CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,173 vulnerabilities with CWE-190
CVE-2026-28231 CRITICAL
pillow_heif <1.3.0 - Memory Corruption
CVSS 9.1
CVE-2026-3284 LOW
libvips 8.19.0 - Integer Overflow in vips_extract_area_build
CVSS 3.3
CVE-2026-27809 CRITICAL
psd-tools < 1.12.2 - Denial of Service via Malformed RLE-Compressed Image Data
CVSS 9.1
CVE-2026-27951 MEDIUM
FreeRDP < 3.23.0 - Denial of Service via Stream_EnsureCapacity
CVSS 5.3
CVE-2026-27691 MEDIUM
iccDEV <=2.3.1.4 - Memory Corruption
CVSS 6.2
CVE-2026-2781 CRITICAL
Firefox and Thunderbird < 148 and < 140.8 - Integer Overflow in NSS Libraries
CVSS 9.8
CVE-2026-2774 CRITICAL
Firefox and Thunderbird - Integer Overflow in Audio/Video Component
CVSS 9.8
CVE-2026-2762 CRITICAL
Firefox < 148.0 and < 140.8.0 - Integer Overflow in JavaScript Standard Library
CVSS 9.8
CVE-2026-25989 HIGH
ImageMagick <7.1.2-15/6.9.13-40 - DoS
CVSS 7.5
CVE-2026-25970 MEDIUM
ImageMagick <7.1.2-15/<6.9.13-40 - Memory Corruption
CVSS 5.3
CVE-2026-25897 MEDIUM
ImageMagick <7.1.2-15/6.9.13-40 - Memory Corruption
CVSS 6.5
CVE-2026-25794 HIGH
ImageMagick <7.1.2-15 - Memory Corruption
CVSS 8.2
CVE-2026-2588 CRITICAL
Crypt::NaCl::Sodium <=2.001 - Memory Corruption
CVSS 9.1
CVE-2026-0619 MEDIUM
Silicon Labs Matter 2.7.0-<2.8.0 - Denial of Service via Integer Wraparound
CVE-2026-21354 MEDIUM
DNG SDK < 1.7.2 - Denial of Service via Integer Overflow
CVSS 5.5
CVE-2026-21353 HIGH
DNG SDK < 1.7.2 - Integer Overflow or Wraparound via Malicious File
CVSS 7.8
CVE-2026-21347 HIGH
Adobe Bridge < 15.1.4 - Integer Overflow or Wraparound via Malicious File
CVSS 7.8
CVE-2026-21321 HIGH
After Effects < 25.6.4 - Integer Overflow or Wraparound via Malicious File
CVSS 7.8
CVE-2026-25210 MEDIUM
libexpat < 2.7.4 - Integer Overflow in Tag Buffer Reallocation
CVSS 6.9
CVE-2026-24889 MEDIUM
soroban-sdk < 25.0.2 - Integer Overflow in Bytes::slice, Vec::slice, and Prng::gen_range
CVSS 5.3
CVE-2026-24875 HIGH
yoyofr modizer <4.1.1 - Buffer Overflow
CVSS 7.8
CVE-2026-24830 CRITICAL
Ralim IronOS <v2.23-rc2 - Buffer Overflow
CVSS 9.8
CVE-2026-24814 CRITICAL
swoole-src <6.0.2 - Buffer Overflow
CVE-2026-24808 HIGH
RawTherapee <5.11 - Buffer Overflow
CVE-2026-1464 MEDIUM
MuntashirAkon AppManager <4.0.4 - Buffer Overflow
Details
Vulnerabilities 3,173
Exploit Likelihood Medium