CWE-787

High likelihood

Out-of-bounds Write

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product writes data past the end, or before the beginning, of the intended buffer.

14,407 vulnerabilities with CWE-787
CVE-2026-5443 CRITICAL
Heap Buffer Overflow in DICOM Image Decoder (Palette Color Decode)
CVSS 9.8
CVE-2026-5442 CRITICAL
Heap Buffer Overflow in DICOM Image Decoder via VR UL Dimensions
CVSS 9.8
CVE-2026-5873 HIGH
Google Chrome < 147.0.7727.55 - Out-of-bounds Read and Write in V8
CVSS 8.8
CVE-2026-30814 HIGH
Buffer Overflow Vulnerability in TP-Link AX53
CVSS 8.0
CVE-2026-5726 HIGH
ASDA-Soft Stack-based Buffer Overflow Vulnerability
CVSS 7.8
CVE-2026-5747 HIGH
Out-of-bounds Write in Firecracker virtio-pci Transport
CVSS 7.5
CVE-2026-31789 CRITICAL
Heap Buffer Overflow in Hexadecimal Conversion
CVSS 9.8
CVE-2026-32862 HIGH
Out-of-Bounds Write in ResFileFactory::InitResourceMgr()
CVSS 7.8
CVE-2026-32861 HIGH
Out-of-Bounds Write Vulnerability in NI LabVIEW when loading lvclass file
CVSS 7.8
CVE-2026-32860 HIGH
Out-of-Bounds Write Vulnerability in NI LabVIEW when loading lvlib file
CVSS 7.8
CVE-2026-33816 CRITICAL
github.com/jackc/pgx/v5 - Memory Corruption
CVSS 9.8
CVE-2026-33815 CRITICAL
github.com/jackc/pgx/v5 - Memory Corruption
CVSS 9.8
CVE-2026-21413 CRITICAL
LibRaw - Heap-Based Buffer Overflow in lossless_jpeg_load_raw
CVSS 9.8
CVE-2026-5735 CRITICAL
Memory safety bugs fixed in Firefox 149.0.2 and Thunderbird 149.0.2
CVSS 9.8
CVE-2026-5734 CRITICAL
Memory safety bugs fixed in Firefox ESR 140.9.1, Thunderbird ESR 140.9.1, Firefox 149.0.2 and Thunderbird 149.0.2
CVSS 9.8
CVE-2026-5733 HIGH
Incorrect boundary conditions in the Graphics: WebGPU component
CVSS 8.8
CVE-2026-5731 CRITICAL
Memory safety bugs fixed in Firefox ESR 115.34.1, Firefox ESR 140.9.1, Thunderbird ESR 140.9.1, Firefox 149.0.2 and Thunderbird 149.0.2
CVSS 9.8
CVE-2026-20446 MEDIUM
MediaTek chipset >=MT6813 - Denial of Service via Integer Overflow in Secure Boot
CVSS 4.3
CVE-2026-20433 HIGH
MediaTek chipset - Out-of-bounds Write in Modem via Rogue Base Station
CVSS 8.8
CVE-2026-20432 HIGH
MediaTek chipset - Out-of-bounds Write in Modem via Rogue Base Station
CVSS 8.0
CVE-2026-34589 MEDIUM
OpenEXR: DWA Lossy Decoder Heap Out-of-Bounds Write
CVSS 5.0
CVE-2026-34588 HIGH
OpenEXR PIZ Decoder - Out-of-Bounds Read/Write
CVSS 7.8
CVE-2026-34380 MEDIUM
OpenEXR PXR24 undo_pxr24_impl - Signed Integer Overflow
CVSS 5.9
CVE-2026-34379 HIGH
OpenEXR DWA/DWAB LossyDctDecoder - Misaligned Write
CVSS 7.1
CVE-2026-31407 HIGH
netfilter: conntrack: add missing netlink policy validations
CVSS 7.1
Details
Vulnerabilities 14,407
Exploit Likelihood High