VulnSea

CWE-119

CVEs classified under CWE-119, newest first.

290 CVEsRSS

CVE-2026-5629High· 8.8
5mo ago

A vulnerability was detected in Belkin F9K1015 1.00.10

A vulnerability was detected in Belkin F9K1015 1.00.10. The affected element is the function formSetFirewall of the file /goform/formSetFirewall. The manipulation of the argument webpage results in stack-based buffer overflow. The attack…

▾ Twilightbelkin · f9k1015_firmwareEPSS 1.1%via NVD
CVE-2026-5628High· 8.8
5mo ago

A security vulnerability has been detected in Belkin F9K1015 1.00.10

A security vulnerability has been detected in Belkin F9K1015 1.00.10. Impacted is the function formSetSystemSettings of the file /goform/formSetSystemSettings of the component Setting Handler. The manipulation of the argument webpage lea…

▾ Twilightbelkin · f9k1015_firmwareEPSS 1.1%via NVD
CVE-2026-5614High· 8.8
5mo ago

A security flaw has been discovered in Belkin F9K1015 1.00.10

A security flaw has been discovered in Belkin F9K1015 1.00.10. Impacted is the function formSetPassword of the file /goform/formSetPassword. The manipulation of the argument webpage results in stack-based buffer overflow. The attack may …

▾ Twilightbelkin · f9k1015_firmwareEPSS 1.5%via NVD
CVE-2026-5613High· 8.8
5mo ago

A vulnerability was identified in Belkin F9K1015 1.00.10

A vulnerability was identified in Belkin F9K1015 1.00.10. This issue affects the function formReboot of the file /goform/formReboot. The manipulation of the argument webpage leads to stack-based buffer overflow. The attack may be initiat…

▾ Twilightbelkin · f9k1015_firmwareEPSS 1.1%via NVD
CVE-2026-5610High· 8.8
5mo ago

A vulnerability has been found in Belkin F9K1015 1.00.10

A vulnerability has been found in Belkin F9K1015 1.00.10. Affected by this issue is the function formWISP5G of the file /goform/formWISP5G. Such manipulation of the argument webpage leads to stack-based buffer overflow. It is possible to…

▾ Twilightbelkin · f9k1015_firmwareEPSS 1.1%via NVD
CVE-2026-5609High· 8.8
5mo ago

A flaw has been found in Tenda i12 1.0.0.11(3862)

A flaw has been found in Tenda i12 1.0.0.11(3862). Affected by this vulnerability is the function formwrlSSIDset of the file /goform/wifiSSIDset of the component Parameter Handler. This manipulation of the argument index/wl_radio causes …

▾ Twilighttenda · i12_firmwareEPSS 1.0%via NVD
CVE-2026-5608High· 8.8
5mo ago

A vulnerability was detected in Belkin F9K1122 1.00.33

A vulnerability was detected in Belkin F9K1122 1.00.33. Affected is the function formWlanSetup of the file /goform/formWlanSetup. The manipulation of the argument webpage results in stack-based buffer overflow. The attack may be performe…

▾ Twilightbelkin · f9k1122_firmwareEPSS 1.1%via NVD
CVE-2026-5605High· 8.8
5mo ago

A weakness has been identified in Tenda CH22 1.0.0.1

A weakness has been identified in Tenda CH22 1.0.0.1. This affects the function formWrlExtraSet of the file /goform/WrlExtraSet. Executing a manipulation of the argument GO can lead to stack-based buffer overflow. The attack can be execu…

▾ Twilighttenda · ch22_firmwareEPSS 0.89%via NVD
CVE-2026-5567High· 8.8
5mo ago

A flaw has been found in Tenda M3 1.0.0.10

A flaw has been found in Tenda M3 1.0.0.10. This vulnerability affects the function setAdvPolicyData of the file /goform/setAdvPolicyData of the component Destination Handler. Executing a manipulation of the argument policyType can lead …

▾ Twilighttenda · m3_firmwareEPSS 1.0%via NVD
CVE-2026-5566High· 8.8
5mo ago

A vulnerability was detected in UTT HiPER 1250GW up to 3.2.7-210907-180535

A vulnerability was detected in UTT HiPER 1250GW up to 3.2.7-210907-180535. This affects the function strcpy of the file /goform/formNatStaticMap. Performing a manipulation of the argument NatBind results in buffer overflow. Remote explo…

▾ TwilightEPSS 0.79%via NVD
CVE-2026-5475Medium· 5.5
5mo ago

A vulnerability was determined in NASA cFS up to 7.0.0

A vulnerability was determined in NASA cFS up to 7.0.0. This impacts the function CFE_SB_TransmitMsg of the file cfe_sb_priv.c of the component CCSDS Header Size Handler. Executing a manipulation can lead to memory corruption. The projec…

▾ Sunlitnasa · core_flight_systemEPSS 0.33%via NVD
CVE-2026-5213High· 8.8
6mo ago

A vulnerability was determined in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, DNS-1100-4, DNS-1200-05 and DNS-1…

A vulnerability was determined in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, DNS-1100-4, DNS-1200-05 and DNS-1…

▾ Twilightdlink · dnr-202l_firmwareEPSS 1.2%via NVD
CVE-2026-5204High· 8.8
6mo ago

A vulnerability was determined in Tenda CH22 1.0.0.1

A vulnerability was determined in Tenda CH22 1.0.0.1. Affected is the function formWebTypeLibrary of the file /goform/webtypelibrary of the component Parameter Handler. This manipulation of the argument webSiteId causes stack-based buffe…

▾ Twilighttenda · ch22_firmwareEPSS 1.0%via NVD
CVE-2026-3437High· 8.8
6mo ago

An improper restriction of operations within the bounds of a memory buffer vulnerability in Portwell Engineering Toolkits version 4.8.2 could allow a local authenticated attacker to read and write to arbitrary memory via the Portwell Eng…

An improper restriction of operations within the bounds of a memory buffer vulnerability in Portwell Engineering Toolkits version 4.8.2 could allow a local authenticated attacker to read and write to arbitrary memory via the Portwell Eng…

▾ TwilightEPSS 0.18%via NVD
CVE-2026-20644Medium· 6.5
7mo ago

The issue was addressed with improved memory handling

The issue was addressed with improved memory handling. This issue is fixed in Safari 26.3, iOS 18.7.5 and iPadOS 18.7.5, iOS 26.3 and iPadOS 26.3, macOS Tahoe 26.3, visionOS 26.3. Processing maliciously crafted web content may lead to an…

▾ Sunlitapple · safariEPSS 0.31%via NVD
CVE-2026-20636Medium· 6.5
7mo ago

The issue was addressed with improved memory handling

The issue was addressed with improved memory handling. This issue is fixed in Safari 26.3, iOS 26.3 and iPadOS 26.3, macOS Tahoe 26.3, visionOS 26.3. Processing maliciously crafted web content may lead to an unexpected process crash.

▾ Sunlitapple · safariEPSS 0.40%via NVD
CVE-2026-20635Medium· 4.3
7mo ago

The issue was addressed with improved memory handling

The issue was addressed with improved memory handling. This issue is fixed in Safari 26.3, iOS 18.7.5 and iPadOS 18.7.5, iOS 26.3 and iPadOS 26.3, macOS Tahoe 26.3, tvOS 26.3, visionOS 26.3, watchOS 26.3. Processing maliciously crafted w…

▾ Sunlitapple · safariEPSS 0.31%via NVD
CVE-2026-1260High· 7.8
8mo ago

Invalid memory access in Sentencepiece versions less than 0.2.1 when using a vulnerable model file, which is not created in the normal training procedure.

Invalid memory access in Sentencepiece versions less than 0.2.1 when using a vulnerable model file, which is not created in the normal training procedure.

▾ Twilightgoogle · sentencepieceEPSS 0.18%via NVD
CVE-2025-65396Medium· 6.1
8mo ago

A vulnerability in the boot process of Blurams Flare Camera version 24.1114.151.929 and earlier allows a physically proximate attacker to hijack the boot mechanism and gain a bootloader shell via the UART interface

A vulnerability in the boot process of Blurams Flare Camera version 24.1114.151.929 and earlier allows a physically proximate attacker to hijack the boot mechanism and gain a bootloader shell via the UART interface. This is achieved by i…

▾ Sunlitblurams · dome_flare_firmwareEPSS 0.21%via NVD
CVE-2026-0891High· 8.1
8mo ago

Memory safety bugs present in Firefox ESR 140.6, Thunderbird ESR 140.6, Firefox 146 and Thunderbird 146

Memory safety bugs present in Firefox ESR 140.6, Thunderbird ESR 140.6, Firefox 146 and Thunderbird 146. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploit…

▾ Twilightmozilla · firefoxEPSS 0.48%via NVD
CVE-2026-0879Critical· 9.8
8mo ago

Sandbox escape due to incorrect boundary conditions in the Graphics component

Sandbox escape due to incorrect boundary conditions in the Graphics component. This vulnerability was fixed in Firefox 147, Firefox ESR 115.32, Firefox ESR 140.7, Thunderbird 147, and Thunderbird 140.7.

▾ Midnightmozilla · firefoxEPSS 0.61%via NVD
CVE-2026-0878High· 8.0
8mo ago

Sandbox escape due to incorrect boundary conditions in the Graphics: CanvasWebGL component

Sandbox escape due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 147, Firefox ESR 140.7, Thunderbird 147, and Thunderbird 140.7.

▾ Twilightmozilla · firefoxEPSS 0.48%via NVD
CVE-2025-14187High· 7.2
9mo ago

A weakness has been identified in UGREEN DH2100+ up to 5.3.0.251125

A weakness has been identified in UGREEN DH2100+ up to 5.3.0.251125. This affects the function handler_file_backup_create of the file /v1/file/backup/create of the component nas_svr. Executing a manipulation of the argument path can lead…

▾ TwilightEPSS 0.63%via NVD
CVE-2025-14136High· 8.8
9mo ago

A security flaw has been discovered in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1.05.003/1.2.07.001

A security flaw has been discovered in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1.05.003/1.2.07.001. This vulnerability affects the function RE2000v2Repeater_get_wired_clientlist_setCl…

▾ Twilightlinksys · re6500_firmwareEPSS 1.1%via NVD
CVE-2025-14135High· 8.8
9mo ago

A vulnerability was identified in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1.05.003/1.2.07.001

A vulnerability was identified in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1.05.003/1.2.07.001. This affects the function AP_get_wired_clientlist_setClientsName of the file mod_form.so…

▾ Twilightlinksys · re6500_firmwareEPSS 0.87%via NVD
CVE-2025-14133High· 8.8
9mo ago

A vulnerability was found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1.05.003/1.2.07.001

A vulnerability was found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1.05.003/1.2.07.001. Affected by this vulnerability is the function AP_get_wireless_clientlist_setClientsName of t…

▾ Twilightlinksys · re6500_firmwareEPSS 0.87%via NVD
CVE-2025-43429Medium· 4.3
10mo ago

A buffer overflow was addressed with improved bounds checking

A buffer overflow was addressed with improved bounds checking. This issue is fixed in Safari 26.1, iOS 18.7.2 and iPadOS 18.7.2, iOS 26.1 and iPadOS 26.1, macOS Tahoe 26.1, tvOS 26.1, visionOS 26.1, watchOS 26.1. Processing maliciously c…

▾ Sunlitapple · safariEPSS 1.4%via NVD
CVE-2025-43441Medium· 4.3
10mo ago

The issue was addressed with improved memory handling

The issue was addressed with improved memory handling. This issue is fixed in Safari 26.1, iOS 18.7.2 and iPadOS 18.7.2, iOS 26.1 and iPadOS 26.1, macOS Tahoe 26.1, tvOS 26.1, visionOS 26.1. Processing maliciously crafted web content may…

▾ Sunlitapple · safariEPSS 0.90%via NVD
CVE-2025-43433High· 8.8
10mo ago

The issue was addressed with improved memory handling

The issue was addressed with improved memory handling. This issue is fixed in Safari 26.1, iOS 18.7.2 and iPadOS 18.7.2, iOS 26.1 and iPadOS 26.1, macOS Tahoe 26.1, tvOS 26.1, visionOS 26.1, watchOS 26.1. Processing maliciously crafted w…

▾ Twilightapple · safariEPSS 1.1%via NVD
CVE-2025-8001High· 7.80day
1y ago

Ashlar-Vellum Cobalt CO File Parsing Memory Corruption Remote Code Execution Vulnerability

Ashlar-Vellum Cobalt CO File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is requi…

▾ Abyssalashlar · cobaltEPSS 0.21%via NVD
CWE-119 vulnerabilities (CVEs) — page 8 · VulnSea