VulnSea

CWE-119

CVEs classified under CWE-119, newest first.

254 CVEsRSS

CVE-2026-91086Medium· 6.3PoC
6d ago

A security vulnerability has been detected in GPAC up to f1219cde

A security vulnerability has been detected in GPAC up to f1219cde. Affected by this issue is the function mpgviddmx_process of the file filters/reframe_mpgvid.c of the component MPEG Video Reframer. Such manipulation leads to heap-based …

TwilightEPSS 0.32%via NVD
CVE-2026-91003Critical· 9.1PoC
6d ago

A flaw has been found in D-Link DI-8300 16.07

A flaw has been found in D-Link DI-8300 16.07. The affected element is the function rzgl_asp of the file /rzgl.asp of the component CGI Service. This manipulation of the argument redirct_url causes stack-based buffer overflow. Remote exp…

AbyssalD-Link · DI-8300EPSS 0.51%via NVD
CVE-2026-91001Critical· 9.9PoC
6d ago

A security flaw has been discovered in D-Link DI-8400 16.07

A security flaw has been discovered in D-Link DI-8400 16.07. This affects the function ddns_asp of the file /ddns.asp of the component DDNS Configuration. Performing a manipulation of the argument serv/user/host/wild/mx/bmx/cust/ip resul…

AbyssalD-Link · DI-8400EPSS 0.48%via NVD
CVE-2026-90852High· 7.3PoC
6d ago

A vulnerability has been found in luben zstd-jni up to 1.5.7-13

A vulnerability has been found in luben zstd-jni up to 1.5.7-13. This vulnerability affects the function ZstdCompressCtx.loadDict of the file ZstdCompressCtx.java of the component Dictionary Sharing. Such manipulation leads to use after …

Midnightluben · zstd-jniEPSS 0.31%via NVD
CVE-2026-90831Medium· 5.3
1w ago

A vulnerability was detected in GNU Binutils 2.47

A vulnerability was detected in GNU Binutils 2.47. The affected element is the function _bfd_elf_strtab_delref of the file bfd/elf-strtab.c of the component ELF String Table. The manipulation results in memory corruption. The attack requ…

Sunlitgnu · binutilsEPSS 0.16%via NVD
CVE-2026-90825Low· 3.3PoC
1w ago

A vulnerability was found in GPAC 26.07.0

A vulnerability was found in GPAC 26.07.0. Affected by this vulnerability is the function gf_node_unregister of the file scenegraph/base_scenegraph.c of the component MP4Box. The manipulation results in use after free. The attack is only…

TwilightEPSS 0.16%via NVD
CVE-2026-90826Low· 2.8PoC
1w ago

A vulnerability was determined in GPAC 26.07.0

A vulnerability was determined in GPAC 26.07.0. Affected by this issue is the function gf_node_del of the file scenegraph/base_scenegraph.c of the component MP4Box. This manipulation causes out-of-bounds read. The attack is restricted to…

TwilightEPSS 0.15%via NVD
CVE-2026-90827Low· 3.3PoC
1w ago

A vulnerability was identified in GPAC 26.07.0

A vulnerability was identified in GPAC 26.07.0. This affects the function gf_node_deactivate_ex of the file scenegraph/base_scenegraph.c of the component MP4Box. Such manipulation leads to use after free. The attack must be carried out l…

TwilightEPSS 0.16%via NVD
CVE-2026-84537Medium· 6.6
1w ago

The issue was addressed with improved memory handling

The issue was addressed with improved memory handling. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An app may be able to cause unexpected system termination or corrupt kernel memory.

Sunlitapple · macosEPSS 0.16%via NVD
CVE-2026-64714Medium· 5.5
1w ago

A memory corruption issue was addressed with improved bounds checking

A memory corruption issue was addressed with improved bounds checking. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, macOS Golden Gate 27, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8. Processing a maliciously crafted image may lea…

Sunlitapple · ipadosEPSS 0.16%via NVD
CVE-2026-43702High· 7.8
1w ago

The issue was addressed with improved memory handling

The issue was addressed with improved memory handling. This issue is fixed in iOS 26.6 and iPadOS 26.6, iOS 26.7 and iPadOS 26.7, macOS Sequoia 15.8, macOS Tahoe 26.6, macOS Tahoe 26.7, tvOS 26.6, watchOS 26.6. Processing a maliciously c…

Twilightapple · ipadosEPSS 0.14%via NVD
CVE-2026-28935High· 7.5
1w ago

The issue was addressed with improved memory handling

The issue was addressed with improved memory handling. This issue is fixed in iOS 26.6.1 and iPadOS 26.6.1, macOS Sequoia 15.8, macOS Tahoe 26.6.2, tvOS 27, visionOS 27, watchOS 27. An app may be able to cause unexpected system terminati…

Twilightapple · ipadosEPSS 0.38%via NVD
CVE-2026-84566High· 7.8
1w ago

The issue was addressed with improved memory handling

The issue was addressed with improved memory handling. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. A local attacker may be able to cause unexpected sy…

Twilightapple · ipadosEPSS 0.13%via NVD
CVE-2026-84567Medium· 5.5
1w ago

The issue was addressed with improved memory handling

The issue was addressed with improved memory handling. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An app may be able to cause unexpected system termination.

Sunlitapple · macosEPSS 0.13%via NVD
CVE-2026-90824Low· 3.3PoC
1w ago

A vulnerability has been found in GPAC 26.07.0

A vulnerability has been found in GPAC 26.07.0. Affected is the function gf_sg_dom_event_bubble of the file src/scenegraph/dom_events.c of the component MP4Box. The manipulation leads to stack-based buffer overflow. The attack can only b…

TwilightEPSS 0.17%via NVD
CVE-2026-90815Medium· 6.3PoC
1w ago

A vulnerability has been found in FFmpeg up to 4.4.6/5.1.8/6.1.4/7.1.3/8.0.1

A vulnerability has been found in FFmpeg up to 4.4.6/5.1.8/6.1.4/7.1.3/8.0.1. Affected by this issue is the function setup_3x3 of the file libavfilter/vf_convolution.c of the component Convolution Filter. Such manipulation leads to out-o…

TwilightRed Hat · FFmpegEPSS 0.24%via NVD
CVE-2026-90804Medium· 4.8PoC
1w ago

A vulnerability was detected in GNU Binutils 2.47

A vulnerability was detected in GNU Binutils 2.47. Affected by this issue is the function _bfd_elf_write_section_eh_frame of the file bfd/elf-eh-frame.c of the component Eh Frame Section Handler. Performing a manipulation of the argument…

Twilightgnu · binutilsEPSS 0.14%via NVD
CVE-2026-90803Medium· 5.3PoC
1w ago

A security vulnerability has been detected in GNU Binutils 2.47

A security vulnerability has been detected in GNU Binutils 2.47. Affected by this vulnerability is the function elf_x86_64_relocate_section of the file bfd/elf64-x86-64.c of the component ld. Such manipulation of the argument roff leads …

Twilightgnu · binutilsEPSS 0.14%via NVD
CVE-2026-90801Medium· 5.3PoC
1w ago

A security flaw has been discovered in GNU Binutils 2.47

A security flaw has been discovered in GNU Binutils 2.47. This impacts the function cache_bwrite of the file bfd/cache.c of the component ld. The manipulation of the argument nbytes results in buffer overflow. The attack requires a local…

Twilightgnu · binutilsEPSS 0.16%via NVD
CVE-2026-90794Medium· 6.3PoC
1w ago

A vulnerability was found in GPAC up to f1219cde

A vulnerability was found in GPAC up to f1219cde. The affected element is the function gf_sg_script_load of the file scenegraph/vrml_tools.c of the component MP4Box. Performing a manipulation results in use after free. It is possible to …

TwilightEPSS 0.29%via NVD
CVE-2026-90793Medium· 5.4PoC
1w ago

A vulnerability has been found in GPAC up to f1219cde

A vulnerability has been found in GPAC up to f1219cde. Impacted is the function gf_node_get_name of the file scenegraph/base_scenegraph.c of the component MP4Box. Such manipulation leads to use after free. The attack may be performed fro…

TwilightEPSS 0.33%via NVD
CVE-2026-90608Critical· 9.9PoC
1w ago

A flaw has been found in Totolink A3002MU Hh-B20211125.1046

A flaw has been found in Totolink A3002MU Hh-B20211125.1046. The affected element is the function formPortFw of the file /boafrm/formPortFw of the component boa. This manipulation of the argument service_type causes buffer overflow. It i…

AbyssalTotolink · A3002MUEPSS 0.80%via NVD
CVE-2026-90606Critical· 9.9PoC
1w ago

A security vulnerability has been detected in Totolink A3002MU Hh-B20211125.1046

A security vulnerability has been detected in Totolink A3002MU Hh-B20211125.1046. This issue affects the function formIpv6Setup of the file /boafrm/formIpv6Setup of the component boa. The manipulation of the argument static_ipv6 leads to…

AbyssalTotolink · A3002MUEPSS 0.49%via NVD
CVE-2026-90605Critical· 9.9PoC
1w ago

A weakness has been identified in Totolink A3002MU Hh-B20211125.1046

A weakness has been identified in Totolink A3002MU Hh-B20211125.1046. This vulnerability affects the function formFilter of the file /boafrm/formFilter of the component boa. Executing a manipulation of the argument ip6addr can lead to bu…

AbyssalTotolink · A3002MUEPSS 0.47%via NVD
CVE-2026-90610Low· 3.3PoC
1w ago

A vulnerability was found in GPAC up to f1219cde

A vulnerability was found in GPAC up to f1219cde. This affects the function gf_svg_attributes_copy of the file scenegraph/svg_attributes.c of the component MP4Box. Performing a manipulation results in buffer over-read. The attack is only…

TwilightEPSS 0.12%via NVD
CVE-2026-90607Critical· 9.9PoC
1w ago

A vulnerability was detected in Totolink A3002MU Hh-B20211125.1046

A vulnerability was detected in Totolink A3002MU Hh-B20211125.1046. Impacted is the function formNewSchedule of the file /boafrm/formNewSchedule of the component boa. The manipulation of the argument submit-url results in buffer overflow…

AbyssalTotolink · A3002MUEPSS 0.47%via NVD
CVE-2026-90682Medium· 5.3PoC
1w ago

A security vulnerability has been detected in Matthias-Wandel jhead up to 3.3

A security vulnerability has been detected in Matthias-Wandel jhead up to 3.3. This impacts the function ProcessGpsInfo of the file gpsinfo.c of the component WebP EXIF Handler. Such manipulation of the argument TAG_GPS_LAT/TAG_GPS_LONG …

TwilightMatthias-Wandel · jheadEPSS 0.12%via NVD
CVE-2026-90680Critical· 9.9
1w ago

A security flaw has been discovered in D-Link DIR-823G 1.0.2B05_20181207

A security flaw has been discovered in D-Link DIR-823G 1.0.2B05_20181207. The impacted element is the function strcpy of the file /HNAP1/SetStaticRouteSettings of the component HNAP1. The manipulation of the argument PAddress/SubnetMask/…

MidnightD-Link · DIR-823GEPSS 0.51%via NVD
CVE-2026-90688Medium· 6.5PoC
1w ago

A vulnerability was identified in Tenda W20E 15.11.0.61068_1546_841_CN_TDC

A vulnerability was identified in Tenda W20E 15.11.0.61068_1546_841_CN_TDC. This issue affects the function formIPMacBindAdd of the component HTTP Handler. Such manipulation of the argument IPMacBindRule leads to stack-based buffer overf…

TwilightTenda · W20EEPSS 0.40%via NVD
CVE-2026-90687Medium· 6.3PoC
1w ago

A vulnerability was determined in GPAC up to f1219cde

A vulnerability was determined in GPAC up to f1219cde. This vulnerability affects the function gf_node_changed_internal of the file scenegraph/base_scenegraph.c of the component MP4Box. This manipulation causes use after free. It is poss…

TwilightEPSS 0.29%via NVD
CWE-119 vulnerabilities (CVEs) — page 2 · VulnSea