CWE-787

High likelihood

Out-of-bounds Write

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product writes data past the end, or before the beginning, of the intended buffer.

14,104 vulnerabilities with CWE-787
CVE-2026-41970 MEDIUM
HarmonyOS < 4.3.1 and EMUI < 15.0.0 - Out-of-bounds Write in Distributed File System Module
CVSS 6.8
CVE-2026-8569 HIGH
Google Chrome < 148.0.7778.168 - Out-of-bounds Write in Codecs via Crafted Video File
CVSS 8.3
CVE-2026-8558 HIGH
Google Chrome < 148.0.7778.168 - Out-of-bounds Write in Fonts via Crafted HTML Page
CVSS 8.8
CVE-2026-8548 HIGH
Google Chrome < 148.0.7778.168 - Out-of-bounds Write in Media
CVSS 8.3
CVE-2026-8526 HIGH
Google Chrome < 148.0.7778.168 - Remote Code Execution via WebRTC Out-of-Bounds Write
CVSS 8.8
CVE-2026-8524 HIGH
Google Chrome < 148.0.7778.168 - Out-of-bounds Write in WebAudio
CVSS 8.8
CVE-2026-44637 HIGH
libsixel: integer overflow in parser
CVSS 7.1
CVE-2026-43909 HIGH
OpenImageIO: Signed integer overflow in SwapRGBABytes loop index leads to out-of-bounds read/write in DPX ABGR decoder
CVSS 8.8
CVE-2026-43908 HIGH
OpenImageIO: Signed integer overflow in ConvertCbYCrYToRGB leads to heap out-of-bounds write in DPX 4:2:2 decoder
CVSS 8.8
CVE-2026-43907 HIGH
OpenImageIO: Integer overflow in QueryRGBBufferSizeInternal leads to heap out-of-bounds write in DPX decoder (kCbYCr and kABGR)
CVSS 8.3
CVE-2026-43904 HIGH
OpenImageIO: Softimage PIC RLE decoder heap buffer overflow — longCount not clamped to image width
CVSS 7.8
CVE-2026-43903 HIGH
OpenImageIO: SGI RLE decoder heap buffer overflow OIIO_DASSERT bounds checks are no-ops in release builds
CVSS 7.8
CVE-2026-0250 MEDIUM
GlobalProtect App: Buffer Overflow Vulnerability during connection to Portal or Gateway
CVE-2026-0263 HIGH
Palo Alto Networks PAN-OS 10.2.0-12.1.6 - Unauthenticated Remote Code Execution via IKEv2 Buffer Overflow
CVE-2026-21018 MEDIUM
Samsung Mobile Devices - Out-of-bounds Write in SveService
CVSS 6.7
CVE-2026-8053 HIGH
MongoDB, MongoDB Server - FlatBSON Duplicate Field Index Drift
CVSS 8.8
CVE-2026-44215 MEDIUM
NanaZip: Heap out-of-bounds write in NanaZip UFS directory parser
CVSS 4.4
CVE-2026-34684 HIGH
Substance3D - Designer | Out-of-bounds Write (CWE-787)
CVSS 7.8
CVE-2026-34683 HIGH
Substance3D - Designer | Out-of-bounds Write (CWE-787)
CVSS 7.8
CVE-2026-34682 HIGH
Substance3D - Designer | Out-of-bounds Write (CWE-787)
CVSS 7.8
CVE-2026-34681 HIGH
Substance3D - Designer | Out-of-bounds Write (CWE-787)
CVSS 7.8
CVE-2026-34676 HIGH
Substance3D - Painter | Out-of-bounds Write (CWE-787)
CVSS 7.8
CVE-2026-34675 HIGH
Substance3D - Painter | Out-of-bounds Write (CWE-787)
CVSS 7.8
CVE-2026-34661 HIGH
Illustrator | Out-of-bounds Write (CWE-787)
CVSS 7.8
CVE-2026-34643 HIGH
After Effects | Out-of-bounds Write (CWE-787)
CVSS 7.8
Details
Vulnerabilities 14,104
Exploit Likelihood High