CWE-787

High likelihood

Out-of-bounds Write

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product writes data past the end, or before the beginning, of the intended buffer.

14,109 vulnerabilities with CWE-787
CVE-2026-4902 HIGH
Tenda AC5 POST Request addressNat fromAddressNat memory corruption
CVSS 8.8
CVE-2026-33536 MEDIUM
ImageMagick InterpretImageFilename - Out-of-Bounds Write
CVSS 5.1
CVE-2026-33535 MEDIUM
ImageMagick X11 Display Interaction - Out-of-Bounds Write
CVSS 4.0
CVE-2026-33491 HIGH
Zen C < 0.4.4 - Stack Buffer Overflow in Identifier Mangling
CVSS 7.8
CVE-2026-33636 HIGH
LIBPNG has ARM NEON Palette Expansion Out-of-Bounds Read on AArch64
CVSS 7.6
CVE-2026-27816 CRITICAL
EVerest's ISO15118 update_energy_transfer_modes overflow can corrupt EVSE state
CVSS 9.1
CVE-2026-27815 CRITICAL
EVerest: ISO15118 session_setup payment options overflow can corrupt EVSE state
CVSS 9.1
CVE-2026-26073 MEDIUM
EVerest: OCPP 1.6 heap corruption caused by lock-free insertion in event_queue
CVSS 5.9
CVE-2026-27664 HIGH
Siemens CPCI85/SICORE < V26.10 - DoS via XML Parsing
CVSS 7.5
CVE-2026-23390 HIGH
tracing/dma: Cap dma_map_sg tracepoint arrays to prevent buffer overflow
CVSS 7.8
CVE-2026-23361 HIGH
PCI: dwc: ep: Flush MSI-X write before unmapping its ATU entry
CVSS 7.8
CVE-2026-23359 HIGH
Linux - Stack-based Buffer Overflow in devmap via Upper Device Index Array
CVSS 7.8
CVE-2026-23343 HIGH
xdp: produce a warning when calculated tailroom is negative
CVSS 7.8
CVE-2026-23326 HIGH
xsk: Fix fragment node deletion to prevent buffer leak
CVSS 7.8
CVE-2026-23323 HIGH
hwmon: (macsmc) Fix regressions in Apple Silicon SMC hwmon driver
CVSS 7.8
CVE-2026-28859 MEDIUM
Safari < 26.4 - Out-of-bounds Read
CVSS 4.3
CVE-2026-28857 MEDIUM
Safari < 26.4 - Out-of-bounds Read via Malicious Web Content
CVSS 6.5
CVE-2026-28825 HIGH
macOS < 14.8.5, < 15.7.5, < 26.4 - Out-of-bounds Write
CVSS 7.1
CVE-2026-20698 HIGH
iOS and iPadOS < 26.4 - Memory Corruption via Improper Memory Handling
CVSS 7.8
CVE-2026-20664 MEDIUM
Safari < 26.4 - Out-of-bounds Write via Malicious Web Content
CVSS 4.3
CVE-2026-20657 MEDIUM
iOS and iPadOS < 18.7.7 - Buffer Overflow via Maliciously Crafted File
CVSS 6.5
CVE-2026-4756 HIGH
Out-of-bounds Write in MolotovCherry Android-ImageMagick7
CVSS 7.8
CVE-2026-33854 HIGH
Out-of-bounds Write in MolotovCherry Android-ImageMagick7
CVSS 8.8
CVE-2026-33850 HIGH
Out-of-bounds Write in WujekFoliarz DualSenseY-v2
CVSS 7.8
CVE-2026-4746 CRITICAL
Heap Buffer Over-Write Vulenrabilty in timeplus-io/proton
Details
Vulnerabilities 14,109
Exploit Likelihood High