CWE-122
High likelihoodHeap-based Buffer Overflow
A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().
2,311 vulnerabilities with CWE-122
CVE-2026-41981
MEDIUM
Huawei HarmonyOS - Heap-based Buffer Overflow
CVSS 5.3
CVE-2026-42536
HIGH
Apache HTTP Server: mod_xml2enc heap overflow
CVSS 7.5
CVE-2026-34356
HIGH
Apache HTTP Server: ProxyPassReverseCookieMap buffer overflow
CVSS 7.5
CVE-2026-34355
HIGH
Apache HTTP Server: mod_proxy_html buffer overflow
CVSS 7.5
CVE-2026-22164
HIGH
Imagination Technologies Graphics DDK - GPU DDK - Kernel Heap OOB Write in DevmemIntComputeVirtualIndicesFromLogical
CVSS 7.5
CVE-2026-11143
MEDIUM
Google Chrome - Heap-based Buffer Overflow
CVSS 6.5
CVE-2026-11124
HIGH
Google Chrome - Heap-based Buffer Overflow
CVSS 8.8
CVE-2026-10995
HIGH
Google Chrome - Heap-based Buffer Overflow
CVSS 8.8
CVE-2026-10993
MEDIUM
Google Chrome - Heap-based Buffer Overflow
CVSS 6.5
CVE-2026-10989
HIGH
Google Chrome < 149.0.7827.53 - Heap Corruption via Crafted HTML Page
CVSS 8.8
CVE-2026-10949
HIGH
Google Chrome - Heap-based Buffer Overflow
CVSS 8.3
CVE-2026-10946
HIGH
Google Chrome - Heap-based Buffer Overflow
CVSS 7.5
CVE-2026-10929
HIGH
Google Chrome - Heap-based Buffer Overflow
CVSS 8.3
CVE-2026-0100
HIGH
Google Android - Heap-based Buffer Overflow
CVSS 7.8
CVE-2026-0059
HIGH
Google Android - Heap-based Buffer Overflow
CVSS 8.0
CVE-2026-10231
MEDIUM
Assimp Half-Life 1 MDL Loader HL1MDLLoader.cpp extract_anim_value heap-based overflow
CVSS 5.3
CVE-2026-10230
MEDIUM
Assimp Half-Life 1 MDL Loader HL1MDLLoader.cpp read_animations heap-based overflow
CVSS 5.3
CVE-2026-10229
MEDIUM
Assimp Half-Life 1 MDL Loader HL1MDLLoader.cpp read_meshes heap-based overflow
CVSS 5.3
CVE-2026-20452
HIGH
MediaTek Chipset - Heap-based Buffer Overflow
CVSS 8.0
CVE-2026-10200
MEDIUM
Assimp 4x4 Matrix glTFCommon.h CopyValue heap-based overflow
CVSS 5.3
CVE-2026-10194
MEDIUM
OFFIS DCMTK dcmqrscp dcmqrdbi.cc deleteOldestImages heap-based overflow
CVSS 6.3
CVE-2026-44421
HIGH
FreeRDP RDPGFX CacheToSurface heap-buffer-overflow via clamped-rectangle validation bypass
CVSS 8.8
CVE-2026-44420
HIGH
FreeRDP cliprdr server heap-buffer-overflow via undersized capabilitySetLength in CB_CLIP_CAPS
CVSS 8.8
CVE-2026-40528
LOW
OpenSC < 0.27.0 Buffer Overrun in do_key_value() via profile.c
CVSS 3.8
CVE-2026-9940
HIGH
Google Chrome - Heap-based Buffer Overflow
CVSS 8.8
Details
Vulnerabilities
2,311
Exploit Likelihood
High