ile | Microsoft | 2026-06-09 |
| CVE-2026-10995 | Chromium: CVE-2026-10995 Heap buffer overflow in TabStrip | UNKNOWN | — | 28%ile | Microsoft | 2026-06-09 |
| CVE-2026-11024 | Chromium: CVE-2026-11024 Stack buffer overflow in Skia | UNKNOWN | — | 28%ile | Microsoft | 2026-06-09 |
| CVE-2026-11143 | Chromium: CVE-2026-11143 Heap buffer overflow in Extensions | UNKNOWN | — | 7%ile | Microsoft | 2026-06-09 |
| CVE-2026-11124 | Chromium: CVE-2026-11124 Heap buffer overflow in Skia | UNKNOWN | — | 14%ile | Microsoft | 2026-06-09 |
| CVE-2026-10929 | Chromium: CVE-2026-10929 Heap buffer overflow in ANGLE | UNKNOWN | — | 23%ile | Microsoft | 2026-06-09 |
| CVE-2026-12010 | Chromium: CVE-2026-12010 Heap buffer overflow GPU | UNKNOWN | — | 19%ile | Microsoft | 2026-06-09 |
| CVE-2026-12447 | Chromium: CVE-2026-12447 Heap buffer overflow in WebRTC | UNKNOWN | — | 35%ile | Microsoft | 2026-06-09 |
| CVE-2026-12466 | Chromium: CVE-2026-12466 Heap buffer overflow in WebRTC | UNKNOWN | — | 35%ile | Microsoft | 2026-06-09 |
| CVE-2026-9669 | bz2.BZ2Decompressor reuse after error can cause a stack buffer overflow | UNKNOWN | — | 34%ile | Microsoft | 2026-06-09 |
| CVE-2026-11979 | Stack-Based Buffer Overflow in libxml2 | UNKNOWN | — | 4%ile | Microsoft | 2026-06-09 |
| CVE-2025-4096 | Chromium: CVE-2025-4096 Heap buffer overflow in HTML | UNKNOWN | — | 39%ile | Microsoft | 2025-05-13 |
| CVE-2023-0129 | Chromium:CVE-2023-0129: Heap buffer overflow in Network Service | UNKNOWN | — | 40%ile | Microsoft | 2023-01-10 |
| CVE-2023-0138 | Chromium:CVE-2023-0138: Heap buffer overflow in libphonenumber | UNKNOWN | — | 50%ile | Microsoft | 2023-01-10 |
| CVE-2024-27045 | drm/amd/display: Fix a potential buffer overflow in 'dp_dsc_clock_en_read()' | UNKNOWN | — | 23%ile | Microsoft | 2024-05-14 |
| CVE-2024-4559 | Chromium: CVE-2024-4559 Heap buffer overflow in WebAudio | UNKNOWN | — | 60%ile | Microsoft | 2024-05-14 |
| CVE-2024-5159 | Chromium: CVE-2024-5159 Heap buffer overflow in ANGLE | UNKNOWN | — | 47%ile | Microsoft | 2024-05-14 |
| CVE-2024-5160 | Chromium: CVE-2024-5160 Heap buffer overflow in Dawn | UNKNOWN | — | 46%ile | Microsoft | 2024-05-14 |
| CVE-2024-3516 | Chromium: CVE-2024-3516 Heap buffer overflow in ANGLE | UNKNOWN | — | 59%ile | Microsoft | 2024-04-09 |
| OSS-20260802-2 | [CVE requested] iwd <= 3.12: stack buffer overflow in the 802.11k beacon report handler, plus three parser/validatio | UNKNOWN | — | — | OSS-Security | 2026-08-02 |
| FG-IR-26-148 | Stack Buffer Overflow in Log Report | UNKNOWN | — | — | Fortinet | 2026-07-14 |
| FG-IR-26-121 | Heap-based buffer overflow in oftpd daemon | UNKNOWN | — | — | Fortinet | 2026-04-14 |