CWE-787

High likelihood

Out-of-bounds Write

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product writes data past the end, or before the beginning, of the intended buffer.

13,852 vulnerabilities with CWE-787
CVE-2026-5042 HIGH
Belkin F9K1122 Parameter formCrossBandSwitch stack-based overflow
CVSS 8.8
CVE-2026-5024 HIGH
D-Link DIR-513 formSetEmail stack-based overflow
CVSS 8.8
CVE-2026-5021 HIGH
Tenda F453 httpd PPTPUserSetting fromPPTPUserSetting stack-based overflow
CVSS 8.8
CVE-2026-5004 HIGH
Wavlink WL-WN579X3-C UPNP firewall.cgi sub_4019FC stack-based overflow
CVSS 8.8
CVE-2026-4975 HIGH
Tenda AC15 POST Request setcfm formSetCfm memory corruption
CVSS 8.8
CVE-2026-4974 HIGH
Tenda AC7 POST Request SetSysTimeCfg fromSetSysTime memory corruption
CVSS 8.8
CVE-2026-4961 HIGH
Tenda AC6 POST Request QuickIndex formQuickIndex stack-based overflow
CVSS 8.8
CVE-2026-4960 HIGH
Tenda AC6 POST Request WizardHandle fromWizardHandle stack-based overflow
CVSS 8.8
CVE-2026-27880 HIGH
OpenFeature evaluation API reads input data with no bounds
CVSS 7.5
CVE-2026-27879 MEDIUM
Query resampling can cause unbounded memory allocations
CVSS 6.5
CVE-2026-4906 HIGH
Tenda AC5 POST Request WizardHandle decodePwd stack-based overflow
CVSS 8.8
CVE-2026-33721 MEDIUM
MapServer has heap buffer overflow in SLD `Categorize` Threshold parsing
CVSS 5.3
CVE-2026-4905 HIGH
Tenda AC5 POST Request WifiWpsOOB formWifiWpsOOB stack-based overflow
CVSS 8.8
CVE-2026-4904 HIGH
Tenda AC5 POST Request setcfm formSetCfm stack-based overflow
CVSS 8.8
CVE-2026-4903 HIGH
Tenda AC5 POST Request QuickIndex formQuickIndex memory corruption
CVSS 8.8
CVE-2026-4902 HIGH
Tenda AC5 POST Request addressNat fromAddressNat memory corruption
CVSS 8.8
CVE-2026-33536 MEDIUM
ImageMagick has an Out-of-bounds Write via InterpretImageFilename
CVSS 5.1
CVE-2026-33535 MEDIUM
ImageMagick has an Out-of-Bounds write of a zero byte in its X11 display interaction
CVSS 4.0
CVE-2026-33491 HIGH
Zen C < 0.4.4 - Stack Buffer Overflow in Identifier Mangling
CVSS 7.8
CVE-2026-33636 HIGH
LIBPNG has ARM NEON Palette Expansion Out-of-Bounds Read on AArch64
CVSS 7.6
CVE-2026-27816 CRITICAL
EVerest's ISO15118 update_energy_transfer_modes overflow can corrupt EVSE state
CVSS 9.1
CVE-2026-27815 CRITICAL
EVerest: ISO15118 session_setup payment options overflow can corrupt EVSE state
CVSS 9.1
CVE-2026-26073 MEDIUM
EVerest: OCPP 1.6 heap corruption caused by lock-free insertion in event_queue
CVSS 5.9
CVE-2026-27664 HIGH
Siemens Cpci85 Central Processing/communication < V26.10 - Out-of-Bounds Access
CVSS 7.5
CVE-2026-23390 HIGH
tracing/dma: Cap dma_map_sg tracepoint arrays to prevent buffer overflow
CVSS 7.8
Details
Vulnerabilities 13,852
Exploit Likelihood High