CWE-125

Out-of-bounds Read

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product reads data past the end, or before the beginning, of the intended buffer.

8,471 vulnerabilities with CWE-125
CVE-2026-5392 MEDIUM
wolfSSL heap OOB read in PKCS7 SignedData streaming
CVSS 5.4
CVE-2026-34987 CRITICAL
Wasmtime with Winch compiler backend on aarch64 may allow a sandbox-escaping memory access
CVSS 9.9
CVE-2026-34971 HIGH
Wasmtime miscompiled guest heap access enables sandbox escape on aarch64 Cranelift
CVSS 7.8
CVE-2026-34941 HIGH
Wasmtime has a Heap OOB read in component model UTF-16 to latin1+utf16 string transcoding
CVSS 8.1
CVE-2026-39856 MEDIUM
osslsigncode has an Out-of-Bounds Read via Unvalidated Section Bounds in PE Page Hash Calculation
CVSS 5.5
CVE-2026-39855 MEDIUM
osslsigncode has an Integer Underflow in PE Page Hash Calculation Can Cause Out-of-Bounds Read
CVSS 5.5
CVE-2026-5445 CRITICAL
Out-of-Bounds Read in DicomImageDecoder (DecodeLookupTable)
CVSS 9.1
CVE-2026-5441 HIGH
Out-of-Bounds Read in DicomImageDecoder (PMSCT_RLE1 Decompression)
CVSS 7.1
CVE-2026-5437 HIGH
Orthanc Dicom Server < 1.12.10 - Out-of-Bounds Access
CVSS 7.5
CVE-2026-5913 HIGH
Google Chrome < 147.0.7727.55 - Out-of-Bounds Access
CVSS 8.1
CVE-2026-5907 HIGH
Google Chrome < 147.0.7727.55 - Out-of-Bounds Access
CVSS 8.1
CVE-2026-5886 MEDIUM
Google Chrome < 147.0.7727.55 - Out-of-Bounds Access
CVSS 5.3
CVE-2026-5873 HIGH
Google Chrome < 147.0.7727.55 - Out-of-Bounds Access
CVSS 8.8
CVE-2026-40026 MEDIUM
Sleuth Kit ISO9660 SUSP Extension Reference Out-of-Bounds Read
CVSS 4.4
CVE-2026-40025 MEDIUM
Sleuth Kit APFS Keybag Parser Out-of-Bounds Read
CVSS 4.4
CVE-2026-39864 MEDIUM
Kamailio Auth: Processing Vulnerability For Additional Authenticated User Identity Checks
CVSS 4.4
CVE-2026-28386 HIGH
OpenSSL < 3.6.2 - Denial of Service
CVSS 7.5
CVE-2026-32864 HIGH
NI LabVIEW < 23.0.0 - Information Disclosure
CVSS 7.8
CVE-2026-32863 HIGH
Out-of-Bounds Read in sentry_transaction_context_set_operation()
CVSS 7.8
CVE-2026-35444 HIGH
SDL_image has a heap buffer overflow READ via unchecked colormap index in XCF loader
CVSS 7.1
CVE-2026-35203 HIGH
ZLMediaKit VP9 RTP Parser Out-of-Bounds Read
CVSS 7.5
CVE-2026-35201 MEDIUM
Discount has an Out-of-bounds Read in rdiscount
CVSS 5.9
CVE-2026-35176 HIGH
openFPGALoader has a heap buffer overflow in POFParser::parseSection() via crafted .pof file
CVSS 7.1
CVE-2026-35170 HIGH
openFPGALoader has a heap buffer overflow in BitParser::parseHeader() via crafted .bit file
CVSS 7.1
CVE-2026-33817 MEDIUM
Vulnerability in go.etcd.io/bbolt
CVSS 6.2
Details
Vulnerabilities 8,471