Skip to main content

CWE archive

CWE-787 CVEs

Programmatic archive

14,516 CVEs tagged with CWE-7872,531 Critical, 8,931 High, 2,872 Medium, 177 Low, 5 Unrated.

CVE-2026-16095

Published Jul 18, 2026

A flaw has been found in Shibby Tomato 1.28 RT-N5x MIPSR2 Build 124. Affected by this issue is the function setup_conntrack of the file /sbin/rc. Executing a manipulation of the a…

CVSS 8.7 · High
evidence mentions
5
Buzz score
24.4

CVE-2026-45784

Published Jul 17, 2026

rust-openssl provides OpenSSL bindings for the Rust programming language. From 0.10.50 until 0.10.80, CipherCtxRef::cipher_update_inplace in openssl/src/cipher_ctx.rs incorrectly…

CVSS 5.1 · Medium
evidence mentions
5
Buzz score
27.9
Vendor/product tagsBeta · best-effort

CVE-2026-44436

Published Jul 16, 2026

Quicly is an IETF QUIC protocol implementation intended primarily for use within the H2O HTTP server. Prior to commit 8b178e6, Quicly is vulnerable to a Denial of Service attack t…

CVSS 7.5 · High
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2026-15997

Published Jul 16, 2026

Out-of-bounds write vulnerability in Legion of the Bouncy Castle Inc. BC-LTS bcprov-lts8on on ARM allows Overflow Buffers. This vulnerability is associated with program files ht…

CVSS 1.7 · Low
evidence mentions
1
Buzz score
11.9

CVE-2026-61389

Published Jul 16, 2026

An out-of-bounds write vulnerability in the Productivity Suite allows a local attacker to trigger kernel memory corruption via a crafted IOCTL request, potentially resulting in…

CVSS 7.3 · High
evidence mentions
3
Buzz score
28.9

CVE-2026-60063

Published Jul 16, 2026

An out-of-bounds write vulnerability in the Productivity Suite allows a local attacker to trigger kernel memory corruption via a crafted IOCTL request, potentially resulting in…

CVSS 7.3 · High
evidence mentions
3
Buzz score
28.9

CVE-2026-15422

Published Jul 16, 2026

The illumos SCTP inbound path performs association lookup for INIT ACK chunks without adequately validating the address parameters carried in the chunk. Since this lookup runs dur…

CVSS 9.1 · Critical
evidence mentions
3
Buzz score
25.4

CVE-2026-10589

Published Jul 16, 2026

A potential out of bounds write vulnerability could allow a local privileged attacker to execute code in System Management Mode.

CVSS 6.8 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-10587

Published Jul 16, 2026

A potential out-of-bounds write vulnerability could allow a local privileged attacker to modify power management settings in System Management Mode.

CVSS 6.8 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-3842

Published Jul 16, 2026

A flaw was found in QEMU. This vulnerability allows a local attacker within a guest virtual machine to write data beyond its allocated memory. This occurs when cpu_physical_memory…

CVSS 7.8 · High
evidence mentions
4
Buzz score
32.6

CVE-2026-50144

Published Jul 15, 2026

ncnn is a high-performance neural network inference framework optimized for the mobile platform. In commit e54f7b1f88434e1d844ea0551b880a1cfb079ce1 and earlier, ncnn allows an out…

CVSS 7.1 · High
evidence mentions
2
Buzz score
16.0

CVE-2026-40953

Published Jul 15, 2026

CVE-2026-40953 is a heap overflow in the certificate parsing function of Secure Access clients prior to 14.55. Attackers with local access and administrator permissions can create…

CVSS 6.7 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-62349

Published Jul 15, 2026

TDengine is an open source, time-series database optimized for Internet of Things devices. In 3.4.1.6 and earlier, source/libs/parser/src/parUtil.c trimString() checks space for o…

CVSS 8.3 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-10673

Published Jul 15, 2026

The Zephyr ADIN2111/ADIN1110 10BASE-T1S/T1L Ethernet driver (drivers/ethernet/eth_adin2111.c) reassembles received Ethernet frames in OPEN Alliance (OA) SPI mode by copying device…

CVSS 8.3 · High
evidence mentions
3
Buzz score
18.9

CVE-2026-48337

Published Jul 14, 2026

Illustrator is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requir…

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-48336

Published Jul 14, 2026

Illustrator is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requir…

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-48335

Published Jul 14, 2026

Illustrator is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requir…

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-48370

Published Jul 14, 2026

Media Encoder is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requ…

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-48369

Published Jul 14, 2026

Premiere Pro is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requi…

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-48367

Published Jul 14, 2026

After Effects is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requ…

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-48366

Published Jul 14, 2026

Media Encoder is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requ…

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-48343

Published Jul 14, 2026

Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires us…

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-48341

Published Jul 14, 2026

Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires us…

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-48311

Published Jul 14, 2026

Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires us…

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-48274

Published Jul 14, 2026

After Effects is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requ…

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort
Showing 176-200 of 14,516 CVEsPage 8 of 581