CWE-125

Out-of-bounds Read

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product reads data past the end, or before the beginning, of the intended buffer.

8,471 vulnerabilities with CWE-125
CVE-2026-4744 CRITICAL
Notepad3 Bundled Oniguruma compile_string_node() Heap Buffer Overflow via Crafted Regex Pattern Allows Arbitrary Code Execution
CVE-2026-4732 HIGH
Out-of-bounds Read Overflow in tildearrow/furnace
CVE-2026-4677 HIGH
Google Chrome < 146.0.7680.165 - Out-of-Bounds Access
CVSS 8.8
CVE-2026-4674 HIGH
Google Chrome < 146.0.7680.165 - Out-of-Bounds Access
CVSS 8.8
CVE-2026-1940 MEDIUM
Gstreamer: incomplete fix of cve-2026-1940
CVSS 5.1
CVE-2026-3055 CRITICAL KEV
Insufficient input validation leading to memory overread
CVSS 9.8
CVE-2026-4647 MEDIUM
Binutils: out-of-bounds read in xcoff relocation processing in gnu binutils bfd library
CVSS 6.1
CVE-2026-4437 HIGH
gethostbyaddr and gethostbyaddr_r may incorrectly handle DNS response
CVSS 7.5
CVE-2026-33069 HIGH
PJSIP has an Out-of-bounds Read in SIP multipart parsing
CVSS 7.5
CVE-2026-4462 HIGH
Google Chrome < 146.0.7680.153 - Out-of-Bounds Access
CVSS 8.8
CVE-2026-4460 HIGH
Google Chrome < 146.0.7680.153 - Out-of-Bounds Access
CVSS 8.8
CVE-2026-4459 HIGH
Google Chrome < 146.0.7680.153 - Out-of-Bounds Access
CVSS 8.8
CVE-2026-4440 HIGH
Google Chrome < 146.0.7680.153 - Out-of-Bounds Access
CVSS 8.8
CVE-2026-4439 HIGH
Google Chrome < 146.0.7680.153 - Out-of-Bounds Access
CVSS 8.8
CVE-2026-4159 LOW
wc_PKCS7_DecodeEnvelopedData 1 byte out-of-bounds read
CVSS 3.3
CVE-2026-3547 HIGH
wolfSSL: out-of-bounds read (DoS) in ALPN parsing due to incomplete validation
CVSS 7.5
CVE-2026-4424 HIGH
Libarchive: libarchive: information disclosure via heap out-of-bounds read in rar archive processing
CVSS 7.5
CVE-2026-31967 CRITICAL
HTSlib CRAM reader has out-of-bounds read due to improper validation of input
CVSS 9.1
CVE-2026-31966 CRITICAL
HTSlib CRAM reader has out-of-bounds read due to improper validation of input
CVSS 9.1
CVE-2026-31965 HIGH
HTSlib CRAM reader has out-of-bounds reads due to improper validation of input
CVSS 8.2
CVE-2026-31962 HIGH
HTSlib CRAM reader has heap buffer overflow due to improper validation of input
CVSS 8.8
CVE-2026-22882 MEDIUM
Canva Affinity < 3.1.0 (March 26) - Out-of-Bounds Access
CVSS 6.1
CVE-2026-20726 MEDIUM
Canva Affinity < 3.1.0 (March 26) - Out-of-Bounds Access
CVSS 6.1
CVE-2026-0708 HIGH
Libucl: libucl: denial of service via embedded null byte in ucl input
CVSS 8.3
CVE-2026-4227 HIGH
LB-LINK BL-WR9000 get_hidessid_cfg sub_44D844 buffer overflow
CVSS 8.8
Details
Vulnerabilities 8,471