CWE-122

High likelihood

Heap-based Buffer Overflow

Parent: CWE-788 - Access of Memory Location After End of Buffer

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().

2,135 vulnerabilities with CWE-122
CVE-2025-65018 HIGH
Libpng < 1.6.51 - Out-of-Bounds Write
CVSS 7.1
CVE-2025-62608 CRITICAL
Ml-explore Mlx < 0.29.4 - Heap Buffer Overflow
CVSS 9.1
CVE-2025-64524 LOW
Openprinting Cups-filters < 2.0.1 - Out-of-Bounds Write
CVSS 3.3
CVE-2025-46373 HIGH
Fortinet FortiClient <7.4.3 - RCE
CVSS 7.8
CVE-2025-63701 MEDIUM
Advantech TP-3250 - Memory Corruption
CVSS 6.8
CVE-2025-63927 MEDIUM
airpig2011 IEC104 - Use After Free
CVSS 4.0
CVE-2025-61838 HIGH
Adobe Format Plugins - Out-of-Bounds Write
CVSS 7.8
CVE-2025-61837 HIGH
Adobe Format Plugins - Out-of-Bounds Write
CVSS 7.8
CVE-2025-62452 HIGH
Microsoft Windows 10 1607 < 10.0.14393.8594 - Heap Buffer Overflow
CVSS 8.0
CVE-2025-62220 HIGH
Microsoft Windows Subsystem For Linux < 2.6.2 - Heap Buffer Overflow
CVSS 8.8
CVE-2025-62201 HIGH
Microsoft 365 Apps < 16.0.10417.20068 - Heap Buffer Overflow
CVSS 7.8
CVE-2025-61829 HIGH
Adobe Illustrator ON Ipad < 3.0.10 - Out-of-Bounds Write
CVSS 7.8
CVE-2025-61827 HIGH
Adobe Illustrator ON Ipad < 3.0.10 - Out-of-Bounds Write
CVSS 7.8
CVE-2025-61820 HIGH
Adobe Illustrator < 28.7.10 - Out-of-Bounds Write
CVSS 7.8
CVE-2025-61819 HIGH
Adobe Photoshop < 26.9 - Out-of-Bounds Write
CVSS 7.8
CVE-2025-60724 CRITICAL
Microsoft Graphics Component - Buffer Overflow
CVSS 9.8
CVE-2025-60715 HIGH
Windows RRAS - Buffer Overflow
CVSS 8.0
CVE-2025-60714 HIGH
Microsoft Windows OLE - Heap-based Buffer Overflow
CVSS 7.8
CVE-2025-59504 HIGH
Microsoft Azure Monitor Agent < 1.37.1 - Heap Buffer Overflow
CVSS 7.3
CVE-2025-61832 HIGH
Adobe Indesign < 19.5.5 - Out-of-Bounds Write
CVSS 7.8
CVE-2025-61824 HIGH
Adobe Indesign < 19.5.5 - Out-of-Bounds Write
CVSS 7.8
CVE-2025-61816 HIGH
Adobe Incopy < 19.5.5 - Out-of-Bounds Write
CVSS 7.8
CVE-2025-62689 HIGH
GNU Libmicrohttpd < 2025-09-16 - Heap Buffer Overflow
CVSS 7.5
CVE-2025-9458 HIGH
Autodesk <version> - Memory Corruption
CVSS 7.8
CVE-2025-11458 HIGH
Google Chrome <141.0.7390.65 - Buffer Overflow
CVSS 8.1
Details
Vulnerabilities 2,135
Exploit Likelihood High