CWE-787

High likelihood

Out-of-bounds Write

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product writes data past the end, or before the beginning, of the intended buffer.

13,852 vulnerabilities with CWE-787
CVE-2026-40494 CRITICAL
SAIL has heap buffer overflow in TGA RLE decoder — raw packet path missing bounds check
CVSS 9.8
CVE-2026-40493 CRITICAL
SAIL has heap buffer overflow in PSD decoder — bpp mismatch in LAB 16-bit mode
CVSS 9.8
CVE-2026-40492 CRITICAL
SAIL has heap buffer overflow in XWD decoder — bits_per_pixel vs pixmap_depth type confusion in byte-swap
CVSS 9.8
CVE-2026-40489 HIGH
editorconfig-core-c has incomplete fix for CVE-2023-0341
CVE-2026-27890 HIGH
Firebird has Pre-Auth DOS when Processing Out of Order CNCT_specific_data Segments
CVSS 8.2
CVE-2026-6507 HIGH
Dnsmasq: dnsmasq: denial of service due to out-of-bounds write in dhcp bootreply processing
CVSS 7.5
CVE-2026-6314 HIGH
Google Chrome < 147.0.7727.101 - Out-of-Bounds Access
CVSS 8.3
CVE-2026-6305 HIGH
Google Chrome < 147.0.7727.101 - Buffer Overflow
CVSS 8.8
CVE-2026-40919 MEDIUM
Gimp: gimp: denial of service via specially crafted seattle filmworks file
CVSS 6.1
CVE-2026-40916 MEDIUM
Gimp: gimp: denial of service due to stack buffer overflow in tim image loader
CVSS 5.0
CVE-2026-40688 HIGH
Fortinet FortiWeb < 8.0.3 - Out-of-Bounds Access
CVSS 7.2
CVE-2026-27295 HIGH
Adobe Framemaker | Out-of-bounds Write (CWE-787)
CVSS 7.8
CVE-2026-34631 HIGH
InCopy | Out-of-bounds Write (CWE-787)
CVSS 7.8
CVE-2026-34618 HIGH
Illustrator | Out-of-bounds Write (CWE-787)
CVSS 7.8
CVE-2026-27258 MEDIUM
Adobe Dng SDK < 1.7.1 2502 - Out-of-Bounds Access
CVSS 5.5
CVE-2026-27291 HIGH
InDesign Desktop | Out-of-bounds Write (CWE-787)
CVSS 7.8
CVE-2026-40310 MEDIUM
ImageMagick: Heap out-of-bounds write in JP2 encoder
CVSS 5.5
CVE-2026-40169 MEDIUM
ImageMagick: Heap buffer overflow (WRITE) in the YAML and JSON encoders
CVSS 6.2
CVE-2026-34238 MEDIUM
ImageMagick: Integer overflow in despeckle operation causes heap buffer overflow on 32-bit builds
CVSS 5.1
CVE-2026-33901 HIGH
ImageMagick has a Heap Buffer Overflow via MVG decoder
CVSS 7.5
CVE-2026-6100 CRITICAL
Use-after-free in lzma.LZMADecompressor, bz2.BZ2Decompressor, and gzip.GzipFile after re-use under memory pressure
CVE-2026-34863 MEDIUM
Huawei HarmonyOS < 6.0.0 - Out-of-Bounds Access
CVSS 6.7
CVE-2026-25207 HIGH
Samsung Open Source Escargot - Out-of-Bounds Access
CVSS 7.4
CVE-2026-40393 HIGH
Mesa < 25.3.6 - Out-of-Bounds Access
CVSS 8.1
CVE-2026-5495 HIGH
Labcenter Electronics Proteus PDSPRJ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
CVSS 7.8
Details
Vulnerabilities 13,852
Exploit Likelihood High