CWE-125

Out-of-bounds Read

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product reads data past the end, or before the beginning, of the intended buffer.

8,815 vulnerabilities with CWE-125
CVE-2025-71001 MEDIUM
OneFlow v0.9.0 - Denial of Service via flow.column_stack Component
CVSS 6.5
CVE-2025-46316 MEDIUM
Pages < 15.1 - Out-of-bounds Read via Maliciously Crafted Document
CVSS 4.3
CVE-2025-46306 MEDIUM
macOS Tahoe-26, Keynote 15.1, iOS 26, iPadOS 26 - Info Disclosure
CVSS 5.5
CVE-2025-41728 MEDIUM
Beckhoff.Device.Manager.XAR < 2.5.3 - Out-of-bounds Read via Device Manager Web Service
CVSS 5.3
CVE-2025-68132 MEDIUM
EVerest < 2025.12.0 - Out-of-bounds Read in DZG_GSH01 SLIP Parser
CVSS 4.6
CVE-2025-51602 MEDIUM
VideoLAN VLC media player <3.0.22 - Memory Corruption
CVSS 4.8
CVE-2025-70308 HIGH
GPAC 2.4.0 - Denial of Service via GSF Demuxer Filter Out-of-Bounds Read
CVSS 7.5
CVE-2025-70298 HIGH
GPAC 2.4.0 - Out-of-bounds Read in oggdmx_parse_tags
CVSS 8.2
CVE-2025-65396 MEDIUM
Blurams Flare Camera <24.1114.151.929 - Info Disclosure
CVSS 6.1
CVE-2025-71136 HIGH
Linux Kernel - Out-of-bounds Read in adv7842_cp_log_status()
CVSS 7.1
CVE-2025-71133 HIGH
Linux Kernel 5.14.0-6.18.3 - Out-of-bounds Read in irdma_net_event
CVSS 7.1
CVE-2025-71116 HIGH
Linux Kernel Out-of-bounds Read in libceph decode_pool()
CVSS 7.1
CVE-2025-71112 HIGH
Linux Kernel - Out-of-bounds Read in VLAN Configuration Mailbox Handling
CVSS 7.1
CVE-2025-37179 MEDIUM
System Component - Memory Corruption
CVSS 5.3
CVE-2025-37178 MEDIUM
System Component - Memory Corruption
CVSS 5.3
CVE-2025-71101 HIGH
Linux Kernel - Out-of-bounds Read in hp-bioscfg ACPI Package Parsing
CVSS 7.1
CVE-2025-71093 HIGH
Linux Kernel - Out-of-bounds Read in e1000_tbi_should_accept
CVSS 7.1
CVE-2025-69992 CRITICAL
phpgurukul News Portal Project V4.1 - Unauthenticated Arbitrary File Upload via upload.php
CVSS 9.8
CVE-2025-15506 LOW
OpenColorIO < 2.5.1 - Out-of-Bounds Read in ConvertToRegularExpression
CVSS 3.3
CVE-2025-53470 LOW
Apache NimBLE <1.9 - Out-of-bounds Read
CVSS 3.1
CVE-2025-67810 MEDIUM
Area9 Rhapsode 1.47.3 - Authenticated Arbitrary File Read via POST Parameters
CVSS 6.5
CVE-2025-69260 HIGH
Trend Micro Apex Central - Unauthenticated Denial of Service via Message Out-of-Bounds Read
CVSS 7.5
CVE-2025-15382 HIGH
wolfssh 1.4.12-1.4.21 - Authenticated Heap Buffer Over-Read via SCP Path Input
CVSS 8.1
CVE-2025-10933 MEDIUM
Silicon Labs Z-Wave Protocol Controller - Memory Corruption
CVE-2025-52871 MEDIUM
QNAP License Center 2.0.17-2.0.35 - Authenticated Out-of-Bounds Read
CVSS 6.5
Details
Vulnerabilities 8,815