The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.
3,173 vulnerabilities with CWE-190
CVE-2026-28231
CRITICAL
pillow_heif <1.3.0 - Memory Corruption
CVSS 9.1
CVE-2026-3284
LOW
libvips 8.19.0 - Integer Overflow in vips_extract_area_build
CVSS 3.3
CVE-2026-27809
CRITICAL
psd-tools < 1.12.2 - Denial of Service via Malformed RLE-Compressed Image Data
CVSS 9.1
CVE-2026-27951
MEDIUM
FreeRDP < 3.23.0 - Denial of Service via Stream_EnsureCapacity
CVSS 5.3
CVE-2026-27691
MEDIUM
iccDEV <=2.3.1.4 - Memory Corruption
CVSS 6.2
CVE-2026-2781
CRITICAL
Firefox and Thunderbird < 148 and < 140.8 - Integer Overflow in NSS Libraries
CVSS 9.8
CVE-2026-2774
CRITICAL
Firefox and Thunderbird - Integer Overflow in Audio/Video Component
CVSS 9.8
CVE-2026-2762
CRITICAL
Firefox < 148.0 and < 140.8.0 - Integer Overflow in JavaScript Standard Library
CVSS 9.8
CVE-2026-25989
HIGH
ImageMagick <7.1.2-15/6.9.13-40 - DoS
CVSS 7.5
CVE-2026-25970
MEDIUM
ImageMagick <7.1.2-15/<6.9.13-40 - Memory Corruption
CVSS 5.3
CVE-2026-25897
MEDIUM
ImageMagick <7.1.2-15/6.9.13-40 - Memory Corruption
CVSS 6.5
CVE-2026-25794
HIGH
ImageMagick <7.1.2-15 - Memory Corruption
CVSS 8.2
CVE-2026-2588
CRITICAL
Crypt::NaCl::Sodium <=2.001 - Memory Corruption
CVSS 9.1
CVE-2026-0619
MEDIUM
Silicon Labs Matter 2.7.0-<2.8.0 - Denial of Service via Integer Wraparound
CVE-2026-21354
MEDIUM
DNG SDK < 1.7.2 - Denial of Service via Integer Overflow
CVSS 5.5
CVE-2026-21353
HIGH
DNG SDK < 1.7.2 - Integer Overflow or Wraparound via Malicious File
CVSS 7.8
CVE-2026-21347
HIGH
Adobe Bridge < 15.1.4 - Integer Overflow or Wraparound via Malicious File
CVSS 7.8
CVE-2026-21321
HIGH
After Effects < 25.6.4 - Integer Overflow or Wraparound via Malicious File
CVSS 7.8
CVE-2026-25210
MEDIUM
libexpat < 2.7.4 - Integer Overflow in Tag Buffer Reallocation
CVSS 6.9
CVE-2026-24889
MEDIUM
soroban-sdk < 25.0.2 - Integer Overflow in Bytes::slice, Vec::slice, and Prng::gen_range
CVSS 5.3
CVE-2026-24875
HIGH
yoyofr modizer <4.1.1 - Buffer Overflow
CVSS 7.8
CVE-2026-24830
CRITICAL
Ralim IronOS <v2.23-rc2 - Buffer Overflow
CVSS 9.8
CVE-2026-24814
CRITICAL
swoole-src <6.0.2 - Buffer Overflow
CVE-2026-24808
HIGH
RawTherapee <5.11 - Buffer Overflow
CVE-2026-1464
MEDIUM
MuntashirAkon AppManager <4.0.4 - Buffer Overflow
Details
Vulnerabilities
3,173
Exploit Likelihood
Medium