The product subtracts one value from another, such that the result is less than the minimum allowable integer value, which produces a value that is not equal to the correct result.
459 vulnerabilities with CWE-191
CVE-2026-54413
HIGH
Driftregion iso14229 < 0.9.0 - Out-of-bounds Read
CVSS 8.2
CVE-2026-54412
HIGH
Liambindle Mqtt-c < 1.1.6 - Out-of-bounds Read
CVSS 8.2
CVE-2026-47222
MEDIUM
NanaZip: Heap out-of-bounds read in NanaZip AVB property descriptor parser via unsigned integer underflow
CVSS 5.4
CVE-2026-11850
MEDIUM
Krb5: krb5: integer underflow in berval2tl_data() leads to heap out-of-bounds read
CVSS 5.0
CVE-2026-42542
HIGH
TDengine 3.4.0.0-3.4.1.5 - Unauthenticated Remote Denial of Service
CVSS 7.5
CVE-2026-42326
MEDIUM
ImageMagick: Heap Buffer Over-Read in IPTC encoder
CVSS 5.1
CVE-2026-45469
HIGH
Microsoft Excel Remote Code Execution Vulnerability
CVSS 7.8
CVE-2026-45463
HIGH
Microsoft Office Remote Code Execution Vulnerability
CVSS 8.4
CVE-2026-42981
HIGH
Microsoft Windows 11 version 23H2 - Windows Performance Monitor Remote Code Execution Vulnerability
CVSS 8.1
CVE-2026-42980
HIGH
Microsoft Windows 10 Version 1607 - NT OS Kernel Elevation of Privilege Vulnerability
CVSS 7.8
CVE-2026-11789
MEDIUM
389-ds-base: 389-ds-base: smd5 password storage plugin salt length integer underflow crash
CVSS 4.9
CVE-2026-49494
HIGH
Comodo Internet Security Inspect.sys IPv6 Integer Underflow Remote Denial of Service
CVSS 7.5
CVE-2026-50593
HIGH
Graphite < 1.3.15 - Integer Underflow (Wrap or Wraparound)
CVSS 7.3
CVE-2026-35049
MEDIUM
wire-ios has Persistent Remote DoS via Integer Underflow
CVSS 6.5
CVE-2026-37231
HIGH
FlexRIC 2.0.0 - Denial of Service via xApp ID Counter Wrap-Around
CVSS 7.5
CVE-2026-25104
HIGH
Mediaarea MediaInfoLib - Integer Underflow (Wrap or Wraparound)
CVSS 7.8
CVE-2026-44069
LOW
Netatalk 3.0.0-4.4.2 and >=4.5.0 - Integer Underflow in Volume Translation
CVSS 3.9
CVE-2026-44060
HIGH
Integer underflow in dsi_writeinit() leads to denial of service
CVSS 7.5
CVE-2026-8463
MEDIUM
Crypt::Argon2 versions from 0.017 before 0.031 for Perl perform a heap out-of-bounds read in argon2_verify on empty encoded input
CVSS 5.3
CVE-2026-42268
HIGH
ModSecurity: Unsigned integer underflow in @verifySSN / @verifyCPF / @verifySVNR operators
CVSS 7.5
CVE-2026-34672
MEDIUM
CAI Content Credentials | Integer Underflow (Wrap or Wraparound) (CWE-191)
CVSS 6.2
CVE-2026-34667
MEDIUM
CAI Content Credentials | Integer Underflow (Wrap or Wraparound) (CWE-191)
CVSS 6.2
CVE-2026-40397
HIGH
Windows Common Log File System Driver Elevation of Privilege Vulnerability
CVSS 7.8
CVE-2026-43916
HIGH
pam_authnft: Heap buffer overflow in NETLINK_SOCK_DIAG reply walker
CVE-2026-43359
MEDIUM
btrfs: fix transaction abort on set received ioctl due to item overflow
CVSS 5.5
Details
Vulnerabilities
459