CWE-125
Out-of-bounds Read
The product reads data past the end, or before the beginning, of the intended buffer.
9,161 vulnerabilities with CWE-125
CVE-2026-0157
MEDIUM
Google Android - Information Disclosure
CVSS 4.3
CVE-2026-0155
MEDIUM
Google Android - Information Disclosure
CVSS 4.3
CVE-2026-0142
LOW
Google Android - Information Disclosure
CVSS 3.3
CVE-2026-0141
MEDIUM
Google Android - Information Disclosure
CVSS 4.3
CVE-2026-0140
MEDIUM
Google Android - Information Disclosure
CVSS 4.3
CVE-2026-0136
MEDIUM
Google Android - Denial of Service
CVSS 6.5
CVE-2026-0135
HIGH
Google Android - Remote Code Execution
CVSS 7.8
CVE-2026-0131
HIGH
Google Android - Out-of-Bounds Access
CVSS 7.3
CVE-2026-0130
LOW
Google Android - Buffer Overflow
CVSS 3.5
CVE-2026-0128
MEDIUM
Google Android - Information Disclosure
CVSS 6.5
CVE-2026-0127
MEDIUM
Google Android - Denial of Service
CVSS 6.5
CVE-2026-4367
MEDIUM
Libxpm: libxpm: denial of service via out-of-bounds read in xpm file parsing
CVSS 5.5
CVE-2026-47963
MEDIUM
Adobe Dng SDK < 1.7.1 2536 - Out-of-Bounds Access
CVSS 5.5
CVE-2026-47934
MEDIUM
Adobe Dng SDK < 1.7.1 2536 - Out-of-Bounds Access
CVSS 5.5
CVE-2026-47927
MEDIUM
Adobe Dng SDK < 1.7.1 2536 - Out-of-Bounds Access
CVSS 5.5
CVE-2026-47748
MEDIUM
stable-diffusion.cpp: Out-of-bounds reads in PyTorch checkpoint pickle opcode parsing
CVSS 5.5
CVE-2026-12314
HIGH
Mozilla Firefox - Memory Safety Bug Fixed in Thunderbird 152
CVSS 7.5
CVE-2026-12310
HIGH
Mozilla Firefox - Memory Safety Bug Fixed in Thunderbird 152
CVSS 7.5
CVE-2026-12303
MEDIUM
Information disclosure due to incorrect boundary conditions in the Graphics: WebGPU component
CVSS 4.3
CVE-2026-12298
MEDIUM
Mozilla Firefox - Memory Safety Bug Fixed in Thunderbird 152
CVSS 5.4
CVE-2026-1765
MEDIUM
Localsearch: tracker-miners: gnome localsearch mp3 extractor: denial of service and potential information disclosure via crafted mp3 files
CVSS 5.6
CVE-2026-1764
MEDIUM
Localsearch: tracker-miners: gnome localsearch mp3 extractor: heap buffer overflow leads to denial of service or information disclosure when parsing mp3 files
CVSS 5.6
CVE-2026-12087
CRITICAL
Socket versions before 2.041 for Perl have an out-of-bounds heap read
CVSS 9.1
CVE-2026-53704
HIGH
Gstreamer1-plugins-ugly-free: gstreamer: out-of-bounds read in realmedia demuxer fileinfo metadata parser
CVSS 7.1
CVE-2026-53703
HIGH
Gstreamer1-plugins-ugly-free: gstreamer: out-of-bounds read in realmedia demuxer audio stream header parser
CVSS 7.1
Details
Vulnerabilities
9,161