CWE-121

High likelihood

Stack-based Buffer Overflow

Parent: CWE-788 - Access of Memory Location After End of Buffer

A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).

3,406 vulnerabilities with CWE-121
CVE-2026-42996 CRITICAL
JS8Call < 2.3.1 and JS8Call-improved < 3.0 - Stack-based Buffer Overflow via Long Maidenhead Locator in APRSISClient.cpp
CVE-2026-7546 CRITICAL
Totolink NR1800X lighttpd find_host_ip stack-based overflow
CVSS 9.8
CVE-2026-40950 MEDIUM
Buffer overflow in the Secure Access server prior to 14.50
CVSS 6.5
CVE-2026-40949 MEDIUM
Buffer overflow in Windows clients prior to 14.50
CVSS 4.4
CVE-2026-33452 MEDIUM
Buffer overflow in Windows clients prior to 14.50
CVSS 5.5
CVE-2026-33449 HIGH
Message handler buffer overflow in clients prior to 14.50
CVSS 7.5
CVE-2026-33447 CRITICAL
Absolute Software Secure Access < 14.50 - Stack-based Buffer Overflow via Message Parsing
CVSS 9.8
CVE-2026-39457 HIGH
Stack overflow via select() file descriptor set overflow
CVSS 7.8
CVE-2026-6538 MEDIUM
Stack-based Buffer Overflow in Wireshark
CVSS 5.5
CVE-2026-6537 MEDIUM
Stack-based Buffer Overflow in Wireshark
CVSS 5.5
CVE-2026-5654 MEDIUM
Stack-based Buffer Overflow in Wireshark
CVSS 5.5
CVE-2026-6868 MEDIUM
Stack-based Buffer Overflow in Wireshark
CVSS 5.5
CVE-2026-7470 HIGH
Tenda 4G300 SafeMacFilter sub_427C3C stack-based overflow
CVSS 8.8
CVE-2026-28221 MEDIUM
Wazuh: Pre-auth stack-based buffer overflow in wazuh-remoted print_hex_string() due to signed char promotion on x86_64
CVSS 6.5
CVE-2026-0206 MEDIUM
SonicOS < 6.5.5.1-6n, < 7.0.1-5169, < 7.3.1-7013, < 8.1.0-8017 - Authenticated Stack-based Buffer Overflow
CVSS 4.9
CVE-2026-36837 HIGH
TOTOLINK A3002RU V3 <= V3.0.0-B20220304.1804 - Buffer Overflow
CVSS 7.5
CVE-2026-7151 HIGH
Tenda HG3 formIPv6Routing formUploadConfig stack-based overflow
CVSS 8.8
CVE-2026-7035 HIGH
Tenda FH1202 httpd WrlclientSet fromWrlclientSet stack-based overflow
CVSS 8.8
CVE-2026-7034 HIGH
Tenda FH1202 httpd WrlExtraSet stack-based overflow
CVSS 8.8
CVE-2026-41429 HIGH
Improper validation of NBNS name_len in arduino-esp32 NetBIOS leads to memory corruption
CVSS 8.8
CVE-2026-41681 CRITICAL
rust-openssl 0.10.39-0.10.77 - Memory Corruption
CVSS 9.8
CVE-2026-1951 CRITICAL
No checking of the length of the buffer with the directory name in AS320T
CVSS 9.8
CVE-2026-1950 CRITICAL
No checking of the length of the buffer with the file name in AS320T
CVSS 9.8
CVE-2026-26354 HIGH
Dell PowerProtect Data Domain 7.7.1.0-8.6, 8.3.1.0-8.3.1.10, 7.13.1.0-7.13.1.60 - Stack-based Buffer Overflow
CVSS 8.1
CVE-2026-40892 CRITICAL
PJSIP: Stack buffer overflow in pjsip_auth_create_digest2()
CVSS 9.8
Details
Vulnerabilities 3,406
Exploit Likelihood High