CWE-787
High likelihoodOut-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.
14,407 vulnerabilities with CWE-787
CVE-2026-4430
HIGH
LibreOffice 25.8-25.8.6, 26.2-26.2.2 - Out-of-bounds Write via OOXML Encryption Salt Mismatch
CVSS 7.8
CVE-2026-40003
MEDIUM
ZTE ZX297520V3 BootROM - USB Arbitrary Memory Write
CVSS 5.1
CVE-2026-7957
HIGH
Google Chrome < 148.0.7778.96 - Out-of-bounds Write in Media
CVSS 8.8
CVE-2026-7951
HIGH
Google Chrome < 148.0.7778.96 - Out-of-bounds Write in WebRTC
CVSS 8.8
CVE-2026-7950
MEDIUM
Google Chrome < 148.0.7778.96 - Out-of-bounds Read and Write in GFX
CVSS 5.4
CVE-2026-7923
HIGH
Google Chrome < 148.0.7778.96 - Out-of-bounds Write in Skia
CVSS 8.3
CVE-2026-7902
HIGH
Google Chrome < 148.0.7778.96 - Out-of-bounds Read in V8
CVSS 8.8
CVE-2026-7899
HIGH
Google Chrome < 148.0.7778.96 - Out-of-bounds Read and Write in V8
CVSS 8.8
CVE-2026-0300
CRITICAL
KEV
Palo Alto PAN-OS User-ID Authentication Portal - Unauthenticated Root RCE
CVSS 9.8
CVE-2026-6691
HIGH
MongoDB C Driver Cyrus SASL Canonicalization Buffer Overflow
CVSS 7.8
CVE-2026-43279
HIGH
ALSA: usb-audio: Add sanity check for OOB writes at silencing
CVSS 7.8
CVE-2026-43258
HIGH
alpha: fix user-space corruption during memory compaction
CVSS 7.8
CVE-2026-43250
HIGH
usb: chipidea: udc: fix DMA and SG cleanup in _ep_nuke()
CVSS 7.8
CVE-2026-43248
HIGH
vhost: move vdpa group bound check to vhost_vdpa
CVSS 7.8
CVE-2026-43208
CRITICAL
Linux Kernel RPS - Out-of-Bounds Access
CVSS 9.8
CVE-2026-43206
HIGH
drm/amdkfd: Fix out-of-bounds write in kfd_event_page_set()
CVSS 7.8
CVE-2026-43205
HIGH
dpaa2-switch: validate num_ifs to prevent out-of-bounds write
CVSS 7.8
CVE-2026-43186
CRITICAL
ipv6: ioam: fix heap buffer overflow in __ioam6_fill_trace_data()
CVSS 9.8
CVE-2026-43166
HIGH
erofs: fix interlaced plain identification for encoded extents
CVSS 7.1
CVE-2026-43158
HIGH
xfs: fix freemap adjustments when adding xattrs to leaf blocks
CVSS 8.8
CVE-2026-43150
HIGH
perf/arm-cmn: Reject unsupported hardware configurations
CVSS 7.8
CVE-2026-43125
CRITICAL
dlm: validate length in dlm_search_rsb_tree
CVSS 9.8
CVE-2026-43078
HIGH
crypto: af_alg - Fix page reassignment overflow in af_alg_pull_tsgl
CVSS 7.8
CVE-2026-43075
HIGH
ocfs2: fix out-of-bounds write in ocfs2_write_end_inline
CVSS 7.8
CVE-2026-28780
CRITICAL
Apache HTTP Server: buffer overflow in mod_proxy_ajp via ajp_msg_check_header()
CVSS 9.8
Details
Vulnerabilities
14,407
Exploit Likelihood
High