VulnSea

CWE-119

CVEs classified under CWE-119, newest first.

290 CVEsRSS

CVE-2026-55586Medium· 6.6
1mo ago

SumatraPDF is a multi-format reader for Windows

SumatraPDF is a multi-format reader for Windows. In 3.6.1 and earlier, a crafted CHM file can supply malformed LZX Huffman code lengths to make_decode_table in ext/CHMLib/lzx.c. In the long-code branch, the function writes new internal n…

▾ SunlitEPSS 0.17%via NVD
CVE-2026-18294High· 7.80day
1mo ago

OriginLab Origin Viewer OGW File Parsing Memory Corruption Remote Code Execution Vulnerability

OriginLab Origin Viewer OGW File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of OriginLab Origin Viewer. User interaction i…

▾ AbyssalEPSS 0.28%via NVD
CVE-2026-20319High· 7.5
1mo ago

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering team has conducted a comprehensive internal security review

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that…

▾ TwilightCisco · Cisco Secure WorkloadEPSS 0.47%via NVD
CVE-2026-76003Critical· 9.9
1mo ago

A weakness has been identified in UTT HiPER 1200GW up to 2.5.3-170306

A weakness has been identified in UTT HiPER 1200GW up to 2.5.3-170306. Affected is the function strcpy of the file /goform/formGroupConfig. Executing a manipulation of the argument timestart can lead to stack-based buffer overflow. The a…

▾ MidnightEPSS 0.79%via NVD
GHSA-qwgh-2vcv-g2f7Medium
1mo ago

block_buffer: panic corrupts inline buffer position

block_buffer: panic corrupts inline buffer position

▾ Sunlitblock_buffer · block_buffervia GHSA
CVE-2026-64780Medium· 4.3⚖ disputed
1mo ago

The issue was addressed with improved checks

The issue was addressed with improved checks. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2, visionOS 27. Processing maliciously crafted web content may lead to an …

▾ Sunlitapple · ipadosEPSS 0.53%via NVD
CVE-2026-65333Medium· 4.3
1mo ago

This issue was addressed through improved state management

This issue was addressed through improved state management. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2, visionOS 27. Processing maliciously crafted web content m…

▾ Sunlitapple · ipadosEPSS 0.31%via NVD
CVE-2026-65338Medium· 4.3⚖ disputed
1mo ago

The issue was addressed with improved memory handling

The issue was addressed with improved memory handling. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2, visionOS 27. Processing maliciously crafted web content may le…

▾ Sunlitapple · safariEPSS 0.46%via NVD
CVE-2026-65334Medium· 4.3⚖ disputed
1mo ago

A memory corruption issue was addressed with improved state management

A memory corruption issue was addressed with improved state management. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2, visionOS 27. Processing maliciously crafted w…

▾ Sunlitapple · safariEPSS 0.46%via NVD
CVE-2026-65335Medium· 4.3⚖ disputed
1mo ago

This issue was addressed through improved state management

This issue was addressed through improved state management. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2, visionOS 27. Processing maliciously crafted web content m…

▾ Sunlitapple · ipadosEPSS 0.46%via NVD
CVE-2026-65341Medium· 5.4⚖ disputed
1mo ago

The issue was addressed with improved memory handling

The issue was addressed with improved memory handling. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2, tvOS 27, visionOS 27, watchOS 27. Processing maliciously craft…

▾ Sunlitapple · safariEPSS 0.24%via NVD
CVE-2026-64788Medium· 5.4PoC
1mo ago

The issue was addressed with improved memory handling

The issue was addressed with improved memory handling. This issue is fixed in iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2, visionOS 27, watchOS 27. Processing maliciously crafted web content may lead to memory corruption.

▾ Twilightapple · ipadosEPSS 0.25%via NVD
CVE-2026-65330Medium· 6.5PoC
1mo ago

The issue was addressed with improved memory handling

The issue was addressed with improved memory handling. This issue is fixed in iOS 26.6.1 and iPadOS 26.6.1, macOS Sequoia 15.8, macOS Tahoe 26.6.2, tvOS 27, visionOS 27, watchOS 27. An app may be able to cause unexpected system terminati…

▾ Twilightapple · ipadosEPSS 0.45%via NVD
CVE-2026-43795Medium· 4.3⚖ disputed
1mo ago

The issue was addressed with improved memory handling

The issue was addressed with improved memory handling. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2, visionOS 27. Processing maliciously crafted web content may le…

▾ Sunlitapple · safariEPSS 0.46%via NVD
CVE-2026-43794High· 8.8
1mo ago

A memory corruption issue was addressed with improved memory handling

A memory corruption issue was addressed with improved memory handling. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2, tvOS 27, visionOS 27, watchOS 27. Processing m…

▾ Twilightapple · safariEPSS 0.42%via NVD
CVE-2026-19933Medium· 6.3
1mo ago

A weakness has been identified in DefaultFuction Customer-Relationship-Management-In-C-Project 2.0

A weakness has been identified in DefaultFuction Customer-Relationship-Management-In-C-Project 2.0. Impacted is the function gets of the component Customer Search Module. This manipulation causes stack-based buffer overflow. The attack m…

▾ SunlitEPSS 0.43%via NVD
CVE-2026-19341High· 8.8
1mo ago

A security vulnerability has been detected in UTT HiPER 1200GW up to 2.5.3-170306

A security vulnerability has been detected in UTT HiPER 1200GW up to 2.5.3-170306. This impacts the function strcpy of the file /goform/pptpSrvGlobalConfig. Such manipulation of the argument EncryptionMode leads to stack-based buffer ove…

▾ TwilightEPSS 0.60%via NVD
CVE-2026-19259Medium· 5.3
1mo ago

A vulnerability has been found in MZ Automation libiec61850 up to 1.6.1

A vulnerability has been found in MZ Automation libiec61850 up to 1.6.1. The affected element is the function MmsMapping_varAccessSpecToObjectReference of the file src/iec61850/common/iec61850_common.c of the component MMS Protocol Workf…

▾ SunlitEPSS 0.17%via NVD
CVE-2026-19108Medium· 5.3
1mo ago

A vulnerability was found in MZ Automation libiec61850 up to 1.6.1

A vulnerability was found in MZ Automation libiec61850 up to 1.6.1. The affected element is the function deleteDataSetValuesShadowBuffer of the file src/iec61850/server/mms_mapping/reporting.c of the component URCB Revalidation. The mani…

▾ SunlitEPSS 0.16%via NVD
CVE-2026-20268High· 8.6
1mo ago

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security review

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that …

▾ Twilightcisco · ios_xeEPSS 0.47%via NVD
CVE-2026-16225Medium· 6.3
2mo ago

A security flaw has been discovered in davenardella snap7 up to 1.4.3

A security flaw has been discovered in davenardella snap7 up to 1.4.3. The impacted element is the function TSnap7Peer::NegotiatePDULength of the file src/core/s7_peer.cpp. The manipulation of the argument PDULength results in out-of-bou…

▾ SunlitEPSS 0.40%via NVD
CVE-2026-16097High· 8.8
2mo ago

A vulnerability was found in Shibby Tomato 1.28

A vulnerability was found in Shibby Tomato 1.28. This vulnerability affects the function sub_42537C of the component Scheduler Name Handler. The manipulation of the argument a1 results in stack-based buffer overflow. It is possible to la…

▾ TwilightEPSS 0.79%via NVD
CVE-2026-16096High· 8.8
2mo ago

A vulnerability has been found in Shibby Tomato 1.28 RT-N5x MIPSR2 Build 124

A vulnerability has been found in Shibby Tomato 1.28 RT-N5x MIPSR2 Build 124. This affects the function sub_40BB50 of the file /proc/webmon_recent_domains. The manipulation leads to stack-based buffer overflow. It is possible to initiate…

▾ TwilightEPSS 0.79%via NVD
CVE-2026-16095High· 8.8
2mo ago

A flaw has been found in Shibby Tomato 1.28 RT-N5x MIPSR2 Build 124

A flaw has been found in Shibby Tomato 1.28 RT-N5x MIPSR2 Build 124. Affected by this issue is the function setup_conntrack of the file /sbin/rc. Executing a manipulation of the argument ct_tcp_timeout can lead to out-of-bounds write. Th…

▾ TwilightEPSS 0.73%via NVD
CVE-2026-20156High· 8.1
2mo ago

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team has conducted a comprehensive internal security review

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresse…

▾ Twilightcisco · roomosEPSS 0.46%via NVD
CVE-2026-15545High· 8.8
2mo ago

A vulnerability was identified in Shibby Tomato up to 1.28.0000

A vulnerability was identified in Shibby Tomato up to 1.28.0000. Affected by this vulnerability is the function main of the file www/apcupsd/tomatodata.cgi of the component apcupsd. Such manipulation leads to out-of-bounds write. The att…

▾ TwilightEPSS 0.73%via NVD
CVE-2026-15544High· 8.8
2mo ago

A vulnerability was determined in Shibby Tomato up to 1.28.0000

A vulnerability was determined in Shibby Tomato up to 1.28.0000. Affected is the function getupsvar of the file www/apcupsd/tomatodata.cgi of the component apcupsd. This manipulation of the argument Field causes stack-based buffer overfl…

▾ TwilightEPSS 0.79%via NVD
CVE-2026-15543High· 8.8
2mo ago

A vulnerability was found in Tenda CH22 1.0.0.1

A vulnerability was found in Tenda CH22 1.0.0.1. This impacts the function formCertListInfo of the file /goform/CertListInfo. The manipulation of the argument Name results in buffer overflow. The attack can be launched remotely. The expl…

▾ TwilightEPSS 0.85%via NVD
CVE-2026-15520Medium· 5.3
2mo ago

A vulnerability was determined in GNU LibreDWG 0.13.4-154-g0b573035

A vulnerability was determined in GNU LibreDWG 0.13.4-154-g0b573035. This impacts the function decompress_R2004_section of the file src/decode.c of the component R2004 Section Decompression. Executing a manipulation can lead to heap-base…

▾ SunlitEPSS 0.18%via NVD
CVE-2026-15506High· 7.8
2mo ago

A security vulnerability has been detected in SecureAge CatchPulse up to 10.9.3

A security vulnerability has been detected in SecureAge CatchPulse up to 10.9.3. The affected element is an unknown function in the library saappctl.sys of the component Driver. Such manipulation leads to heap-based buffer overflow. An a…

▾ TwilightEPSS 0.20%via NVD
CWE-119 vulnerabilities (CVEs) — page 5 · VulnSea