CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,173 vulnerabilities with CWE-190
CVE-2026-4985 MEDIUM
dloebl CGIF GIF Image cgif.c cgif_addframe integer overflow
CVSS 4.3
CVE-2026-34353 MEDIUM
OCaml through 4.14.3 - Memory Corruption
CVSS 5.9
CVE-2026-2272 MEDIUM
Gimp: gimp: memory corruption due to integer overflow in ico file handling
CVSS 4.3
CVE-2026-2271 LOW
Gimp: gimp: denial of service via crafted psp image file
CVSS 3.3
CVE-2026-27889 HIGH
NATS: Pre-auth remote server crash via WebSocket frame length overflow in wsRead
CVSS 7.5
CVE-2026-20639 HIGH
macOS < 14.8.5, < 15.7.5, < 26.3 - Heap Corruption via Integer Overflow
CVSS 7.5
CVE-2026-4775 HIGH
Libtiff: libtiff: arbitrary code execution or denial of service via signed integer overflow in tiff file processing
CVSS 7.8
CVE-2026-27784 HIGH
NGINX ngx_http_mp4_module vulnerability
CVSS 7.8
CVE-2026-4694 HIGH
Incorrect boundary conditions, integer overflow in the Graphics component
CVSS 7.5
CVE-2026-4690 HIGH
Sandbox escape due to incorrect boundary conditions, integer overflow in the XPCOM component
CVSS 8.6
CVE-2026-4689 CRITICAL
Sandbox escape due to incorrect boundary conditions, integer overflow in the XPCOM component
CVSS 10.0
CVE-2026-33855 MEDIUM
Integer Overflow or Wraparound in MolotovCherry Android-ImageMagick7
CVSS 5.5
CVE-2026-4739 CRITICAL
Integer overflow vulnerabilities in InsightSoftwareConsortium/ITK
CVE-2026-4731 HIGH
An Integer Overflow Vulnerability in artraweditor/ART
CVE-2026-4679 HIGH
Google Chrome < 146.0.7680.165 - Integer Overflow in Fonts via Crafted HTML Page
CVSS 8.8
CVE-2026-33306 HIGH
bcrypt-ruby <3.1.22 JRuby Cost 31 - Weak Key Strengthening
CVSS 7.5
CVE-2026-33298 HIGH
llama.cpp <b7824 GGUF Tensor Parsing - Heap Buffer Overflow
CVSS 7.8
CVE-2026-32845 HIGH
jkuhlmann / cgltf <= 1.15 Sparse Accessor Validation Integer Overflow
CVSS 8.4
CVE-2026-33040 HIGH
libp2p-rust: Gossipsub PRUNE.backoff Duration Overflow
CVSS 7.5
CVE-2026-4464 HIGH
Google Chrome <146.0.7680.153 - Memory Corruption
CVSS 8.8
CVE-2026-4453 MEDIUM
Google Chrome <146.0.7680.153 - Info Disclosure
CVSS 4.3
CVE-2026-4452 HIGH
Google Chrome <146.0.7680.153 - Memory Corruption
CVSS 8.8
CVE-2026-32875 HIGH
UltraJSON 5.10-5.11.0 Indent Handling - Integer Overflow Denial of Service
CVSS 7.5
CVE-2026-32759 HIGH
File Browser TUS Negative Upload-Length Fires Post-Upload Hooks Prematurely
CVSS 8.1
CVE-2026-31970 HIGH
HTSlib BGZF GZI Index - Heap Buffer Overflow
CVSS 8.1
Details
Vulnerabilities 3,173
Exploit Likelihood Medium