CWE-125
Out-of-bounds Read
The product reads data past the end, or before the beginning, of the intended buffer.
8,815 vulnerabilities with CWE-125
CVE-2025-71001
MEDIUM
OneFlow v0.9.0 - Denial of Service via flow.column_stack Component
CVSS 6.5
CVE-2025-46316
MEDIUM
Pages < 15.1 - Out-of-bounds Read via Maliciously Crafted Document
CVSS 4.3
CVE-2025-46306
MEDIUM
macOS Tahoe-26, Keynote 15.1, iOS 26, iPadOS 26 - Info Disclosure
CVSS 5.5
CVE-2025-41728
MEDIUM
Beckhoff.Device.Manager.XAR < 2.5.3 - Out-of-bounds Read via Device Manager Web Service
CVSS 5.3
CVE-2025-68132
MEDIUM
EVerest < 2025.12.0 - Out-of-bounds Read in DZG_GSH01 SLIP Parser
CVSS 4.6
CVE-2025-51602
MEDIUM
VideoLAN VLC media player <3.0.22 - Memory Corruption
CVSS 4.8
CVE-2025-70308
HIGH
GPAC 2.4.0 - Denial of Service via GSF Demuxer Filter Out-of-Bounds Read
CVSS 7.5
CVE-2025-70298
HIGH
GPAC 2.4.0 - Out-of-bounds Read in oggdmx_parse_tags
CVSS 8.2
CVE-2025-65396
MEDIUM
Blurams Flare Camera <24.1114.151.929 - Info Disclosure
CVSS 6.1
CVE-2025-71136
HIGH
Linux Kernel - Out-of-bounds Read in adv7842_cp_log_status()
CVSS 7.1
CVE-2025-71133
HIGH
Linux Kernel 5.14.0-6.18.3 - Out-of-bounds Read in irdma_net_event
CVSS 7.1
CVE-2025-71116
HIGH
Linux Kernel Out-of-bounds Read in libceph decode_pool()
CVSS 7.1
CVE-2025-71112
HIGH
Linux Kernel - Out-of-bounds Read in VLAN Configuration Mailbox Handling
CVSS 7.1
CVE-2025-37179
MEDIUM
System Component - Memory Corruption
CVSS 5.3
CVE-2025-37178
MEDIUM
System Component - Memory Corruption
CVSS 5.3
CVE-2025-71101
HIGH
Linux Kernel - Out-of-bounds Read in hp-bioscfg ACPI Package Parsing
CVSS 7.1
CVE-2025-71093
HIGH
Linux Kernel - Out-of-bounds Read in e1000_tbi_should_accept
CVSS 7.1
CVE-2025-69992
CRITICAL
phpgurukul News Portal Project V4.1 - Unauthenticated Arbitrary File Upload via upload.php
CVSS 9.8
CVE-2025-15506
LOW
OpenColorIO < 2.5.1 - Out-of-Bounds Read in ConvertToRegularExpression
CVSS 3.3
CVE-2025-53470
LOW
Apache NimBLE <1.9 - Out-of-bounds Read
CVSS 3.1
CVE-2025-67810
MEDIUM
Area9 Rhapsode 1.47.3 - Authenticated Arbitrary File Read via POST Parameters
CVSS 6.5
CVE-2025-69260
HIGH
Trend Micro Apex Central - Unauthenticated Denial of Service via Message Out-of-Bounds Read
CVSS 7.5
CVE-2025-15382
HIGH
wolfssh 1.4.12-1.4.21 - Authenticated Heap Buffer Over-Read via SCP Path Input
CVSS 8.1
CVE-2025-10933
MEDIUM
Silicon Labs Z-Wave Protocol Controller - Memory Corruption
CVE-2025-52871
MEDIUM
QNAP License Center 2.0.17-2.0.35 - Authenticated Out-of-Bounds Read
CVSS 6.5
Details
Vulnerabilities
8,815