CWE-787

High likelihood

Out-of-bounds Write

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product writes data past the end, or before the beginning, of the intended buffer.

14,406 vulnerabilities with CWE-787
CVE-2026-55577 MEDIUM
ImageMagick: Heap Buffer Overflow in ImageMagick MVG decoder
CVSS 5.9
CVE-2026-7840 CRITICAL
UltraVNC repeater HTTP server global buffer overflow via long URI (pre-auth RCE)
CVSS 9.8
CVE-2026-7838 HIGH
UltraVNC viewer heap buffer overflow via integer overflow in RFB connection-failure reason length
CVSS 8.8
CVE-2026-7831 HIGH
UltraVNC viewer off-by-one stack overflow in ServerInit desktop name parsing
CVSS 7.6
CVE-2026-7829 HIGH
UltraVNC repeater authenticated out-of-bounds write in rule parser via oversized token
CVSS 7.2
CVE-2026-20461 MEDIUM
MediaTek Chipset - Out-of-bounds Write
CVSS 5.3
CVE-2026-20458 HIGH
MediaTek Chipset - Out-of-bounds Write
CVSS 7.5
CVE-2026-14191 HIGH
WinRAR / UnRAR RAR5 recovery-volume (.rev) out-of-bounds heap write in RecVolumes5::ReadHeader
CVSS 7.8
CVE-2026-54900 MEDIUM
Oj: Negative-Size memcpy in Oj::Parser create_id Attribute Handling
CVE-2026-54592 HIGH
Oj: Stack Buffer Overflow in Oj::Doc#each_child via Deeply Nested Input
CVSS 7.5
CVE-2026-54696 LOW
Ruby JSON: JSON generator heap buffer overflow when streaming to an IO
CVSS 3.7
CVE-2026-14152 CRITICAL
Google Chrome - Out-of-bounds Write
CVSS 9.6
CVE-2026-14087 HIGH
Google Chrome - Improper Input Validation
CVSS 8.8
CVE-2026-14063 MEDIUM
Google Chrome - Out-of-Bounds Access
CVSS 5.7
CVE-2026-13873 MEDIUM
Google Chrome - Out-of-Bounds Access
CVSS 6.5
CVE-2026-14241 CRITICAL
Memory safety bugs fixed in Firefox 152.0.4
CVSS 9.8
CVE-2026-43745 MEDIUM
Apple Safari - Out-of-bounds Write
CVSS 6.5
CVE-2026-43712 MEDIUM
Apple Safari - Out-of-bounds Read
CVSS 6.5
CVE-2026-43703 MEDIUM
Apple Ios And iPadOS - Out-of-bounds Read
CVSS 6.5
CVE-2026-43676 MEDIUM
Apple Safari - Out-of-bounds Read
CVSS 6.5
CVE-2026-28979 MEDIUM
Apple Safari - Out-of-bounds Read
CVSS 6.5
CVE-2026-13592 HIGH
liftoff-sr CIPster EtherNet IP Message append out-of-bounds write
CVSS 7.3
CVE-2026-9105 MEDIUM
Authenticated Stack-Based Buffer Overflow in TP-Link TL-WR841N Web Interface
CVSS 6.5
CVE-2026-10644 MEDIUM
Out-of-bounds write in Microchip SERCOM-G1 (PIC32CM-JH) async UART RX with 1-byte buffer
CVSS 4.2
CVE-2026-58049 HIGH
FFmpeg - Out-of-Bounds Write in RASC Decoder decode_dlta()
CVSS 8.6
Details
Vulnerabilities 14,406
Exploit Likelihood High