CWE-122
High likelihoodHeap-based Buffer Overflow
A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().
2,312 vulnerabilities with CWE-122
CVE-2026-5244
HIGH
Cesanta Mongoose TLS 1.3 mongoose.c mg_tls_recv_cert heap-based overflow
CVSS 7.3
CVE-2026-34545
HIGH
OpenEXR: integer overflow lead to OOB in HTJ2K decoder
CVSS 7.3
CVE-2026-5275
HIGH
Google Chrome < 146.0.7680.178 - Remote Code Execution via ANGLE Heap Buffer Overflow
CVSS 8.8
CVE-2026-5272
HIGH
Google Chrome < 146.0.7680.178 - Remote Code Execution via GPU Heap Buffer Overflow
CVSS 8.8
CVE-2026-5236
MEDIUM
Axiomatic Bento4 DSI v1 Ap4Dac4Atom.cpp SkipBits heap-based overflow
CVSS 5.3
CVE-2026-5235
MEDIUM
Axiomatic Bento4 MP4 File Ap4Dac4Atom.cpp ReadCache heap-based overflow
CVSS 5.3
CVE-2026-34540
MEDIUM
iccDEV: HBO in icMemDump()
CVSS 6.2
CVE-2026-34539
MEDIUM
iccDEV: HBO in CTiffImg::WriteLine()
CVSS 6.2
CVE-2026-34535
MEDIUM
iccDEV: SEGV in CIccTagArray::Cleanup()
CVSS 6.2
CVE-2026-34534
MEDIUM
iccDEV: HBO in CIccMpeSpectralMatrix::Describe()
CVSS 6.2
CVE-2026-5201
HIGH
Gdk-pixbuf: gdk-pixbuf: denial of service via heap-based buffer overflow when processing a specially crafted jpeg image
CVSS 7.5
CVE-2026-5185
MEDIUM
Nothings stb_image Multi-frame GIF File stb_image.h stbi__gif_load_next heap-based overflow
CVSS 5.3
CVE-2026-33987
HIGH
FreeRDP: Persistent Cache bmpSize Desync - Heap OOB Write
CVSS 7.1
CVE-2026-33986
HIGH
FreeRDP: H.264 YUV Buffer Dimension Desync - Heap OOB Write
CVSS 7.5
CVE-2026-33984
HIGH
FreeRDP: ClearCodec resize_vbar_entry() Heap OOB Write
CVSS 7.5
CVE-2026-26073
MEDIUM
EVerest: OCPP 1.6 heap corruption caused by lock-free insertion in event_queue
CVSS 5.9
CVE-2026-28842
HIGH
macOS < 26.4 - Heap-based Buffer Overflow
CVSS 7.5
CVE-2026-27654
HIGH
NGINX ngx_http_dav_module vulnerability
CVSS 8.2
CVE-2026-4675
HIGH
Google Chrome < 146.0.7680.165 - Heap-based Buffer Overflow in WebGL
CVSS 8.8
CVE-2026-4673
HIGH
Google Chrome < 146.0.7680.165 - Heap-based Buffer Overflow in WebAudio
CVSS 8.8
CVE-2026-33298
HIGH
llama.cpp <b7824 GGUF Tensor Parsing - Heap Buffer Overflow
CVSS 7.8
CVE-2026-33164
HIGH
NULL Pointer Dereference in libde265
CVSS 7.5
CVE-2026-32710
HIGH
Heap-based Buffer Overflow in MariaDB
CVSS 8.5
CVE-2026-32945
HIGH
PJSIP is vulnerable to Heap-based Buffer Overflow through DNS parser
CVE-2026-4463
HIGH
Google Chrome < 146.0.7680.153 - Heap-based Buffer Overflow in WebRTC
CVSS 8.8
Details
Vulnerabilities
2,312
Exploit Likelihood
High