CWE-122

High likelihood

Heap-based Buffer Overflow

Parent: CWE-788 - Access of Memory Location After End of Buffer

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().

2,135 vulnerabilities with CWE-122
CVE-2026-3561 HIGH
Philips Hue Bridge - Heap-based Buffer Overflow RCE
CVSS 8.0
CVE-2026-3560 HIGH
Philips Hue Bridge - Buffer Overflow RCE
CVSS 8.8
CVE-2026-3557 HIGH
Philips Hue Bridge - Heap-based Buffer Overflow RCE
CVSS 8.0
CVE-2026-3556 HIGH
Philips Hue Bridge - Buffer Overflow RCE
CVSS 8.8
CVE-2026-3555 HIGH
Philips Hue Bridge Zigbee Stack Custom Command Handler Heap-based Buffer Overflow Remote Code Execution Vulnerability
CVSS 8.0
CVE-2026-3085 HIGH
GStreamer - Heap-based Buffer Overflow
CVSS 8.8
CVE-2026-3082 HIGH
GStreamer - Heap-based Buffer Overflow
CVSS 7.8
CVE-2026-2920 HIGH
GStreamer ASF Demuxer Heap-based Buffer Overflow Remote Code Execution Vulnerability
CVSS 7.8
CVE-2026-28519 HIGH
arduino-TuyaOpen DnsServer Heap-Based Buffer Overflow Remote Code Execution
CVSS 8.8
CVE-2026-31883 MEDIUM
FreeRDP <3.24.0 - Heap Buffer Overflow
CVSS 6.5
CVE-2026-31806 CRITICAL
FreeRDP <3.24.0 - Memory Corruption
CVSS 9.8
CVE-2026-27940 HIGH
llama.cpp <b8146 - Memory Corruption
CVSS 7.8
CVE-2026-3994 MEDIUM
mold <=2.40.4 - Buffer Overflow
CVSS 5.3
CVE-2026-3931 HIGH
Google Chrome <146.0.7680.71 - Buffer Overflow
CVSS 8.8
CVE-2026-3915 HIGH
Google Chrome <146.0.7680.71 - Buffer Overflow
CVSS 8.8
CVE-2026-3913 HIGH
Google Chrome <146.0.7680.71 - Buffer Overflow
CVSS 8.8
CVE-2026-1652 MEDIUM
Lenovo Virtual Bus Driver - Buffer Overflow
CVSS 6.1
CVE-2026-31853 MEDIUM
ImageMagick <7.1.2-16/<6.9.13-41 - Buffer Overflow
CVSS 5.7
CVE-2026-27271 HIGH
Illustrator <=30.1 - Buffer Overflow
CVSS 7.8
CVE-2026-3845 HIGH
Firefox for Android <148.0.2 - Buffer Overflow
CVSS 8.8
CVE-2026-31796 HIGH
iccDEV <2.3.1.5 - Memory Corruption
CVSS 7.8
CVE-2026-30985 HIGH
iccDEV <2.3.1.5 - Memory Corruption
CVSS 7.8
CVE-2026-30982 MEDIUM
iccDEV <2.3.1.5 - Memory Corruption
CVSS 6.1
CVE-2026-30979 HIGH
iccDEV <2.3.1.5 - Memory Corruption
CVSS 7.8
CVE-2026-26111 HIGH
Windows RRAS - Memory Corruption
CVSS 8.0
Details
Vulnerabilities 2,135
Exploit Likelihood High