CWE-681

High likelihood

Incorrect Conversion between Numeric Types

Parent: CWE-704 - Incorrect Type Conversion or Cast

When converting from one data type to another, such as long to integer, data can be omitted or translated in a way that produces unexpected values. If the resulting values are used in a sensitive context, then dangerous behaviors may occur.

124 vulnerabilities with CWE-681
CVE-2026-55768 HIGH
GoAccess WebSocket Server: Signed 32 bit truncation of the 64 bit frame length causes a remote pre-authentication denial of service
CVE-2026-55123 HIGH
Microsoft PowerPoint Remote Code Execution Vulnerability
CVSS 7.8
CVE-2026-50402 HIGH
Microsoft Windows 10 Version 1607 - NTFS Elevation of Privilege Vulnerability
CVSS 7.8
CVE-2026-53466 MEDIUM
ImageMagick: Heap Buffer Over-Read in XCF decoder due to integer conversion overflow
CVSS 6.5
CVE-2026-45258 HIGH
FreeBSD sound(4) mmap - Integer Overflow Privilege Escalation
CVSS 7.8
CVE-2026-53133 HIGH
RDMA/umem: Fix truncation for block sizes >= 4G
CVSS 7.8
CVE-2026-53923 HIGH
vLLM GGUF Kernels: int64_t to int truncation of tensor dimensions causes GPU buffer overflow
CVSS 7.5
CVE-2026-9143 LOW
Incorrect Conversion between Numeric Types in NI grpc-device due to missing range checks in CodeGen
CVSS 3.7
CVE-2026-24192 HIGH
Nvidia GeForce - Incorrect Conversion between Numeric Types
CVSS 7.8
CVE-2026-26178 HIGH
Windows Advanced Rasterization Platform Elevation of Privilege Vulnerability
CVSS 8.8
CVE-2026-34945 MEDIUM
Wasmtime leaks host data with 64-bit tables and Winch
CVSS 6.5
CVE-2026-24174 HIGH
NVIDIA Triton Inference Server < 26.02 - Denial of Service via Malformed Request
CVSS 7.5
CVE-2026-4931 HIGH
Marginal Smart Contract v1 - Unsafe Downcast
CVSS 8.6
CVE-2026-34610 MEDIUM
leancrypto: Integer truncation in X.509 name parser enables certificate identity impersonation
CVSS 5.9
CVE-2026-34550 MEDIUM
iccDEV: UB at IccIO.cpp
CVSS 6.2
CVE-2026-34548 MEDIUM
iccDEV: UB at IccUtilXml.cpp
CVSS 6.2
CVE-2026-4602 HIGH
jsrsasign <11.1.1 - Incorrect Conversion
CVSS 7.5
CVE-2026-27691 MEDIUM
iccDEV <=2.3.1.4 - Memory Corruption
CVSS 6.2
CVE-2026-25989 HIGH
ImageMagick <7.1.2-15/6.9.13-40 - DoS
CVSS 7.5
CVE-2026-24856 HIGH
iccDEV < 2.3.1.2 - Memory Corruption via Floating-Point NaN to Unsigned Short Conversion
CVSS 7.8
CVE-2026-21693 HIGH
iccDEV < 2.3.1.2 - Type Confusion in CIccSegmentedCurveXml::ToXml()
CVSS 8.8
CVE-2026-21688 HIGH
iccDEV < 2.3.1.2 - Type Confusion in SIccCalcOp::ArgsPushed()
CVSS 8.8
CVE-2026-21673 HIGH
iccDEV < 2.3.1.1 - Integer Overflow in CIccXmlArrayType::ParseTextCountNum()
CVSS 7.8
CVE-2025-71002 MEDIUM
OneFlow v0.9.0 - Denial of Service via Floating-Point Exception in flow.column_stack
CVSS 6.5
CVE-2025-10543 MEDIUM
Eclipse Paho Go MQTT v3.1 <=1.5.0 - Buffer Overflow
CVSS 5.3
Details
Vulnerabilities 124
Exploit Likelihood High