CWE-681

High likelihood

Incorrect Conversion between Numeric Types

Parent: CWE-704 - Incorrect Type Conversion or Cast

When converting from one data type to another, such as long to integer, data can be omitted or translated in a way that produces unexpected values. If the resulting values are used in a sensitive context, then dangerous behaviors may occur.

116 vulnerabilities with CWE-681
CVE-2026-24192 HIGH
Nvidia GeForce - Incorrect Conversion between Numeric Types
CVSS 7.8
CVE-2026-26178 HIGH
Windows Advanced Rasterization Platform Elevation of Privilege Vulnerability
CVSS 8.8
CVE-2026-34945 MEDIUM
Wasmtime leaks host data with 64-bit tables and Winch
CVSS 6.5
CVE-2026-24174 HIGH
NVIDIA Triton Inference Server < 26.02 - Denial of Service via Malformed Request
CVSS 7.5
CVE-2026-4931 HIGH
Marginal Smart Contract v1 - Unsafe Downcast
CVSS 8.6
CVE-2026-34610 MEDIUM
leancrypto: Integer truncation in X.509 name parser enables certificate identity impersonation
CVSS 5.9
CVE-2026-34550 MEDIUM
iccDEV: UB at IccIO.cpp
CVSS 6.2
CVE-2026-34548 MEDIUM
iccDEV: UB at IccUtilXml.cpp
CVSS 6.2
CVE-2026-4602 HIGH
jsrsasign <11.1.1 - Incorrect Conversion
CVSS 7.5
CVE-2026-27691 MEDIUM
iccDEV <=2.3.1.4 - Memory Corruption
CVSS 6.2
CVE-2026-25989 HIGH
ImageMagick <7.1.2-15/6.9.13-40 - DoS
CVSS 7.5
CVE-2026-24856 HIGH
iccDEV < 2.3.1.2 - Memory Corruption via Floating-Point NaN to Unsigned Short Conversion
CVSS 7.8
CVE-2026-21693 HIGH
iccDEV < 2.3.1.2 - Type Confusion in CIccSegmentedCurveXml::ToXml()
CVSS 8.8
CVE-2026-21688 HIGH
iccDEV < 2.3.1.2 - Type Confusion in SIccCalcOp::ArgsPushed()
CVSS 8.8
CVE-2026-21673 HIGH
iccDEV < 2.3.1.1 - Integer Overflow in CIccXmlArrayType::ParseTextCountNum()
CVSS 7.8
CVE-2025-71002 MEDIUM
OneFlow v0.9.0 - Denial of Service via Floating-Point Exception in flow.column_stack
CVSS 6.5
CVE-2025-10543 MEDIUM
Eclipse Paho Go MQTT v3.1 <=1.5.0 - Buffer Overflow
CVSS 5.3
CVE-2025-58063 HIGH
CoreDNS 1.2.0-1.12.3 - Denial of Service via TTL Confusion in etcd Plugin
CVSS 7.1
CVE-2025-53733 HIGH
Microsoft Office Word - Code Injection
CVSS 8.4
CVE-2025-24059 HIGH
Windows Common Log File System Driver - Privilege Escalation
CVSS 7.8
CVE-2024-49093 HIGH
Windows ReFS - Privilege Escalation
CVSS 8.8
CVE-2024-7747 MEDIUM
Wallet for WooCommerce <1.5.6 - Info Disclosure
CVSS 6.5
CVE-2024-38044 HIGH
Windows DHCP Server Service - Remote Code Execution
CVSS 7.2
CVE-2024-32481 MEDIUM
vyper 0.3.8-0.4.0b1 - Denial of Service via Incorrect Signed Integer Comparison in Range Loop
CVSS 5.3
CVE-2024-26162 HIGH
Microsoft ODBC Driver - Remote Code Execution via Numeric Type Conversion
CVSS 8.8
Details
Vulnerabilities 116
Exploit Likelihood High