Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-41607 |
|
Out-of-Bounds Read in apache (CVE-2026-41607)
vulnerability in apache (CVE-2026-41607). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-6785 |
|
Out-of-Bounds Read in mozilla (CVE-2026-6785)
vulnerability in mozilla (CVE-2026-6785). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6786 |
|
Out-of-Bounds Read in mozilla (CVE-2026-6786)
vulnerability in mozilla (CVE-2026-6786). Successful exploitation can lead to full system takeover.
|
| CVE-2026-31641 |
|
Out-of-Bounds Read in linux (CVE-2026-31641)
vulnerability in linux (CVE-2026-31641). Successful exploitation can lead to full system takeover.
|
| CVE-2026-31613 |
|
Out-of-Bounds Read in linux (CVE-2026-31613)
vulnerability in linux (CVE-2026-31613). Confidential information can be exposed externally.
|
| CVE-2026-33317 |
|
OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Cortex-A cores using the TrustZone technology. In versions 3.13.0 through 4.10.0, mis...
OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Cortex-A cores using the TrustZone technology. In versions 3.13.0 through 4.10.0, missing checks in `entry_get_attribute_value()` in `ta/pkcs11/src/object.c` can lead to out-of-bounds...
|
| CVE-2026-28525 |
|
Out-of-Bounds Read in c (CVE-2026-28525)
vulnerability in c (CVE-2026-28525). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-6920 |
|
Out-of-Bounds Read in google (CVE-2026-6920)
vulnerability in google (CVE-2026-6920). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34003 |
|
Out-of-Bounds Read in dos (CVE-2026-34003)
vulnerability in dos (CVE-2026-34003). Successful exploitation can lead to full system takeover.
|
| CVE-2026-31449 |
|
Out-of-Bounds Read in linux (CVE-2026-31449)
vulnerability in linux (CVE-2026-31449). Successful exploitation can lead to full system takeover.
|
| CVE-2026-31435 |
|
Out-of-Bounds Read in linux (CVE-2026-31435)
vulnerability in linux (CVE-2026-31435). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6784 |
|
Out-of-Bounds Read in mozilla (CVE-2026-6784)
vulnerability in mozilla (CVE-2026-6784). Successful exploitation can lead to full system takeover.
|
| CVE-2026-31430 |
|
Out-of-Bounds Read in linux (CVE-2026-31430)
vulnerability in linux (CVE-2026-31430). Confidential information can be exposed externally.
|
| CVE-2026-5720 |
|
Out-of-Bounds Read in dos (CVE-2026-5720)
vulnerability in dos (CVE-2026-5720). Confidential information can be exposed externally.
|
| CVE-2026-29013 |
|
Out-of-Bounds Read in c (CVE-2026-29013)
vulnerability in c (CVE-2026-29013). Successful exploitation can lead to full system takeover.
|
| CVE-2026-6364 |
|
Out-of-Bounds Read in google (CVE-2026-6364)
vulnerability in google (CVE-2026-6364). Confidential information can be exposed externally.
|
| CVE-2026-6308 |
|
Out-of-Bounds Read in google (CVE-2026-6308)
vulnerability in google (CVE-2026-6308). Successful exploitation can lead to full system takeover.
|
| CVE-2026-56370 |
|
Out-of-Bounds Read in Magick.NET-Q16-AnyCPU (CVE-2026-56370)
vulnerability in Magick.NET-Q16-AnyCPU (CVE-2026-56370). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.12.0` or later.
|
| CVE-2026-27294 |
|
Out-of-Bounds Read in adobe (CVE-2026-27294)
vulnerability in adobe (CVE-2026-27294). Successful exploitation can lead to full system takeover.
|
| CVE-2026-33019 |
|
Out-of-Bounds Read in saitoha (CVE-2026-33019)
vulnerability in saitoha (CVE-2026-33019). Confidential information can be exposed externally.
|
| CVE-2026-27287 |
|
Out-of-Bounds Read in adobe (CVE-2026-27287)
vulnerability in adobe (CVE-2026-27287). Successful exploitation can lead to full system takeover.
|
| CVE-2026-27289 |
|
Out-of-Bounds Read in adobe (CVE-2026-27289)
vulnerability in adobe (CVE-2026-27289). Successful exploitation can lead to full system takeover.
|
| CVE-2026-33822 |
|
Out-of-Bounds Read in microsoft (CVE-2026-33822)
vulnerability in microsoft (CVE-2026-33822). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-27284 |
|
Out-of-Bounds Read in adobe (CVE-2026-27284)
vulnerability in adobe (CVE-2026-27284). Successful exploitation can lead to full system takeover.
|
| CVE-2026-5713 |
|
Vulnerability in python-min (CVE-2026-5713)
vulnerability in python-min (CVE-2026-5713). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.14.5` or later.
|
| CVE-2026-39979 |
|
Out-of-Bounds Read in jqlang (CVE-2026-39979)
vulnerability in jqlang (CVE-2026-39979). Risk of unauthorized operations or information disclosure.
|
| CVE-2023-36424 KEV |
|
[KEV] Out-of-Bounds Read in Microsoft windows (CVE-2023-36424)
vulnerability in Microsoft windows (CVE-2023-36424). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2026-31413 |
|
Out-of-Bounds Read in linux (CVE-2026-31413)
vulnerability in linux (CVE-2026-31413). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34971 |
|
Out-of-Bounds Read in bytecodealliance (CVE-2026-34971)
vulnerability in bytecodealliance (CVE-2026-34971). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `36.0.7` or later.
|
| CVE-2026-5913 |
|
Out-of-Bounds Read in google (CVE-2026-5913)
vulnerability in google (CVE-2026-5913). Confidential information can be exposed externally.
|
| CVE-2026-5907 |
|
Out-of-Bounds Read in google (CVE-2026-5907)
vulnerability in google (CVE-2026-5907). Confidential information can be exposed externally.
|
| CVE-2026-5886 |
|
Out-of-Bounds Read in google (CVE-2026-5886)
vulnerability in google (CVE-2026-5886). Confidential information can be exposed externally.
|
| CVE-2026-5873 |
|
Out-of-Bounds Read in google (CVE-2026-5873)
vulnerability in google (CVE-2026-5873). Successful exploitation can lead to full system takeover.
|
| CVE-2026-40026 |
|
Out-of-Bounds Read in sleuthkit (CVE-2026-40026)
vulnerability in sleuthkit (CVE-2026-40026). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-40025 |
|
Out-of-Bounds Read in sleuthkit (CVE-2026-40025)
vulnerability in sleuthkit (CVE-2026-40025). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-39864 |
|
Out-of-Bounds Read in dos (CVE-2026-39864)
vulnerability in dos (CVE-2026-39864). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.0.5` or later.
|
| CVE-2026-5735 |
|
Out-of-Bounds Write in mozilla (CVE-2026-5735)
out-of-bounds write in mozilla (CVE-2026-5735). Successful exploitation can lead to full system takeover.
|
| CVE-2026-35444 |
|
Out-of-Bounds Read in c (CVE-2026-35444)
vulnerability in c (CVE-2026-35444). Confidential information can be exposed externally.
|
| CVE-2026-35203 |
|
Out-of-Bounds Read in cpp (CVE-2026-35203)
vulnerability in cpp (CVE-2026-35203). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-35176 |
|
Out-of-Bounds Read in trabucayre (CVE-2026-35176)
vulnerability in trabucayre (CVE-2026-35176). Confidential information can be exposed externally.
|
| CVE-2026-35170 |
|
Out-of-Bounds Read in trabucayre (CVE-2026-35170)
vulnerability in trabucayre (CVE-2026-35170). Confidential information can be exposed externally.
|
| CVE-2026-35201 |
|
Out-of-Bounds Read in rdiscount (CVE-2026-35201)
vulnerability in rdiscount (CVE-2026-35201). Risk of unauthorized operations or information disclosure. Exploitable via ``INT_MAX``. Mitigation: upgrade to `2.2.7.4` or later.
|
| CVE-2026-34588 |
|
Out-of-Bounds Read in openexr (CVE-2026-34588)
vulnerability in openexr (CVE-2026-34588). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `3.2.7` or later.
|
| CVE-2026-31405 |
|
Out-of-Bounds Read in linux (CVE-2026-31405)
vulnerability in linux (CVE-2026-31405). Successful exploitation can lead to full system takeover.
|
| CVE-2026-34776 |
|
Out-of-Bounds Read in electronjs (CVE-2026-34776)
vulnerability in electronjs (CVE-2026-34776). Confidential information can be exposed externally.
|
| CVE-2026-34824 |
|
Out-of-Bounds Read in dos (CVE-2026-34824)
vulnerability in dos (CVE-2026-34824). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-31395 |
|
Out-of-Bounds Read in linux (CVE-2026-31395)
vulnerability in linux (CVE-2026-31395). Confidential information can be exposed externally.
|
| CVE-2026-31393 |
|
Out-of-Bounds Read in linux (CVE-2026-31393)
vulnerability in linux (CVE-2026-31393). Confidential information can be exposed externally.
|
| CVE-2026-23455 |
|
Out-of-Bounds Read in linux (CVE-2026-23455)
vulnerability in linux (CVE-2026-23455). Confidential information can be exposed externally.
|
| CVE-2026-23456 |
|
Out-of-Bounds Read in linux (CVE-2026-23456)
vulnerability in linux (CVE-2026-23456). Risk of unauthorized operations or information disclosure.
|