178 CVEs — updated 2026-09-18 · vulnfeed
| CVE / ID | Title | Severity | CVSS | EPSS | Source | Date |
|---|---|---|---|---|---|---|
| CVE-2026-57433 | Storable versions before 3.41 for Perl have a signed integer overflow when deserializing a crafted SX_HOOK record | CRITICAL | 9.8 | 30%ile | Microsoft | 2026-07-14 |
| CVE-2026-63881 | drm/amdkfd: fix a vulnerability of integer overflow in kfd debugger | CRITICAL | 9.8 | 8%ile | Microsoft | 2026-07-14 |
| CVE-2026-91728 | Integer overflow in V8 in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to execute arbitrary code insid | CRITICAL | 9.6 | 35%ile | NVD | 2026-09-15 |
| CVE-2026-77408 | RabbitMQ amqp091-go is a Go AMQP 0.9.1 client. Prior to 1.13.0, the writeShortstr function in write.go casts the byte le | CRITICAL | 9.1 | 35%ile | NVD | 2026-09-16 |
| CVE-2024-5197 | Integer overflow in libvpx | CRITICAL | 9.1 | 56%ile | Microsoft | 2024-06-11 |
| CVE-2026-65390 | An integer overflow was addressed with improved input validation. This issue is fixed in Safari 26.6.1, iOS 26.6.1 and i | HIGH | 8.8 | 33%ile | NVD | 2026-09-14 |
| CVE-2026-65391 | An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in Safari 26.6.1, iOS 26.6 | HIGH | 8.8 | 33%ile | NVD | 2026-09-14 |
| CVE-2026-11378 | IBM MQ could allow an authenticated attacker to cause a denial of service or potentially execute arbitrary code due to a | HIGH | 8.8 | — | NVD | 2026-09-18 |
| CVE-2026-11725 | IBM MQ could allow an authenticated attacker to cause a denial of service or potentially execute arbitrary code due to a | HIGH | 8.8 | — | NVD | 2026-09-18 |
| CVE-2026-54571 | ESPAsyncWebServer is an asynchronous HTTP and WebSocket server library for ESP32, ESP8266, RP2040 and RP2350. Prior to 3 | HIGH | 8.7 | 23%ile | NVD | 2026-09-17 |
| CVE-2026-56001 | libXfont2 BitmapScaleBitmaps Integer Overflow Heap Buffer Overflow | HIGH | 8.5 | 33%ile | Microsoft | 2026-07-14 |
| CVE-2026-0194 | In multiple locations, there is a possible permission bypass due to an integer overflow. This could lead to local escala | HIGH | 8.4 | 0%ile | NVD | 2026-09-15 |
| CVE-2026-89806 | In the Linux kernel, the following vulnerability has been resolved: drm/sysfb: ofdrm: Fix integer overflow in fb_size c | HIGH | 8.4 | 8%ile | NVD | 2026-09-16 |
| CVE-2026-76685 | A vulnerability exists in the proxy packet processing logic of the affected component where it improperly processes malf | HIGH | 8.1 | 50%ile | NVD | 2026-09-15 |
| CVE-2026-43618 | Rsync < 3.4.3 Integer Overflow Information Disclosure | HIGH | 8.1 | 54%ile | Microsoft | 2026-05-12 |
| CVE-2026-90948 | A flaw was found in GIMP's ICO file loader. When processing an ICO file containing an embedded PNG image, an integer ove | HIGH | 7.8 | 14%ile | NVD | 2026-09-14 |
| CVE-2026-55351 | In VPU, there is a possible out-of-bounds write due to an integer overflow. This could lead to local escalation of privi | HIGH | 7.8 | 0%ile | NVD | 2026-09-15 |
| CVE-2026-92248 | A flaw was found in the file-psd plugin in GIMP. When generating a thumbnail preview for a specially crafted PSD (Photos | HIGH | 7.8 | 8%ile | NVD | 2026-09-15 |
| CVE-2026-25290 | Memory Corruption when validating large data buffers from external sources using addition to check buffer length. | HIGH | 7.8 | 1%ile | NVD | 2026-09-17 |
| CVE-2026-90435 | In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx5: Fix integer overflow of user QP buffer s | HIGH | 7.8 | 8%ile | NVD | 2026-09-17 |
| CVE-2026-46655 | virtio-win provides Windows paravirtualized drivers for QEMU and KVM. From mm210 until mm320, the Viosock driver permits | HIGH | 7.8 | — | NVD | 2026-09-18 |
| CVE-2026-68108 | drm/amdgpu/vce: fix integer overflow in image size | HIGH | 7.8 | 3%ile | Microsoft | 2026-08-11 |
| CVE-2026-53068 | drm/komeda: fix integer overflow in AFBC framebuffer size check | HIGH | 7.8 | 2%ile | Microsoft | 2026-06-09 |
| CVE-2026-58207 | NATS Server: Remote crash via integer overflow in Connz pagination | HIGH | 7.7 | 45%ile | Microsoft | 2026-07-14 |
| CVE-2026-84544 | An integer overflow was addressed with improved input validation. This issue is fixed in macOS Golden Gate 27, macOS Seq | HIGH | 7.5 | 37%ile | NVD | 2026-09-14 |
| CVE-2026-63126 | Wire provides gRPC and protocol buffers for Android, Kotlin, Swift, and Java. Prior to 6.4.5 and 7.0.0-alpha04, Wire pro | HIGH | 7.5 | 51%ile | NVD | 2026-09-16 |
| CVE-2026-93652 | Integer overflow in µD3TN v0.15.0 TCPCLv3 handshake causes heap overflow, allowing remote attackers to reliably cause Do | HIGH | 7.5 | — | NVD | 2026-09-18 |
| CVE-2026-10744 | IBM MQ for HPE NonStop 8.1.0 through 8.1.0.40 could allow an authenticated attacker to cause a denial of service or pote | HIGH | 7.5 | — | NVD | 2026-09-18 |
| CVE-2026-20339 | ClamAV PESpin File Format Processing Integer Overflow Vulnerability | HIGH | 7.5 | 39%ile | Microsoft | 2026-08-11 |
| CVE-2026-44673 | libyang: lyb_read_string() integer overflow → heap buffer overflow | HIGH | 7.5 | 44%ile | Microsoft | 2026-05-12 |
| CVE-2026-6664 | PgBouncer integer overflow in PgBouncer network packet parsing | HIGH | 7.5 | 52%ile | Microsoft | 2026-05-12 |
| CVE-2026-55969 | Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift: integer overflow in TProtocol: | HIGH | 7.5 | 49%ile | Microsoft | 2026-07-14 |
| CVE-2026-57432 | Perl versions through 5.43.10 have an integer overflow in S_measure_struct leading to an out-of-bounds heap read in pack | HIGH | 7.5 | 12%ile | Microsoft | 2026-07-14 |
| CVE-2026-55203 | HAProxy - Integer Overflow in FCGI Demux Record Length Field | HIGH | 7.5 | 28%ile | Microsoft | 2026-06-09 |
| CVE-2026-25541 | Bytes is vulnerable to integer overflow in BytesMut::reserve | HIGH | 7.5 | 45%ile | Microsoft | 2026-02-10 |
| CVE-2026-84620 | An integer overflow was addressed with improved input validation. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 2 | HIGH | 7.3 | 4%ile | NVD | 2026-09-14 |
| CVE-2026-90141 | In the Linux kernel, the following vulnerability has been resolved: ipvs: fix integer overflow in ftp helper port/addre | HIGH | 7.3 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-7598 | libssh2 userauth.c userauth_password integer overflow | HIGH | 7.3 | 40%ile | Microsoft | 2026-05-12 |
| CVE-2026-0861 | Integer overflow in memalign leads to heap corruption | HIGH | 7.3 | 33%ile | Microsoft | 2026-01-13 |
| CVE-2026-84548 | An integer overflow was addressed with improved input validation. This issue is fixed in macOS Golden Gate 27, macOS Seq | HIGH | 7.1 | 4%ile | NVD | 2026-09-14 |
| CVE-2026-91960 | FreeRDP versions before 3.31.0 contain an integer overflow in WinPR's Stream_EnsureRemainingCapacity function that allow | HIGH | 7.1 | 38%ile | NVD | 2026-09-15 |
| CVE-2026-89818 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/vcn: fix integer overflow in dec_msg buf | HIGH | 7.1 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89927 | In the Linux kernel, the following vulnerability has been resolved: KVM: x86: hyper-v: Clamp stimer deadline to avoid l | HIGH | 7.1 | 8%ile | NVD | 2026-09-16 |
| CVE-2026-90246 | In the Linux kernel, the following vulnerability has been resolved: apparmor: fix integer overflow in verify_tags() bou | HIGH | 7.1 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-46062 | ntfs3: fix integer overflow in run_unpack() volume boundary check | HIGH | 7.1 | 4%ile | Microsoft | 2026-05-12 |
| CVE-2025-24528 | In MIT Kerberos 5 (aka krb5) before 1.22 (with incremental propagation), there is an integer overflow for a large update | HIGH | 7.1 | 43%ile | Microsoft | 2026-01-13 |
| CVE-2026-58050 | libssh2 - Integer Overflow in publickey Subsystem Attribute Allocation | HIGH | 7.0 | 38%ile | Microsoft | 2026-06-09 |
| CVE-2026-90473 | msgpack-java through 0.9.12 contains an integer overflow vulnerability in MessageUnpacker.skipValue() when processing MA | MEDIUM | 6.9 | 16%ile | NVD | 2026-09-12 |
| CVE-2026-90593 | A vulnerability was determined in embedded-graphics up to 0.8.2. This affects the function ImageRaw::draw_sub_image of t | MEDIUM | 6.9 | 32%ile | NVD | 2026-09-13 |
| CVE-2026-90596 | A weakness has been identified in embedded-graphics up to 0.8.2 on 32-bit. Impacted is the function ImageRaw::new/bytes_ | MEDIUM | 6.9 | 27%ile | NVD | 2026-09-13 |
| CVE-2026-86138 | In libxml2 before 2.15.4, xmlDictAddQString in dict.c has an integer overflow and resultant heap-based buffer overflow. | MEDIUM | 6.9 | 2%ile | Microsoft | 2026-09-08 |
| CVE-2026-86143 | In xmlIO in libxml2 before 2.15.4, an inconsistency in xmlOutputWriteCallback and xmlBufUse causes negative lengths to r | MEDIUM | 6.9 | 3%ile | Microsoft | 2026-09-08 |
| CVE-2026-86139 | In libxml2 before 2.15.4, xmlURIEscapeStr in uri.c has an integer overflow. | MEDIUM | 6.9 | 2%ile | Microsoft | 2026-09-08 |
| CVE-2026-56403 | libexpat before 2.8.2 has an integer overflow in storeAtts. | MEDIUM | 6.9 | 4%ile | Microsoft | 2026-06-09 |
| CVE-2026-56404 | libexpat before 2.8.2 has an integer overflow in addBinding. | MEDIUM | 6.9 | 11%ile | Microsoft | 2026-06-09 |
| CVE-2026-56405 | libexpat before 2.8.2 has an integer overflow in getAttributeId. | MEDIUM | 6.9 | 2%ile | Microsoft | 2026-06-09 |
| CVE-2026-56406 | libexpat before 2.8.2 has an integer overflow in XML_ParseBuffer because it lacked a check that was present in XML_Parse | MEDIUM | 6.9 | 4%ile | Microsoft | 2026-06-09 |
| CVE-2026-56407 | libexpat before 2.8.2 has an integer overflow in doProlog that is related to storeEntityValue and entity textLen. | MEDIUM | 6.9 | 4%ile | Microsoft | 2026-06-09 |
| CVE-2026-56410 | xmlwf in libexpat before 2.8.2 has an integer overflow in resolveSystemId. | MEDIUM | 6.9 | 11%ile | Microsoft | 2026-06-09 |
| CVE-2026-56411 | xmlwf in libexpat before 2.8.2 has an integer overflow in endDoctypeDecl via NOTATION declarations. | MEDIUM | 6.9 | 11%ile | Microsoft | 2026-06-09 |
| CVE-2026-61722 | FluidSynth is a software synthesizer based on the SoundFont 2 specifications. From 2.5.0 until 2.5.6, the native DLS par | MEDIUM | 6.8 | — | NVD | 2026-09-18 |
| CVE-2026-61723 | FluidSynth is a software synthesizer based on the SoundFont 2 specifications. From 2.5.0 until 2.5.6, the native DLS par | MEDIUM | 6.8 | — | NVD | 2026-09-18 |
| CVE-2026-56889 | In multiple locations, there is a possible permission bypass due to an integer overflow. This could lead to local escala | MEDIUM | 6.7 | 0%ile | NVD | 2026-09-15 |
| CVE-2026-43788 | An integer overflow was addressed with improved input validation. This issue is fixed in macOS Golden Gate 27. Processin | MEDIUM | 6.6 | 4%ile | NVD | 2026-09-14 |
| CVE-2026-18917 | Libvirt: integer overflow in nodegetfreepages rpc handler leading to heap buffer overflow | MEDIUM | 6.6 | 7%ile | Microsoft | 2026-08-11 |
| CVE-2026-84487 | An integer overflow was addressed with improved input validation. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 2 | MEDIUM | 6.5 | 30%ile | NVD | 2026-09-14 |
| CVE-2026-84536 | An integer underflow was addressed with improved input validation. This issue is fixed in macOS Golden Gate 27, macOS Se | MEDIUM | 6.5 | 34%ile | NVD | 2026-09-14 |
| CVE-2026-89158 | PCRE2 before 10.48, on 32-bit platforms, has a pcre2_compile_32 integer overflow and resultant out-of-bounds write. | MEDIUM | 6.5 | 13%ile | Microsoft | 2026-09-08 |
| CVE-2026-70462 | rsync 3.1.0 < 3.5.0 Signed Integer Overflow via MSG_IO_TIMEOUT | MEDIUM | 6.5 | 18%ile | Microsoft | 2026-08-11 |
| CVE-2026-56409 | xmlwf in libexpat before 2.8.2 has an integer overflow for the output filename when -d outputDir is used. | MEDIUM | 6.5 | 2%ile | Microsoft | 2026-06-09 |
| CVE-2026-43894 | jq: Wild stack write via signed-integer overflow in decNumber D2U() macro | MEDIUM | 6.2 | 5%ile | Microsoft | 2026-05-12 |
| CVE-2026-55093 | Tract is a tiny, no-nonsense, self-contained TensorFlow and ONNX inference toolkit. Prior to 0.21.16, 0.22.2, and 0.23.1 | MEDIUM | 6.1 | 10%ile | NVD | 2026-09-14 |
| CVE-2026-53021 | scsi: target: core: Fix integer overflow in UNMAP bounds check | MEDIUM | 6.1 | 2%ile | Microsoft | 2026-06-09 |
| CVE-2026-84554 | An integer overflow was addressed with improved input validation. This issue is fixed in macOS Golden Gate 27, macOS Seq | MEDIUM | 5.9 | 33%ile | NVD | 2026-09-14 |
| CVE-2026-90715 | A security vulnerability has been detected in marcobambini Gravity up to 0.9.7. This affects an unknown function of the | MEDIUM | 5.5 | 31%ile | NVD | 2026-09-14 |
| CVE-2026-65408 | An integer overflow was addressed with improved input validation. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 2 | MEDIUM | 5.5 | 5%ile | NVD | 2026-09-14 |
| CVE-2026-65413 | An integer overflow was addressed with improved input validation. This issue is fixed in macOS Golden Gate 27, macOS Seq | MEDIUM | 5.5 | 6%ile | NVD | 2026-09-14 |
| CVE-2026-84517 | An integer overflow was addressed with improved input validation. This issue is fixed in macOS Golden Gate 27, macOS Seq | MEDIUM | 5.5 | 6%ile | NVD | 2026-09-14 |
| CVE-2026-92259 | Integer overflow or wraparound vulnerability in Samsung Opensource Escargot allows attackers with write access to the by | MEDIUM | 5.5 | 6%ile | NVD | 2026-09-15 |
| CVE-2026-65969 | OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / a | MEDIUM | 5.5 | — | NVD | 2026-09-18 |
| CVE-2026-68289 | tipc: fix integer overflow in tipc_recvmsg() and tipc_recvstream() | MEDIUM | 5.5 | 6%ile | Microsoft | 2026-08-11 |
| CVE-2026-46198 | batman-adv: fix integer overflow on buff_pos | MEDIUM | 5.5 | 21%ile | Microsoft | 2026-05-12 |
| CVE-2026-3196 | Qemu-kvm: virtio-snd: integer overflow leading to unbounded memory allocation | MEDIUM | 5.5 | 1%ile | Microsoft | 2026-06-09 |
| CVE-2026-52948 | i2c: dev: prevent integer overflow in I2C_TIMEOUT ioctl | MEDIUM | 5.5 | 3%ile | Microsoft | 2026-06-09 |
| CVE-2026-54679 | jq: potential integer overflow in jvp_string_append | MEDIUM | 5.5 | 1%ile | Microsoft | 2026-06-09 |
| CVE-2022-48468 | protobuf-c before 1.4.1 has an unsigned integer overflow in parse_required_member. | MEDIUM | 5.5 | 31%ile | Microsoft | 2023-04-11 |
| CVE-2026-91962 | FreeRDP before 3.31.0 contains an integer overflow in the audin Apple backends when processing FramesPerPacket values fr | MEDIUM | 5.3 | 16%ile | NVD | 2026-09-15 |
| CVE-2025-55554 | pytorch v2.8.0 was discovered to contain an integer overflow in the component torch.nan_to_num-.long(). | MEDIUM | 5.3 | 25%ile | Microsoft | 2025-09-09 |
| CVE-2026-72854 | msgpack-c Integer Overflow in msgpack_unpacker_expand_buffer Causes a False-Success Undersized Reservation | MEDIUM | 5.3 | 2%ile | Microsoft | 2026-08-11 |
| CVE-2026-52492 | An integer overflow in the libtiff rgb2ycbcr utility's cvtRaster() function when computing strip buffer sizes can result | MEDIUM | 5.3 | 3%ile | Microsoft | 2026-08-11 |
| CVE-2026-91746 | Integer overflow in Compositing in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to obtain cross-origin | MEDIUM | 4.3 | 14%ile | NVD | 2026-09-15 |
| CVE-2026-40531 | An integer overflow or wraparound vulnerability in File Operation in Synology DiskStation Manager (DSM) before 7.2.1-690 | MEDIUM | 4.3 | 27%ile | NVD | 2026-09-18 |
| CVE-2026-84449 | libheif is a HEIF and AVIF file format decoder and encoder. Prior to 1.19.6, Op_RGB24_32_to_YCbCr::convert_colorspace() | LOW | 3.7 | — | NVD | 2026-09-18 |
| CVE-2026-57226 | Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Pr | LOW | 3.7 | — | NVD | 2026-09-18 |
| CVE-2026-91142 | A flaw was found in Cockpit. An integer overflow vulnerability in the `do_lastlog()` function, specifically in the offse | LOW | 3.6 | — | NVD | 2026-09-18 |
| CVE-2026-46023 | dm mirror: fix integer overflow in create_dirty_log() | LOW | 3.4 | 3%ile | Microsoft | 2026-05-12 |
| CVE-2026-39824 | Invoking integer overflow in NewNTUnicodeString in golang.org/x/sys/windows | LOW | 3.3 | 2%ile | Microsoft | 2026-05-12 |
| CVE-2026-10722 | cilium ebpf LoadCollectionSpec/LoadCollectionSpecFromReader btf.go loadRawSpec integer overflow | LOW | 3.3 | 8%ile | Microsoft | 2026-06-09 |
| CVE-2023-24288 | An issue in Portable Puzzle Collection before 20230116.5782e29 allows attackers to cause a Denial of Service (DoS) via c | LOW | 2.9 | 1%ile | NVD | 2026-09-14 |
| CVE-2026-16517 | Libarchive: libarchive: signed integer overflow in archive_write_zip_header | LOW | 2.9 | 0%ile | Microsoft | 2026-07-14 |
| CVE-2026-93311 | A vulnerability was detected in Freedesktop Poppler 26.07.0. This issue affects the function SampledFunction::SampledFun | LOW | 2.1 | 25%ile | NVD | 2026-09-18 |
| CVE-2026-93313 | A vulnerability was found in Freedesktop Poppler 26.07.0. The impacted element is the function JBIG2Stream::readCodeTabl | LOW | 2.1 | 16%ile | NVD | 2026-09-18 |
| CVE-2026-93314 | A vulnerability was determined in Freedesktop Poppler 26.07.0. This affects the function FoFiTrueType::mapCodeToGID of t | LOW | 2.1 | 16%ile | NVD | 2026-09-18 |
| CVE-2026-89876 | In the Linux kernel, the following vulnerability has been resolved: media: tda18250: fix possible integer overflow Int | UNKNOWN | — | 12%ile | NVD | 2026-09-16 |
| CVE-2026-90200 | In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: fix integer overflow in MFT cluster valid | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-87630 | Chromium CVE-2026-87630: Integer overflow in WebRTC | UNKNOWN | — | 14%ile | Microsoft | 2026-09-08 |
| CVE-2025-10891 | Chromium: CVE-2025-10891 Integer overflow in V8 | UNKNOWN | — | 94%ile | Microsoft | 2025-09-09 |
| CVE-2025-10892 | Chromium: CVE-2025-10892 Integer overflow in V8 | UNKNOWN | — | 21%ile | Microsoft | 2025-09-09 |
| CVE-2026-19167 | CVE-2026-19167 Integer overflow in GPU | UNKNOWN | — | 30%ile | Microsoft | 2026-08-11 |
| CVE-2026-19174 | CVE-2026-19174 Integer overflow in V8 | UNKNOWN | — | 37%ile | Microsoft | 2026-08-11 |
| CVE-2026-78950 | Chromium: CVE-2026-78950 Integer overflow in WebRTC | UNKNOWN | — | 45%ile | Microsoft | 2026-08-11 |
| CVE-2026-79215 | Chromium: CVE-2026-79215 Integer overflow in WebGL | UNKNOWN | — | 31%ile | Microsoft | 2026-08-11 |
| CVE-2026-79223 | Chromium: CVE-2026-79223 Integer overflow in Chromium | UNKNOWN | — | 14%ile | Microsoft | 2026-08-11 |
| CVE-2026-79292 | Chromium: CVE-2026-79292 Integer overflow in Chromecast | UNKNOWN | — | 35%ile | Microsoft | 2026-08-11 |
| CVE-2026-7568 | Signed integer overflow in metaphone() | UNKNOWN | — | 39%ile | Microsoft | 2026-05-12 |
| CVE-2026-10009 | Chromium: CVE-2026-10009 Integer overflow in Skia | UNKNOWN | — | 13%ile | Microsoft | 2026-05-12 |
| CVE-2026-10015 | Chromium: CVE-2026-10015 Integer overflow in WTF | UNKNOWN | — | 17%ile | Microsoft | 2026-05-12 |
| CVE-2026-10018 | Chromium: CVE-2026-10018 Integer overflow in ANGLE | UNKNOWN | — | 9%ile | Microsoft | 2026-05-12 |
| CVE-2026-10019 | Chromium: CVE-2026-10019 Integer overflow in ANGLE | UNKNOWN | — | 9%ile | Microsoft | 2026-05-12 |
| CVE-2026-7896 | Chromium: CVE-2026-7896 Integer overflow in Blink | UNKNOWN | — | 21%ile | Microsoft | 2026-05-12 |
| CVE-2026-7903 | Chromium: CVE-2026-7903 Integer overflow in ANGLE | UNKNOWN | — | 13%ile | Microsoft | 2026-05-12 |
| CVE-2026-7912 | Chromium: CVE-2026-7912 Integer overflow in GPU | UNKNOWN | — | 5%ile | Microsoft | 2026-05-12 |
| CVE-2026-7942 | Chromium: CVE-2026-7942 Integer overflow in ANGLE | UNKNOWN | — | 9%ile | Microsoft | 2026-05-12 |
| CVE-2026-7969 | Chromium: CVE-2026-7969 Integer overflow in Network | UNKNOWN | — | 13%ile | Microsoft | 2026-05-12 |
| CVE-2026-7973 | Chromium: CVE-2026-7973 Integer overflow in Dawn | UNKNOWN | — | 13%ile | Microsoft | 2026-05-12 |
| CVE-2026-8510 | Chromium: CVE-2026-8510 Integer overflow in Skia | UNKNOWN | — | 12%ile | Microsoft | 2026-05-12 |
| CVE-2026-8519 | Chromium: CVE-2026-8519 Integer overflow in ANGLE | UNKNOWN | — | 15%ile | Microsoft | 2026-05-12 |
| CVE-2026-8532 | Chromium: CVE-2026-8532 Integer overflow in XML | UNKNOWN | — | 21%ile | Microsoft | 2026-05-12 |
| CVE-2026-8534 | Chromium: CVE-2026-8534 Integer overflow in GPU | UNKNOWN | — | 11%ile | Microsoft | 2026-05-12 |
| CVE-2026-8559 | Chromium: CVE-2026-8559 Integer overflow in Internationalization | UNKNOWN | — | 8%ile | Microsoft | 2026-05-12 |
| CVE-2026-8567 | Chromium: CVE-2026-8567 Integer overflow in ANGLE | UNKNOWN | — | 8%ile | Microsoft | 2026-05-12 |
| CVE-2026-8573 | Chromium: CVE-2026-8573 Integer overflow in Codecs | UNKNOWN | — | 15%ile | Microsoft | 2026-05-12 |
| CVE-2026-8577 | Chromium: CVE-2026-8577 Integer overflow in Fonts | UNKNOWN | — | 17%ile | Microsoft | 2026-05-12 |
| CVE-2026-9882 | Chromium: CVE-2026-9882 Integer overflow in ANGLE | UNKNOWN | — | 13%ile | Microsoft | 2026-05-12 |
| CVE-2026-9909 | Chromium: CVE-2026-9909 Integer overflow in Skia | UNKNOWN | — | 17%ile | Microsoft | 2026-05-12 |
| CVE-2026-9911 | Chromium: CVE-2026-9911 Integer overflow in ANGLE | UNKNOWN | — | 11%ile | Microsoft | 2026-05-12 |
| CVE-2026-9960 | Chromium: CVE-2026-9960 Integer overflow in PDFium | UNKNOWN | — | 15%ile | Microsoft | 2026-05-12 |
| CVE-2026-9966 | Chromium: CVE-2026-9966 Integer overflow in XML | UNKNOWN | — | 12%ile | Microsoft | 2026-05-12 |
| CVE-2026-9968 | Chromium: CVE-2026-9968 Integer overflow in V8 | UNKNOWN | — | 21%ile | Microsoft | 2026-05-12 |
| CVE-2026-9998 | Chromium: CVE-2026-9998 Integer overflow in Skia | UNKNOWN | — | 7%ile | Microsoft | 2026-05-12 |
| CVE-2026-8295 | Integer overflow in simdjson | UNKNOWN | — | 21%ile | Microsoft | 2026-05-12 |
| CVE-2026-16554 | Integer Overflow Leading to Heap Buffer Overflow in cJSON | UNKNOWN | — | 22%ile | Microsoft | 2026-07-14 |
| CVE-2026-13796 | Chromium: CVE-2026-13796 Integer overflow in Chromecast | UNKNOWN | — | 25%ile | Microsoft | 2026-07-14 |
| CVE-2026-13801 | Chromium: CVE-2026-13801 Integer overflow in Chromecast | UNKNOWN | — | 23%ile | Microsoft | 2026-07-14 |
| CVE-2026-13841 | Chromium: CVE-2026-13841 Integer overflow in Skia | UNKNOWN | — | 23%ile | Microsoft | 2026-07-14 |
| CVE-2026-13938 | Chromium: CVE-2026-13938 Integer overflow in Fonts | UNKNOWN | — | 28%ile | Microsoft | 2026-07-14 |
| CVE-2026-13974 | Chromium: CVE-2026-13974 Integer overflow in Safe Browsing | UNKNOWN | — | 22%ile | Microsoft | 2026-07-14 |
| CVE-2026-14069 | Chromium: CVE-2026-14069 Integer overflow in WebNN | UNKNOWN | — | 22%ile | Microsoft | 2026-07-14 |
| CVE-2026-14391 | Chromium: CVE-2026-14391 Integer overflow in ANGLE | UNKNOWN | — | 21%ile | Microsoft | 2026-07-14 |
| CVE-2026-14430 | Chromium: CVE-2026-14430 Integer overflow in V8 | UNKNOWN | — | 35%ile | Microsoft | 2026-07-14 |
| CVE-2026-15108 | Chromium: CVE-2026-15108 Integer overflow in Extensions API | UNKNOWN | — | 10%ile | Microsoft | 2026-07-14 |
| CVE-2026-16416 | Chromium: CVE-2026-16416 Integer overflow in Chromecast | UNKNOWN | — | 4%ile | Microsoft | 2026-07-14 |
| CVE-2026-17673 | Chromium: CVE-2026-17673 Integer overflow in QUIC | UNKNOWN | — | 40%ile | Microsoft | 2026-07-14 |
| CVE-2026-17682 | Chromium: CVE-2026-17682 Integer overflow in ANGLE | UNKNOWN | — | 41%ile | Microsoft | 2026-07-14 |
| CVE-2026-17705 | Chromium: CVE-2026-17705 Integer overflow in libxml | UNKNOWN | — | 46%ile | Microsoft | 2026-07-14 |
| CVE-2026-17717 | Chromium: CVE-2026-17717 Integer overflow in ANGLE | UNKNOWN | — | 41%ile | Microsoft | 2026-07-14 |
| CVE-2026-17726 | Chromium: CVE-2026-17726 Integer overflow in WebGL | UNKNOWN | — | 35%ile | Microsoft | 2026-07-14 |
| CVE-2026-10921 | Chromium: CVE-2026-10921 Integer overflow in Dawn | UNKNOWN | — | 21%ile | Microsoft | 2026-06-09 |
| CVE-2026-10924 | Chromium: CVE-2026-10924 Integer overflow in Chromecast | UNKNOWN | — | 21%ile | Microsoft | 2026-06-09 |
| CVE-2026-10963 | Chromium: CVE-2026-10963 Integer overflow in V8 | UNKNOWN | — | 30%ile | Microsoft | 2026-06-09 |
| CVE-2026-10964 | Chromium: CVE-2026-10964 Integer overflow in V8 | UNKNOWN | — | 30%ile | Microsoft | 2026-06-09 |
| CVE-2026-10965 | Chromium: CVE-2026-10965 Integer overflow in DevTools | UNKNOWN | — | 30%ile | Microsoft | 2026-06-09 |
| CVE-2026-10986 | Chromium: CVE-2026-10986 Integer overflow in Media | UNKNOWN | — | 27%ile | Microsoft | 2026-06-09 |
| CVE-2026-10987 | Chromium: CVE-2026-10987 Integer overflow in V8 | UNKNOWN | — | 30%ile | Microsoft | 2026-06-09 |
| CVE-2026-11044 | Chromium: CVE-2026-11044 Integer overflow in ANGLE | UNKNOWN | — | 21%ile | Microsoft | 2026-06-09 |
| CVE-2026-11058 | Chromium: CVE-2026-11058 Integer overflow in CredentialProvider | UNKNOWN | — | 11%ile | Microsoft | 2026-06-09 |
| CVE-2026-11085 | Chromium: CVE-2026-11085 Integer overflow in GPU | UNKNOWN | — | 16%ile | Microsoft | 2026-06-09 |
| CVE-2026-11088 | Chromium: CVE-2026-11088 Integer overflow in ANGLE | UNKNOWN | — | 25%ile | Microsoft | 2026-06-09 |
| CVE-2026-11171 | Chromium: CVE-2026-11171 Integer overflow in Blink | UNKNOWN | — | 21%ile | Microsoft | 2026-06-09 |
| CVE-2026-11211 | Chromium: CVE-2026-11211 Integer overflow in V8 | UNKNOWN | — | 21%ile | Microsoft | 2026-06-09 |
| CVE-2026-11281 | Chromium: CVE-2026-11281 Integer overflow in Chromoting | UNKNOWN | — | 0%ile | Microsoft | 2026-06-09 |
| CVE-2026-11290 | Chromium: CVE-2026-11290 Integer overflow in WebView | UNKNOWN | — | 0%ile | Microsoft | 2026-06-09 |
| CVE-2026-11640 | Chromium: CVE-2026-11640 Integer overflow in libyuv | UNKNOWN | — | 14%ile | Microsoft | 2026-06-09 |
| CVE-2026-11655 | Chromium: CVE-2026-11655 Integer overflow in Media | UNKNOWN | — | 16%ile | Microsoft | 2026-06-09 |
| CVE-2026-11669 | Chromium: CVE-2026-11669 Integer overflow in Media | UNKNOWN | — | 12%ile | Microsoft | 2026-06-09 |
| CVE-2026-11678 | Chromium: CVE-2026-11678 Integer overflow in libyuv | UNKNOWN | — | 8%ile | Microsoft | 2026-06-09 |
| CVE-2026-2649 | Chromium: CVE-2026-2649 Integer overflow in V8 | UNKNOWN | — | 50%ile | Microsoft | 2026-02-10 |
| CVE-2023-2136 | Chromium: CVE-2023-2136 Integer overflow in Skia | UNKNOWN | — | 93%ile | Microsoft | 2023-04-11 |