Skip to main content

CWE archive

CWE-125 CVEs

Programmatic archive

9,306 CVEs tagged with CWE-125694 Critical, 3,864 High, 4,234 Medium, 511 Low, 3 Unrated.

CVE-2026-71498

Published Aug 6, 2026

node-re2 provides RE2 regular expression bindings for Node.js. Prior to version 1.26.1, passing a Buffer whose final bytes form a truncated (incomplete) multi-byte UTF-8 sequence…

CVSS 5.1 · Medium
evidence mentions
3
Buzz score
18.9

CVE-2026-70635

Published Aug 6, 2026

TimescaleDB through 2.29.1, fixed in commit 517c13e, contains an out-of-bounds read vulnerability that allows authenticated attackers to cause query-result integrity failures or b…

CVSS 7.1 · High
evidence mentions
3
Buzz score
20.4

CVE-2026-70634

Published Aug 6, 2026

TimescaleDB through 2.29.1, fixed in commit 517c13e, contains an out-of-bounds read in the Dictionary compression reverse row iterator (tsl/src/compression/algorithms/dictionary.c…

CVSS 7.2 · High
evidence mentions
3
Buzz score
20.4

CVE-2026-70633

Published Aug 6, 2026

TimescaleDB through 2.29.1, fixed in commit 517c13e, contains an out-of-bounds read vulnerability in the Gorilla compression reverse row iterator that allows authenticated attacke…

CVSS 7.1 · High
evidence mentions
3
Buzz score
20.4

CVE-2026-5856

Published Aug 6, 2026

Contiki-NG's DNS/mDNS resolver skip_name() in os/services/resolv/resolv.c walks DNS wire-format name labels with no packet-boundary check, and the caller in newdata() invokes it i…

CVSS 7.1 · High
evidence mentions
3
Buzz score
18.9

CVE-2026-5855

Published Aug 6, 2026

Contiki-NG's LwM2M TLV parser lwm2m_tlv_read() in os/services/lwm2m/lwm2m-tlv.c ignores its caller-supplied buffer length argument and reads up to six bytes from the input buffer…

CVSS 8.7 · High
evidence mentions
3
Buzz score
18.9

CVE-2026-43630

Published Aug 6, 2026

llama.cpp builds b5702 through b7653 contain an out-of-bounds read vulnerability in the recurrent memory state restore path that allows attackers with write access to the slot sav…

CVSS 6.3 · Medium
evidence mentions
4
Buzz score
22.6

CVE-2026-43628

Published Aug 6, 2026

llama.cpp builds b3978 through b9058 contain an integer underflow and out-of-bounds read vulnerability in the DRY sampler that allows unauthenticated attackers to trigger a heap b…

CVSS 8.5 · High
evidence mentions
2
Buzz score
17.5

CVE-2026-11803

Published Aug 6, 2026

A maliciously crafted PDF file, when parsed through Autodesk Revit, can force an Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cause a cra…

CVSS 7.8 · High
evidence mentions
2
Buzz score
16.0

CVE-2026-19028

Published Aug 6, 2026

H5Z__filter_fletcher32 in H5Zfletcher32.c in HDF5 through 2.3.0 computes the data length to checksum by subtracting the 4-byte trailing checksum size from the input buffer size wi…

CVSS 6.8 · Medium
evidence mentions
3
Buzz score
18.9

CVE-2026-19027

Published Aug 6, 2026

The H5Z__nbit_decompress_one_byte, H5Z__nbit_decompress_one_nooptype, and H5Z__nbit_decompress_one_atomic functions in H5Znbit.c in HDF5 through 2.3.0 advance a read index into th…

CVSS 6.9 · Medium
evidence mentions
3
Buzz score
18.9

CVE-2026-67865

Published Aug 5, 2026

S2OPC 1.7.3 contains an out-of-bounds read in RepublishResponse handling. This allows a remote attacker to cause a denial of service

CVSS 7.5 · High
evidence mentions
5
Buzz score
24.4

CVE-2026-70598

Published Aug 5, 2026

Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.10, 40.9.0, 41.2.1, and 42.0.0-beta.3, offscreen rendering fr…

CVSS 3.9 · Low
evidence mentions
2
Buzz score
16.0

CVE-2026-71256

Published Aug 5, 2026

nanoMODBUS through v1.23.0 contains an out-of-bounds stack read leading to a wild-pointer write in nmbs_read_device_identification_basic / recv_read_device_identification_res in n…

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
16.0

CVE-2026-45705

Published Aug 5, 2026

OpenSIPS is a Session Initiation Protocol (SIP) server implementation. In versions prior to 3.6.6 and 4.0.0-rc1, the find_line_delimiter() function in the multipart body parser pe…

CVSS 5.3 · Medium
evidence mentions
3
Buzz score
18.9

CVE-2026-67857

Published Aug 4, 2026

open62541 1.5.5 contains an out-of-bounds read in the client-side function responseReadNamespacesArray() in src/client/ua_client_connect.c.

CVSS 7.5 · High
evidence mentions
5
Buzz score
22.9

CVE-2026-68743

Published Aug 4, 2026

A flaw was found in SSSD. The extract_authtok_v1() function in the PAM responder does not validate the auth_token_length field against the remaining buffer size before processing.…

CVSS 5.5 · Medium
evidence mentions
2
Buzz score
17.5

CVE-2026-18790

Published Aug 4, 2026

A weakness has been identified in Systerel S2OPC up to 1.7.3. This affects the function LockedStaMac_ProcessMsg_DeleteMonitoredItemsResponse of the file src/ClientServer/frontend/…

CVSS 1.9 · Low
evidence mentions
6
Buzz score
26.0

CVE-2026-70368

Published Aug 4, 2026

A stack-based out-of-bounds read vulnerability exists in the "s_vlog" function of stunnel, when handling oversized log messages via "vsnprintf". A remote attacker with network acc…

CVSS 6.5 · Medium
evidence mentions
2
Buzz score
17.5

CVE-2026-69244

Published Aug 3, 2026

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.3, an out-of-bounds heap read could occur in the C response parser while building an…

CVSS 7.1 · High
evidence mentions
4
Buzz score
21.1

CVE-2026-68742

Published Aug 3, 2026

A flaw was found in SSSD. The sss_nss_protocol_parse_addr() function in the NSS responder does not validate the addrlen field against the remaining packet body size. A local attac…

CVSS 5.5 · Medium
evidence mentions
2
Buzz score
17.5

CVE-2026-18583

Published Aug 3, 2026

A weakness has been identified in mz-automation libiec61850 up to 1.6.1. This issue affects the function checkDataSetAccess of the file src/iec61850/server/mms_mapping/mms_mapping…

CVSS 5.5 · Medium
evidence mentions
9
Buzz score
29.5

CVE-2026-20496

Published Aug 3, 2026

In geniezone, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure if a malicious actor has already obtained the S…

CVSS 4.4 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-20494

Published Aug 3, 2026

In wifi, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure if a malicious actor has already obtained the System…

CVSS 5.5 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-20490

Published Aug 3, 2026

In ccci, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service if a malicious actor has already obtained the System priv…

CVSS 4.4 · Medium
evidence mentions
1
Buzz score
11.9
Showing 101-125 of 9,306 CVEsPage 5 of 373