CWE-129

High likelihood

Improper Validation of Array Index

Parent: CWE-1285 - Improper Validation of Specified Index, Position, or Offset in Input

The product uses untrusted input when calculating or using an array index, but the product does not validate or incorrectly validates the index to ensure the index references a valid position within the array.

530 vulnerabilities with CWE-129
CVE-2026-26932 MEDIUM
Packetbeat - DoS
CVSS 5.7
CVE-2026-25882 HIGH
Fiber v2/v3 - DoS
CVSS 7.5
CVE-2025-69248 HIGH
free5GC AMF <=1.4.1 - Buffer Overflow
CVSS 7.5
CVE-2023-20601
RAS TA Driver - Memory Corruption
CVE-2026-2006 HIGH
PostgreSQL <18.2-14.21 - RCE
CVSS 8.8
CVE-2026-25585 HIGH
iccDEV <2.3.1.3 - Info Disclosure
CVSS 7.8
CVE-2026-25518 MEDIUM
Cert-manager < 1.18.5 - Denial of Service
CVSS 5.9
CVE-2026-25068
alsa-lib <1.2.15.2 - Buffer Overflow
CVE-2026-22859 CRITICAL
Freerdp < 3.20.1 - Out-of-Bounds Read
CVSS 9.1
CVE-2026-0529 MEDIUM
Packetbeat - Buffer Overflow
CVSS 6.5
CVE-2026-0528 MEDIUM
Elastic Kibana < 7.17.29 - Improper Array Index Validation
CVSS 6.5
CVE-2025-47393 HIGH
Qualcomm Qam8255p Firmware - Improper Array Index Validation
CVSS 7.8
CVE-2025-15271 HIGH
Fontforge - Improper Array Index Validation
CVSS 8.8
CVE-2025-15270 HIGH
Fontforge - Improper Array Index Validation
CVSS 8.8
CVE-2025-65562 HIGH
Free5gc - Improper Array Index Validation
CVSS 7.5
CVE-2025-66559
Taiko Alethia <2.3.1 - Info Disclosure
CVE-2025-61915 MEDIUM
OpenPrinting CUPS <2.4.15 - Memory Corruption
CVSS 6.0
CVE-2025-0657
Automated Logic and Carrier i-Vu Gen5 router drv_gen5_106-01-2380 -...
CVE-2025-65499 MEDIUM
Libcoap - Improper Array Index Validation
CVSS 4.3
CVE-2025-62372 MEDIUM
Vllm < 0.11.1 - Improper Array Index Validation
CVSS 6.5
CVE-2025-10158 MEDIUM
Rsync < unknown - Buffer Overflow
CVSS 4.3
CVE-2025-47361 HIGH
Qualcomm Qam8255p Firmware - Improper Array Index Validation
CVSS 7.8
CVE-2025-47352 HIGH
Qualcomm Fastconnect 7800 Firmware - Improper Array Index Validation
CVSS 7.8
CVE-2023-53485 HIGH
Linux kernel - Memory Corruption
CVSS 7.8
CVE-2025-27034 CRITICAL
SOR < unknown - Memory Corruption
CVSS 9.8
Details
Vulnerabilities 530
Exploit Likelihood High