CWE-125

Out-of-bounds Read

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product reads data past the end, or before the beginning, of the intended buffer.

8,790 vulnerabilities with CWE-125
CVE-2026-26127 HIGH
.NET - DoS
CVSS 7.5
CVE-2026-26109 HIGH
Microsoft Office Excel - Memory Corruption
CVSS 8.4
CVE-2026-25181 HIGH
Windows 10/11 GDI+ Out-of-bounds Read (1607-24H2)
CVSS 7.5
CVE-2026-25180 MEDIUM
Microsoft Graphics Component - Info Disclosure
CVSS 5.5
CVE-2026-25175 HIGH
Windows NTFS - Privilege Escalation
CVSS 7.8
CVE-2026-25174 HIGH
Windows Extensible File Allocation - Privilege Escalation
CVSS 7.8
CVE-2026-24282 MEDIUM
Push Message Routing Service - Info Disclosure
CVSS 5.5
CVE-2026-23673 HIGH
Windows ReFS - Privilege Escalation
CVSS 7.8
CVE-2026-23672 HIGH
Windows UDFS Driver - Privilege Escalation
CVSS 7.8
CVE-2026-30935 MEDIUM
ImageMagick <7.1.2-16 - Memory Corruption
CVSS 4.4
CVE-2026-28693 HIGH
ImageMagick <7.1.2-16/6.9.13-41 - Memory Corruption
CVSS 8.1
CVE-2026-28692 MEDIUM
ImageMagick <7.1.2-16/6.9.13-41 - Memory Corruption
CVSS 4.8
CVE-2026-3631 HIGH
Delta Electronics COMMGR2 < 2.11.1 - Denial of Service via Buffer Over-read
CVSS 7.5
CVE-2026-3731 MEDIUM
libssh <=0.11.3 - Memory Corruption
CVSS 5.3
CVE-2026-3664 LOW
xlnt-community xlnt <=1.6.1 - Memory Corruption
CVSS 3.3
CVE-2026-3663 LOW
xlnt-community xlnt <=1.6.1 - Memory Corruption
CVSS 3.3
CVE-2026-3606 LOW
Ettercap 0.8.4-Garofalo - Memory Corruption
CVSS 3.3
CVE-2026-28540 MEDIUM
HarmonyOS - Out-of-Bounds Character Read in Bluetooth
CVSS 4.0
CVE-2026-3540 HIGH
Google Chrome <145.0.7632.159 - Memory Corruption
CVSS 8.8
CVE-2026-23235 HIGH
Linux Kernel - Out-of-bounds Read and Write in F2FS Sysfs Attribute Handling
CVSS 7.1
CVE-2026-27596 HIGH
exiv2 < 0.28.8 - Out-of-bounds Read via Preview Component
CVSS 7.5
CVE-2026-25884 HIGH
exiv2 < 0.28.8 - Out-of-bounds Read in CRW Image Parser
CVSS 8.1
CVE-2026-0035 HIGH
MediaProvider - Privilege Escalation
CVSS 8.4
CVE-2026-23865 MEDIUM
Freetype 2.13.2-2.13.3 - Memory Corruption
CVSS 5.3
CVE-2026-20429 MEDIUM
Display - Info Disclosure
CVSS 4.4
Details
Vulnerabilities 8,790