CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,329 vulnerabilities with CWE-190
CVE-2026-4453 MEDIUM
Google Chrome <146.0.7680.153 - Info Disclosure
CVSS 4.3
CVE-2026-4452 HIGH
Google Chrome <146.0.7680.153 - Memory Corruption
CVSS 8.8
CVE-2026-32875 HIGH
UltraJSON 5.10-5.11.0 Indent Handling - Integer Overflow Denial of Service
CVSS 7.5
CVE-2026-32759 HIGH
File Browser TUS Negative Upload-Length Fires Post-Upload Hooks Prematurely
CVSS 8.1
CVE-2026-31970 HIGH
HTSlib BGZF GZI Index - Heap Buffer Overflow
CVSS 8.1
CVE-2026-2809 MEDIUM
Endpoint DLP Driver DLL
CVE-2026-2921 HIGH
GStreamer RIFF Palette Integer Overflow Remote Code Execution Vulnerability
CVSS 7.8
CVE-2026-31814 HIGH
libp2p rust-yamux 0.13.0-0.13.8 - Unauthenticated Denial of Service via WindowUpdate Integer Overflow
CVSS 7.5
CVE-2026-29776 LOW
FreeRDP <3.24.0 - Memory Corruption
CVSS 3.1
CVE-2026-32239 MEDIUM
Cap'n Proto <1.4.0 KJ-HTTP - Content-Length Integer Overflow
CVSS 6.5
CVE-2026-27940 HIGH
llama.cpp <b8146 - Memory Corruption
CVSS 7.8
CVE-2026-3914 HIGH
Google Chrome <146.0.7680.71 - Memory Corruption
CVSS 8.8
CVE-2026-27281 MEDIUM
DNG SDK < 1.7.1 - Denial of Service via Integer Overflow
CVSS 5.5
CVE-2026-26134 HIGH
Microsoft Office - Privilege Escalation
CVSS 7.8
CVE-2026-26111 HIGH
Windows Server 2012-2025, Windows 10/11 - Authenticated RCE via Integer Overflow in RRAS
CVSS 8.0
CVE-2026-25173 HIGH
Windows 10/11 Multiple Versions - Remote Code Execution via Integer Overflow in RRAS
CVSS 8.0
CVE-2026-25172 HIGH
Windows Server 2012, 2016, 2019, 2022, 2025 - Authenticated RCE via Integer Overflow in RRAS
CVSS 8.0
CVE-2026-30937 MEDIUM
ImageMagick <7.1.2-16/6.9.13-41 - Memory Corruption
CVSS 6.8
CVE-2026-30935 MEDIUM
ImageMagick <7.1.2-16 - Memory Corruption
CVSS 4.4
CVE-2026-28693 HIGH
ImageMagick <7.1.2-16/6.9.13-41 - Memory Corruption
CVSS 8.1
CVE-2026-28493 MEDIUM
ImageMagick <7.1.2-16 - Memory Corruption
CVSS 6.5
CVE-2026-3707 MEDIUM
MrNanko webp4j <=1.3.x - Integer Overflow
CVSS 5.3
CVE-2026-30910 HIGH
Crypt::Sodium::XS <=0.001000 - Buffer Overflow
CVSS 7.5
CVE-2026-30909 CRITICAL
Crypt::NaCl::Sodium <=2.002 - Memory Corruption
CVSS 9.8
CVE-2026-28497 CRITICAL
TinyWeb <2.03 - HTTP Request Smuggling
CVSS 9.1
Details
Vulnerabilities 3,329
Exploit Likelihood Medium