CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,329 vulnerabilities with CWE-190
CVE-2026-40469 CRITICAL
Heap buffer overflow in gawk
CVSS 9.1
CVE-2026-40468 CRITICAL
Heap buffer overflow in gawk
CVSS 9.1
CVE-2026-7162 HIGH
WinFsp - Integer Overflow or Wraparound
CVSS 7.8
CVE-2026-15551 MEDIUM
Samsung rlottie: Numeric truncation in gray_hline() leads to heap-based buffer overflow when rendering a crafted Lottie animation at native canvas size
CVSS 5.5
CVE-2026-57156 CRITICAL
FreeRDP: Integer overflow leading to heap buffer overflow in Orders Delta Points parsing
CVSS 9.8
CVE-2026-38076 HIGH
jbig2dec - Denial of Service via Integer Overflow in jbig2_arith_iaid_ctx_new
CVSS 7.5
CVE-2026-15108 MEDIUM
Google Chrome - Integer Overflow or Wraparound
CVSS 4.3
CVE-2026-58207 HIGH
NATS Server: Remote crash via integer overflow in Connz pagination
CVSS 7.7
CVE-2026-59879 HIGH
Immutable.js `List` 32-bit trie overflow → unrecoverable DoS
CVSS 7.5
CVE-2026-53482 HIGH
Dell PowerProtect Data Domain - Integer Overflow or Wraparound
CVSS 7.5
CVE-2026-58472 MEDIUM
GNU Wget 1.25.0 Heap Buffer Overflow via HTML Attribute Encoding
CVSS 5.9
CVE-2026-58470 MEDIUM
GNU Wget 1.25.0 Integer Overflow via Content-Range Header Parsing
CVSS 5.3
CVE-2026-58384 HIGH
Gimp: gimp: integer overflow in read_rle_channel()
CVSS 7.3
CVE-2026-59089 MEDIUM
Gimp: gimp: denial of service via integer overflow in playstation tim loader
CVSS 5.5
CVE-2026-53763 LOW
OP-TEE has AES-GCM 32-bit integer overflow in length counters that breaks authentication guarantee
CVSS 3.8
CVE-2026-14787 LOW
radareorg radare2 pb Print cmd_print.inc cmd_print integer overflow
CVSS 3.3
CVE-2026-14786 LOW
radareorg radare2 str.c r_str_word_get0set integer overflow
CVSS 3.3
CVE-2026-14761 LOW
radareorg radare2 str.c r_str_append integer overflow
CVSS 3.3
CVE-2026-14758 LOW
radareorg radare2 hexpairs cmd_anal.inc.c cmd_anal_opcode integer overflow
CVSS 3.3
CVE-2026-14757 MEDIUM
radareorg radare2 cmd_anal.inc core_anal_bytes integer overflow
CVSS 5.3
CVE-2026-57974 HIGH
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVSS 8.8
CVE-2026-46463 MEDIUM
Dell PowerProtect Data Domain - Integer Overflow or Wraparound
CVSS 6.5
CVE-2026-14544 CRITICAL
HPLIP hpcups - Integer Overflow Remote Code Execution
CVSS 9.8
CVE-2026-14430 HIGH
Google Chrome - External Control of Assumed-Immutable Web Parameter
CVSS 8.8
CVE-2026-14391 MEDIUM
Google Chrome - External Control of Assumed-Immutable Web Parameter
CVSS 5.3
Details
Vulnerabilities 3,329
Exploit Likelihood Medium