CWE-125

Out-of-bounds Read

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product reads data past the end, or before the beginning, of the intended buffer.

8,471 vulnerabilities with CWE-125
CVE-2026-24826 CRITICAL
cadaver turso3d - Multiple Vulns
CVE-2026-24821 CRITICAL
WickedEngine <0.71.727 - Info Disclosure
CVE-2026-24820 MEDIUM
WickedEngine <0.71.705 - Info Disclosure
CVE-2026-24818 MEDIUM
praydog UEVR <1.05 - Info Disclosure
CVE-2026-24812 CRITICAL
root <6.36.00-rc1 - Info Disclosure
CVE-2026-24811 CRITICAL
root - Info Disclosure
CVSS 9.8
CVE-2026-24796 MEDIUM
CloverBootloader <5162 - Buffer Overflow
CVE-2026-22984 CRITICAL
Linux kernel - Memory Corruption
CVSS 9.8
CVE-2026-23951 MEDIUM
SumatraPDF - Buffer Overflow
CVSS 5.5
CVE-2026-0899 HIGH
Google Chrome < 144.0.7559.59 - Out-of-Bounds Write
CVSS 8.8
CVE-2026-22859 CRITICAL
Freerdp < 3.20.1 - Out-of-Bounds Read
CVSS 9.1
CVE-2026-22858 CRITICAL
Freerdp < 3.20.1 - Out-of-Bounds Access
CVSS 9.1
CVE-2026-22855 CRITICAL
Freerdp < 3.20.1 - Out-of-Bounds Read
CVSS 9.1
CVE-2026-21303 MEDIUM
Adobe Substance 3D Modeler < 1.22.5 - Out-of-Bounds Read
CVSS 5.5
CVE-2026-21302 MEDIUM
Adobe Substance 3D Modeler < 1.22.5 - Out-of-Bounds Read
CVSS 5.5
CVE-2026-21308 MEDIUM
Adobe Substance 3D Designer < 15.1.0 - Out-of-Bounds Read
CVSS 5.5
CVE-2026-21278 MEDIUM
Adobe Indesign < 20.5.1 - Out-of-Bounds Read
CVSS 5.5
CVE-2026-20946 HIGH
Microsoft Office Excel - Code Injection
CVSS 7.8
CVE-2026-20944 HIGH
Microsoft Office Word - Code Injection
CVSS 8.4
CVE-2026-20936 MEDIUM
Windows NDIS - Info Disclosure
CVSS 4.3
CVE-2026-20851 MEDIUM
Capability Access Management Service - Info Disclosure
CVSS 6.2
CVE-2026-20835 MEDIUM
Capability Access Management Service - Info Disclosure
CVSS 5.5
CVE-2026-20829 MEDIUM
Windows TPM - Info Disclosure
CVSS 5.5
CVE-2026-20828 MEDIUM
Windows ICS - Info Disclosure
CVSS 4.6
CVE-2026-22801 MEDIUM
Libpng < 1.6.54 - Integer Overflow
CVSS 6.8
Details
Vulnerabilities 8,471