CWE-119

High likelihood

Improper Restriction of Operations within the Bounds of a Memory Buffer

Parent: CWE-118 - Incorrect Access of Indexable Resource ('Range Error')

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

14,073 vulnerabilities with CWE-119
CVE-2026-15692 HIGH
Tenda BE12 Pro SafeUrlFilter fromSafeUrlFilter stack-based overflow
CVSS 8.8
CVE-2026-15691 HIGH
Tenda BE12 Pro SafeClientFilter fromSafeClientFilter stack-based overflow
CVSS 8.8
CVE-2026-15548 HIGH
Shibby Tomato DNS List Rendering httpd sub_407220 stack-based overflow
CVSS 8.8
CVE-2026-15545 HIGH
Shibby Tomato apcupsd tomatodata.cgi main out-of-bounds write
CVSS 8.8
CVE-2026-15544 HIGH
Shibby Tomato apcupsd tomatodata.cgi getupsvar stack-based overflow
CVSS 8.8
CVE-2026-15543 HIGH
Tenda CH22 CertListInfo formCertListInfo buffer overflow
CVSS 8.8
CVE-2026-15520 MEDIUM
GNU LibreDWG R2004 Section Decompression decode.c decompress_R2004_section heap-based overflow
CVSS 5.3
CVE-2026-15506 HIGH
SecureAge CatchPulse Driver saappctl.sys heap-based overflow
CVSS 7.8
CVE-2026-15484 HIGH
TRENDnet TEW-821DAP ssi tools_nslookup sub_41EC14 buffer overflow
CVSS 8.8
CVE-2026-15483 HIGH
TRENDnet TEW-821DAP ssi tools_nslookup sub_41EC14 buffer overflow
CVSS 8.8
CVE-2026-15480 HIGH
Trendnet TEW-635BRM Web Service rc start_httpd stack-based overflow
CVSS 8.8
CVE-2026-15194 LOW
Open5GS AMF context.c amf_context_final use after free
CVSS 3.3
CVE-2026-15185 LOW
GPAC MP4Box vobsub.c vobsub_read_idx out-of-bounds
CVSS 3.3
CVE-2026-15182 MEDIUM
GNU LibreDWG BMP Image dwg.c dwg_bmp heap-based overflow
CVSS 5.3
CVE-2026-14789 LOW
radareorg radare2 Memory64ListStream mdmp.c stack-based overflow
CVSS 3.3
CVE-2026-14788 LOW
radareorg radare2 cfile.c r_core_bin_load use after free
CVSS 3.3
CVE-2026-14760 LOW
radareorg radare2 regprofile disasm.c r_core_seek_arch_bits use after free
CVSS 3.3
CVE-2026-14759 LOW
radareorg radare2 RBinJava Line Number Table class.c r_bin_java_inner_classes_attr_calc_size heap-based overflow
CVSS 3.3
CVE-2026-14721 HIGH
UTT HiPER 1250GW Web Endpoint ConfigWirelessBase_5g stack-based overflow
CVSS 8.8
CVE-2026-14647 MEDIUM
onnx onnxruntime old.cc convPoolShapeInference_opset19 out-of-bounds
CVSS 4.3
CVE-2026-14610 MEDIUM
Open Asset Import Library Assimp CSM File CSMLoader.cpp InternReadFile heap-based overflow
CVSS 5.3
CVE-2026-14607 MEDIUM
RT-Thread lwp_syscall.c sys_getaddrinfo memory corruption
CVSS 5.5
CVE-2026-14606 HIGH
RT-Thread SWM341 CAN SWM341.h CAN_Receive stack-based overflow
CVSS 7.8
CVE-2026-14605 HIGH
RT-Thread ls1c CAN ls1c_can.h recvmsg stack-based overflow
CVSS 7.8
CVE-2026-14604 MEDIUM
Open Asset Import Library Assimp PLY Model PlyLoader.cpp ExportToBlob double free
CVSS 6.3
Details
Vulnerabilities 14,073
Exploit Likelihood High