CWE-122
High likelihoodHeap-based Buffer Overflow
A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().
2,312 vulnerabilities with CWE-122
CVE-2026-23533
CRITICAL
FreeRDP < 3.21.0 - Heap-based Buffer Overflow in RDPGFX ClearCodec Decode Path
CVSS 9.8
CVE-2026-23532
CRITICAL
FreeRDP < 3.21.0 - Heap-based Buffer Overflow in gdi_SurfaceToSurface
CVSS 9.8
CVE-2026-23531
CRITICAL
FreeRDP < 3.21.0 - Heap-based Buffer Overflow via RDPGFX Surface Updates
CVSS 9.8
CVE-2026-23530
CRITICAL
FreeRDP < 3.21.0 - Heap-based Buffer Overflow in Planar Bitmap Decompression
CVSS 9.8
CVE-2026-1145
MEDIUM
quickjs-ng quickjs < 0.11.0 - Heap-Based Buffer Overflow in js_typed_array_constructor_ta
CVSS 6.3
CVE-2026-22854
CRITICAL
FreeRDP < 3.20.1 - Heap-based Buffer Overflow via Drive Read IRP Output Stream
CVSS 9.8
CVE-2026-21304
HIGH
Adobe InDesign < 20.5.1 - Heap-based Buffer Overflow via Malicious File
CVSS 7.8
CVE-2026-21283
HIGH
Adobe Bridge 15.1.2 and <=16.0 - Heap-based Buffer Overflow via Malicious File
CVSS 7.8
CVE-2026-21281
HIGH
Adobe InCopy < 20.5.1 - Heap-based Buffer Overflow via Malicious File
CVSS 7.8
CVE-2026-21277
HIGH
Adobe InDesign < 20.5.1 - Heap-based Buffer Overflow via Malicious File
CVSS 7.8
CVE-2026-20957
HIGH
Microsoft Office Excel - Code Injection
CVSS 7.8
CVE-2026-20922
HIGH
Windows 10 1607-22H2, Windows 11 23H2-25H2, Windows Server 2008-2016 - Authenticated Heap-based Buffer Overflow
CVSS 7.8
CVE-2026-20876
MEDIUM
Windows VBS Enclave - Privilege Escalation
CVSS 6.7
CVE-2026-20868
HIGH
Windows RRAS - Heap-based Buffer Overflow
CVSS 8.8
CVE-2026-20864
HIGH
Connected Devices Platform Service - Privilege Escalation
CVSS 7.8
CVE-2026-20840
HIGH
Windows 10 1607-25H2 and Windows Server 2008-2016 - Authenticated Heap-based Buffer Overflow
CVSS 7.8
CVE-2026-20837
HIGH
Microsoft Windows Media - Heap-based Buffer Overflow
CVSS 7.8
CVE-2026-20820
HIGH
Windows Common Log File System Driver - Buffer Overflow
CVSS 7.8
CVE-2026-20809
HIGH
Windows Kernel Memory - Privilege Escalation
CVSS 7.8
CVE-2026-0822
MEDIUM
quickjs-ng quickjs < 0.11.0 - Heap-Based Buffer Overflow in js_typed_array_sort
CVSS 6.3
CVE-2026-0821
HIGH
quickjs-ng quickjs < 0.11.0 - Heap-Based Buffer Overflow in js_typed_array_constructor
CVSS 7.3
CVE-2026-22697
HIGH
CryptoLib < 1.4.3 - Heap-based Buffer Overflow via Base64 Decoding
CVSS 7.5
CVE-2026-22027
MEDIUM
CryptoLib < 1.4.3 - Heap-based Buffer Overflow in MariaDB SA Interface
CVSS 6.0
CVE-2026-21682
HIGH
iccDEV < 2.3.1.2 - Heap-based Buffer Overflow in CIccXmlArrayType::ParseText()
CVSS 8.8
CVE-2026-21678
HIGH
iccdev < 2.3.1.2 - Heap-based Buffer Overflow in IccTagXml()
CVSS 7.8
Details
Vulnerabilities
2,312
Exploit Likelihood
High