CWE-122
High likelihoodHeap-based Buffer Overflow
A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().
2,559 vulnerabilities with CWE-122
CVE-2026-34150
HIGH
Wazuh: Heap buffer overflow in wazuh-analysisd via rootcheck event parsing
CVSS 7.5
CVE-2026-15449
MEDIUM
TOCTOU double copyin in illumos dld ioctl handling causes kernel heap corruption
CVE-2026-15422
CRITICAL
SCTP needs to better-check INIT ACK chunk parameters
CVE-2026-50012
MEDIUM
Squid: Memory corruption in cache_digest reply handling
CVSS 5.5
CVE-2026-38755
LOW
BusyBox 1.38.0 - Denial of Service via Heap Overflow in evalcommand Function
CVSS 2.9
CVE-2026-38754
MEDIUM
Busybox 1.38.0 - Denial of Service via Heap Overflow in ifsbreakup Function
CVSS 5.1
CVE-2026-42533
HIGH
F5 NGINX Plus - NGINX Map Directive and Regex Matching Vulnerability
CVSS 8.1
CVE-2026-61464
LOW
ImageMagick before 7.1.2-26 Heap Buffer Over-Write via X11
CVSS 1.8
CVE-2026-48339
HIGH
Adobe Bridge < 16.0.3 - Buffer Overflow
CVSS 7.8
CVE-2026-48269
HIGH
Premiere Pro | Heap-based Buffer Overflow (CWE-122)
CVSS 7.8
CVE-2026-47471
HIGH
Nvidia TensorRT-LLM < v1.3.0 rc16 - Heap-based Buffer Overflow
CVSS 7.5
CVE-2026-24272
HIGH
Nvidia TensorRT < v1.3.0 rc14 - Heap-based Buffer Overflow
CVSS 7.8
CVE-2026-24268
HIGH
Nvidia TensorRT < v1.3.0 rc14 - Heap-based Buffer Overflow
CVSS 7.8
CVE-2026-15767
HIGH
Google Chrome - Heap-based Buffer Overflow
CVSS 8.8
CVE-2026-58547
MEDIUM
Windows Universal Plug and Play (UPnP) Device Host Elevation of Privilege Vulnerability
CVSS 5.5
CVE-2026-58542
HIGH
Microsoft Windows 11 Version 24H2 - Windows Media Remote Code Execution Vulnerability
CVSS 7.8
CVE-2026-58538
HIGH
Microsoft Windows 10 Version 1809 - Windows Bluetooth Service Elevation of Privilege Vulnerability
CVSS 7.8
CVE-2026-58534
HIGH
Windows Input Method Editor (IME) Elevation of Privilege Vulnerability
CVSS 8.8
CVE-2026-58530
HIGH
Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
CVSS 7.8
CVE-2026-57096
HIGH
Windows Routing and Remote Access Service (RRAS) Elevation of Privilege Vulnerability
CVSS 7.8
CVE-2026-57094
HIGH
Microsoft Windows Media Foundation Remote Code Execution Vulnerability
CVSS 8.8
CVE-2026-57090
HIGH
Microsoft Windows Media Foundation Remote Code Execution Vulnerability
CVSS 8.8
CVE-2026-57087
HIGH
Microsoft Windows Media Foundation Remote Code Execution Vulnerability
CVSS 8.8
CVE-2026-56650
HIGH
Microsoft Windows 10 Version 1607 - Windows Network File System Elevation of Privilege Vulnerability
CVSS 7.8
CVE-2026-56194
HIGH
Microsoft Windows 10 Version 1607 - Windows NFS Server Elevation of Privilege Vulnerability
CVSS 8.8
Details
Vulnerabilities
2,559
Exploit Likelihood
High