CWE-787
High likelihoodOut-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.
13,852 vulnerabilities with CWE-787
CVE-2026-5042
HIGH
Belkin F9K1122 Parameter formCrossBandSwitch stack-based overflow
CVSS 8.8
CVE-2026-5024
HIGH
D-Link DIR-513 formSetEmail stack-based overflow
CVSS 8.8
CVE-2026-5021
HIGH
Tenda F453 httpd PPTPUserSetting fromPPTPUserSetting stack-based overflow
CVSS 8.8
CVE-2026-5004
HIGH
Wavlink WL-WN579X3-C UPNP firewall.cgi sub_4019FC stack-based overflow
CVSS 8.8
CVE-2026-4975
HIGH
Tenda AC15 POST Request setcfm formSetCfm memory corruption
CVSS 8.8
CVE-2026-4974
HIGH
Tenda AC7 POST Request SetSysTimeCfg fromSetSysTime memory corruption
CVSS 8.8
CVE-2026-4961
HIGH
Tenda AC6 POST Request QuickIndex formQuickIndex stack-based overflow
CVSS 8.8
CVE-2026-4960
HIGH
Tenda AC6 POST Request WizardHandle fromWizardHandle stack-based overflow
CVSS 8.8
CVE-2026-27880
HIGH
OpenFeature evaluation API reads input data with no bounds
CVSS 7.5
CVE-2026-27879
MEDIUM
Query resampling can cause unbounded memory allocations
CVSS 6.5
CVE-2026-4906
HIGH
Tenda AC5 POST Request WizardHandle decodePwd stack-based overflow
CVSS 8.8
CVE-2026-33721
MEDIUM
MapServer has heap buffer overflow in SLD `Categorize` Threshold parsing
CVSS 5.3
CVE-2026-4905
HIGH
Tenda AC5 POST Request WifiWpsOOB formWifiWpsOOB stack-based overflow
CVSS 8.8
CVE-2026-4904
HIGH
Tenda AC5 POST Request setcfm formSetCfm stack-based overflow
CVSS 8.8
CVE-2026-4903
HIGH
Tenda AC5 POST Request QuickIndex formQuickIndex memory corruption
CVSS 8.8
CVE-2026-4902
HIGH
Tenda AC5 POST Request addressNat fromAddressNat memory corruption
CVSS 8.8
CVE-2026-33536
MEDIUM
ImageMagick has an Out-of-bounds Write via InterpretImageFilename
CVSS 5.1
CVE-2026-33535
MEDIUM
ImageMagick has an Out-of-Bounds write of a zero byte in its X11 display interaction
CVSS 4.0
CVE-2026-33491
HIGH
Zen C < 0.4.4 - Stack Buffer Overflow in Identifier Mangling
CVSS 7.8
CVE-2026-33636
HIGH
LIBPNG has ARM NEON Palette Expansion Out-of-Bounds Read on AArch64
CVSS 7.6
CVE-2026-27816
CRITICAL
EVerest's ISO15118 update_energy_transfer_modes overflow can corrupt EVSE state
CVSS 9.1
CVE-2026-27815
CRITICAL
EVerest: ISO15118 session_setup payment options overflow can corrupt EVSE state
CVSS 9.1
CVE-2026-26073
MEDIUM
EVerest: OCPP 1.6 heap corruption caused by lock-free insertion in event_queue
CVSS 5.9
CVE-2026-27664
HIGH
Siemens Cpci85 Central Processing/communication < V26.10 - Out-of-Bounds Access
CVSS 7.5
CVE-2026-23390
HIGH
tracing/dma: Cap dma_map_sg tracepoint arrays to prevent buffer overflow
CVSS 7.8
Details
Vulnerabilities
13,852
Exploit Likelihood
High