CWE-125

Out-of-bounds Read

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product reads data past the end, or before the beginning, of the intended buffer.

8,815 vulnerabilities with CWE-125
CVE-2026-2241 LOW
janet-lang <1.40.1 - Info Disclosure
CVSS 3.3
CVE-2026-2240 LOW
janet-lang <1.40.1 - Info Disclosure
CVSS 3.3
CVE-2026-24929 MEDIUM
HarmonyOS - Out-of-Bounds Read in Graphics Module
CVSS 5.9
CVE-2026-24921 MEDIUM
HarmonyOS - Out-of-bounds Read in HDC Module
CVSS 4.8
CVE-2026-24915 MEDIUM
HarmonyOS - Out-of-bounds Read in Media Subsystem
CVSS 6.2
CVE-2026-0106 CRITICAL
Android - Local Privilege Escalation via Missing Bounds Check in vpu_mmap
CVSS 9.3
CVE-2026-25585 HIGH
iccdev < 2.3.1.3 - Out-of-bounds Read in IccCmm.cpp
CVSS 7.8
CVE-2026-25508 MEDIUM
Espressif IOT Dev Framework <5.5.2-5.1.6 - Buffer Overflow
CVSS 6.3
CVE-2026-25139 CRITICAL
RIOT < 2025.10 - Unauthenticated Out-of-bounds Read in 6LoWPAN Stack
CVSS 9.1
CVE-2026-23102 HIGH
Linux Kernel 5.19-6.18.8 - Out-of-bounds Read via SVE Signal Context Restoration
CVSS 7.1
CVE-2026-23099 HIGH
Linux kernel - Global Out-of-Bounds
CVSS 7.1
CVE-2026-23076 HIGH
Linux Kernel - Out-of-bounds Read in ALSA ctxfi Audio Mixer Handling
CVSS 7.1
CVE-2026-20421 MEDIUM
MediaTek NR15 and MT Series - Remote Denial of Service via Rogue Base Station
CVSS 6.5
CVE-2026-20420 MEDIUM
MediaTek Modem - Error Handling Denial of Service
CVSS 6.5
CVE-2026-23569 MEDIUM
TeamViewer DEX Client <26.1 - Info Disclosure
CVSS 6.5
CVE-2026-23568 MEDIUM
TeamViewer DEX Client <26.1 - Info Disclosure/DoS
CVSS 5.4
CVE-2026-24852 MEDIUM
iccDEV < 2.3.1.2 - Heap Buffer Over-Read via Non-Null-Terminated Buffer
CVSS 6.1
CVE-2026-24116 MEDIUM
Wasmtime <36.0.5, 40.0.3, 41.0.1 - Memory Corruption
CVSS 5.5
CVE-2026-24873 HIGH
Rinnegatamante lpp-vita < r6 - Out-of-bounds Read
CVSS 7.8
CVE-2026-24826 CRITICAL
cadaver turso3d - Memory Safety and Divide-by-Zero Flaws
CVE-2026-24821 CRITICAL
WickedEngine <0.71.727 - Info Disclosure
CVE-2026-24820 MEDIUM
WickedEngine <0.71.705 - Info Disclosure
CVE-2026-24818 MEDIUM
praydog UEVR <1.05 - Info Disclosure
CVE-2026-24812 CRITICAL
root <6.36.00-rc1 - Info Disclosure
CVE-2026-24811 CRITICAL
root < 6.34.08 - Out-of-bounds Read in builtins/zlib inffast.C
CVSS 9.8
Details
Vulnerabilities 8,815