CWE-787

High likelihood

Out-of-bounds Write

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product writes data past the end, or before the beginning, of the intended buffer.

14,407 vulnerabilities with CWE-787
CVE-2026-4430 HIGH
LibreOffice 25.8-25.8.6, 26.2-26.2.2 - Out-of-bounds Write via OOXML Encryption Salt Mismatch
CVSS 7.8
CVE-2026-40003 MEDIUM
ZTE ZX297520V3 BootROM - USB Arbitrary Memory Write
CVSS 5.1
CVE-2026-7957 HIGH
Google Chrome < 148.0.7778.96 - Out-of-bounds Write in Media
CVSS 8.8
CVE-2026-7951 HIGH
Google Chrome < 148.0.7778.96 - Out-of-bounds Write in WebRTC
CVSS 8.8
CVE-2026-7950 MEDIUM
Google Chrome < 148.0.7778.96 - Out-of-bounds Read and Write in GFX
CVSS 5.4
CVE-2026-7923 HIGH
Google Chrome < 148.0.7778.96 - Out-of-bounds Write in Skia
CVSS 8.3
CVE-2026-7902 HIGH
Google Chrome < 148.0.7778.96 - Out-of-bounds Read in V8
CVSS 8.8
CVE-2026-7899 HIGH
Google Chrome < 148.0.7778.96 - Out-of-bounds Read and Write in V8
CVSS 8.8
CVE-2026-0300 CRITICAL KEV
Palo Alto PAN-OS User-ID Authentication Portal - Unauthenticated Root RCE
CVSS 9.8
CVE-2026-6691 HIGH
MongoDB C Driver Cyrus SASL Canonicalization Buffer Overflow
CVSS 7.8
CVE-2026-43279 HIGH
ALSA: usb-audio: Add sanity check for OOB writes at silencing
CVSS 7.8
CVE-2026-43258 HIGH
alpha: fix user-space corruption during memory compaction
CVSS 7.8
CVE-2026-43250 HIGH
usb: chipidea: udc: fix DMA and SG cleanup in _ep_nuke()
CVSS 7.8
CVE-2026-43248 HIGH
vhost: move vdpa group bound check to vhost_vdpa
CVSS 7.8
CVE-2026-43208 CRITICAL
Linux Kernel RPS - Out-of-Bounds Access
CVSS 9.8
CVE-2026-43206 HIGH
drm/amdkfd: Fix out-of-bounds write in kfd_event_page_set()
CVSS 7.8
CVE-2026-43205 HIGH
dpaa2-switch: validate num_ifs to prevent out-of-bounds write
CVSS 7.8
CVE-2026-43186 CRITICAL
ipv6: ioam: fix heap buffer overflow in __ioam6_fill_trace_data()
CVSS 9.8
CVE-2026-43166 HIGH
erofs: fix interlaced plain identification for encoded extents
CVSS 7.1
CVE-2026-43158 HIGH
xfs: fix freemap adjustments when adding xattrs to leaf blocks
CVSS 8.8
CVE-2026-43150 HIGH
perf/arm-cmn: Reject unsupported hardware configurations
CVSS 7.8
CVE-2026-43125 CRITICAL
dlm: validate length in dlm_search_rsb_tree
CVSS 9.8
CVE-2026-43078 HIGH
crypto: af_alg - Fix page reassignment overflow in af_alg_pull_tsgl
CVSS 7.8
CVE-2026-43075 HIGH
ocfs2: fix out-of-bounds write in ocfs2_write_end_inline
CVSS 7.8
CVE-2026-28780 CRITICAL
Apache HTTP Server: buffer overflow in mod_proxy_ajp via ajp_msg_check_header()
CVSS 9.8
Details
Vulnerabilities 14,407
Exploit Likelihood High