CWE-119

High likelihood

Improper Restriction of Operations within the Bounds of a Memory Buffer

Parent: CWE-118 - Incorrect Access of Indexable Resource ('Range Error')

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

13,960 vulnerabilities with CWE-119
CVE-2025-14526 HIGH
Tenda CH22 1.0.0.1 - Buffer Overflow
CVSS 8.8
CVE-2025-14333 HIGH
Firefox < 146 - Firefox ESR < 140.6 - Memory Corruption
CVSS 8.1
CVE-2025-14330 CRITICAL
Firefox < 146.0 and 140.6-140.* - Memory Corruption in JIT Component
CVSS 9.8
CVE-2025-14196 HIGH
H3C Magic B1 <100R004 - Buffer Overflow
CVSS 8.8
CVE-2025-14191 HIGH
UTT 进取 512W <1.7.7-171114 - Buffer Overflow
CVSS 8.8
CVE-2025-14187 HIGH
UGREEN DH2100+ <5.3.0.251125 - Buffer Overflow
CVSS 7.2
CVE-2025-14141 HIGH
UTT 进取 520W 1.7.7-180627 - Buffer Overflow
CVSS 8.8
CVE-2025-14140 MEDIUM
UTT 进取 520W 1.7.7-180627 - Buffer Overflow
CVSS 6.5
CVE-2025-14139 MEDIUM
UTT 进取 520W 1.7.7-180627 - Buffer Overflow
CVSS 5.7
CVE-2025-14136 HIGH
Linksys RE6500/RE6250/RE6300/RE6350/RE7000/RE9000 - Stack-based Buffer Overflow via clientsname_0 Argument
CVSS 8.8
CVE-2025-14135 HIGH
Linksys RE6500/RE6250/RE6300/RE6350/RE7000/RE9000 - Stack-based Buffer Overflow
CVSS 8.8
CVE-2025-14134 HIGH
Linksys RE6500 RE6250 RE6300 RE6350 RE7000 RE9000 - Stack-based Buffer Overflow via clientsname_0 Argument
CVSS 8.8
CVE-2025-14133 HIGH
Linksys RE6500/RE6250/RE6300/RE6350/RE7000/RE9000 - Stack-Based Buffer Overflow
CVSS 8.8
CVE-2025-14015 HIGH
H3C Magic B0 < 100R002 - Buffer Overflow via EditWlanMacList param
CVSS 8.8
CVE-2025-53965 MEDIUM
Samsung Exynos and Modem Firmware - Memory Corruption via SOR Transparent Container Decoding
CVSS 5.3
CVE-2025-64713 MEDIUM
WebAssembly Micro Runtime < 2.4.4 - Out-of-Bounds Memory Access in Fast Interpreter Mode
CVSS 5.1
CVE-2025-33195 MEDIUM
NVIDIA DGX Spark GB10 - Memory Corruption
CVSS 4.4
CVE-2025-13566 LOW
jarun nnn <= 5.1 - Use-After-Free in show_content_in_floating_window/run_cmd_as_plugin
CVSS 3.3
CVE-2025-13553 HIGH
D-Link DWR-M920 1.1.50 - Buffer Overflow via submit-url Parameter in formPinManageSetup
CVSS 8.8
CVE-2025-13552 HIGH
D-Link DIR-822K and DWR-M920 1.00_20250513164613/1.1.50 - Buffer Overflow via submit-url Parameter
CVSS 8.8
CVE-2025-13551 HIGH
D-Link DIR-822K and DWR-M920 1.00_20250513164613/1.1.50 - Buffer Overflow via submit-url Parameter
CVSS 8.8
CVE-2025-13550 HIGH
D-Link DIR-822K and DWR-M920 1.00_20250513164613/1.1.50 - Buffer Overflow via VPN Config Setup submit-url Parameter
CVSS 8.8
CVE-2025-13549 HIGH
D-Link DIR-822K 1.00 - Buffer Overflow via NTP Submit-URL Parameter
CVSS 8.8
CVE-2025-13548 HIGH
D-Link DIR-822K and DWR-M920 1.00_20250513164613/1.1.50 - Buffer Overflow via submit-url Argument
CVSS 8.8
CVE-2025-13547 HIGH
D-Link DIR-822K and DWR-M920 1.00_20250513164613/1.1.50 - Memory Corruption via formDdns submit-url Argument
CVSS 8.8
Details
Vulnerabilities 13,960
Exploit Likelihood High