VulnSea

CWE-120

CVEs classified under CWE-120, newest first.

251 CVEsRSS

CVE-2026-94101Critical· 9.9PoC
today

A security vulnerability has been detected in Netcore NBR200V2 1.3.241127.071246

A security vulnerability has been detected in Netcore NBR200V2 1.3.241127.071246. The affected element is the function vlan_load_form_uci of the file /usr/bin/routerd. The manipulation of the argument wan_num leads to buffer overflow. It…

AbyssalNetcore · NBR200V2EPSS 0.45%via NVD
CVE-2026-94100Critical· 9.9
today

A weakness has been identified in Netcore NBR200V2 1.3.241127.071246

A weakness has been identified in Netcore NBR200V2 1.3.241127.071246. Impacted is the function wan_config_set_vlan of the file /usr/bin/routerd of the component WAN VLAN Reconfiguration. Executing a manipulation of the argument vlan_wanX…

MidnightNetcore · NBR200V2EPSS 0.46%via NVD
CVE-2026-93741Critical· 10.0
2d ago

A security flaw has been discovered in Totolink A3002MU Hh-B20211125.1046

A security flaw has been discovered in Totolink A3002MU Hh-B20211125.1046. Affected by this vulnerability is the function formWlWds of the file /boafrm/formWlWds. The manipulation of the argument submit-url results in buffer overflow. It…

MidnightTotolink · A3002MUEPSS 0.64%via NVD
CVE-2026-93740Critical· 10.0PoC
3d ago

A vulnerability was identified in Totolink A3002MU Hh-B20211125.1046

A vulnerability was identified in Totolink A3002MU Hh-B20211125.1046. Affected is the function formWlEncrypt of the file /boafrm/formWlEncrypt. The manipulation of the argument submit-url leads to buffer overflow. It is possible to initi…

AbyssalTotolink · A3002MUEPSS 0.61%via NVD
CVE-2026-93739Critical· 9.9
3d ago

A vulnerability was determined in Totolink A3002MU Hh-B20211125.1046

A vulnerability was determined in Totolink A3002MU Hh-B20211125.1046. This impacts the function formWlAc of the file /boafrm/formWlAc. Executing a manipulation of the argument submit-url can lead to buffer overflow. The attack may be per…

MidnightTotolink · A3002MUEPSS 0.49%via NVD
CVE-2026-93738Critical· 9.9
3d ago

A vulnerability was found in Totolink A3002MU Hh-B20211125.1046

A vulnerability was found in Totolink A3002MU Hh-B20211125.1046. This affects the function formSchedule of the file /boafrm/formSchedule. Performing a manipulation of the argument webpage results in buffer overflow. The attack is possibl…

MidnightTotolink · A3002MUEPSS 0.50%via NVD
CVE-2026-81634High· 7.5
5d ago

In NLnet Labs Unbound up to and including 1.26.0, a 255 length query name with a large TCP response can lead to a heap buffer overflow during the RRSet canonicalisation routine

In NLnet Labs Unbound up to and including 1.26.0, a 255 length query name with a large TCP response can lead to a heap buffer overflow during the RRSet canonicalisation routine. This is caused by missing to add the first owner name into …

TwilightNLnet Labs · UnboundEPSS 0.36%via NVD
CVE-2026-76695Medium· 6.5
6d ago

Buffer overflow vulnerabilities exist in the underlying operating system of HPE Networking EdgeConnect SD-WAN Gateways that could allow an unauthenticated remote attacker to send specially crafted packets to the affected service

Buffer overflow vulnerabilities exist in the underlying operating system of HPE Networking EdgeConnect SD-WAN Gateways that could allow an unauthenticated remote attacker to send specially crafted packets to the affected service. Success…

SunlitHewlett Packard Enterprise (HPE) · EdgeConnect SD-WAN GatewaysEPSS 0.37%via NVD
CVE-2026-76705Medium· 5.5
6d ago

A buffer overflow vulnerability exists in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways

A buffer overflow vulnerability exists in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways. Successful exploitation could allow an authenticated remote attacker with Admin privilege to execute arbitrary commands on the unde…

SunlitHewlett Packard Enterprise (HPE) · EdgeConnect SD-WAN GatewaysEPSS 0.54%via NVD
CVE-2026-19774High· 7.10day
6d ago

BlueZ A2DP Stack-based Buffer Overflow Remote Code Execution Vulnerability

BlueZ A2DP Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of BlueZ. An attacker must first obtain the ability to p…

AbyssalBlueZ · BlueZEPSS 0.33%via NVD
CVE-2026-0177Medium· 4.4
6d ago

In do_sss_aes_gcm_256_op of crypto-aes.c, there is a possible out-of-bounds read due to a missing bounds check

In do_sss_aes_gcm_256_op of crypto-aes.c, there is a possible out-of-bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for e…

Sunlitgoogle · androidEPSS 0.07%via NVD
CVE-2026-55301High· 8.4
6d ago

In Wave6VpuDecFlush of wave6.c, there is a possible out-of-bounds write due to a missing bounds check

In Wave6VpuDecFlush of wave6.c, there is a possible out-of-bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for ex…

Twilightgoogle · androidEPSS 0.08%via NVD
CVE-2026-55343High· 8.0
6d ago

In decodeAmr of ImsMediaAudioPlayer.cpp, there is a possible out-of-bounds write due to a missing bounds check

In decodeAmr of ImsMediaAudioPlayer.cpp, there is a possible out-of-bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for explo…

Twilightgoogle · androidEPSS 0.21%via NVD
CVE-2026-55331High· 8.8
6d ago

In IP Multimedia Subsystem, there is a possible out-of-bounds write due to an incorrect bounds check

In IP Multimedia Subsystem, there is a possible out-of-bounds write due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

Twilightgoogle · androidEPSS 0.27%via NVD
CVE-2026-56892Medium· 6.2
6d ago

In ReadDataElement of common.c, there is a possible information disclosure due to an incorrect bounds check

In ReadDataElement of common.c, there is a possible information disclosure due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed f…

Sunlitgoogle · androidEPSS 0.08%via NVD
CVE-2026-56978High· 8.4
6d ago

In get_global_config_item_addr of gc.c, there is a possible out-of-bounds read due to a missing bounds check

In get_global_config_item_addr of gc.c, there is a possible out-of-bounds read due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed…

Twilightgoogle · androidEPSS 0.08%via NVD
CVE-2026-58710High· 8.8
6d ago

In DecodeFilmGrainParams of film_grain_dec.cc, there is a possible out-of-bounds write due to a missing bounds check

In DecodeFilmGrainParams of film_grain_dec.cc, there is a possible out-of-bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed…

Twilightgoogle · androidEPSS 0.28%via NVD
CVE-2026-58695High· 7.8
6d ago

In gmc_phy_lp3_exit_restore_registers of phy_power.c, there is a possible escalation of privilege due to a missing bounds check

In gmc_phy_lp3_exit_restore_registers of phy_power.c, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction i…

Twilightgoogle · androidEPSS 0.07%via NVD
CVE-2026-91953Medium· 6.5PoC
6d ago

FreeRDP versions before 3.31.0 contain a heap buffer overflow vulnerability in nego_send_negotiation_request() that fails to validate the LB_LOAD_BALANCE_INFO field length before writing to a fixed 512-byte buffer

FreeRDP versions before 3.31.0 contain a heap buffer overflow vulnerability in nego_send_negotiation_request() that fails to validate the LB_LOAD_BALANCE_INFO field length before writing to a fixed 512-byte buffer. A malicious RDP server…

TwilightFreeRDP · FreeRDPEPSS 0.42%via NVD
CVE-2026-91964High· 8.8
6d ago

FreeRDP versions before 3.31.0 contain a heap-based buffer overflow in nego_send_negotiation_request when processing Server Redirection PDU messages with attacker-controlled LoadBalanceInfo fields

FreeRDP versions before 3.31.0 contain a heap-based buffer overflow in nego_send_negotiation_request when processing Server Redirection PDU messages with attacker-controlled LoadBalanceInfo fields. A malicious RDP server can trigger the …

TwilightFreeRDP · FreeRDPEPSS 0.55%via NVD
CVE-2026-92076Low· 3.4
6d ago

Incorrect boundary conditions in the Networking component

Incorrect boundary conditions in the Networking component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

SunlitMozilla · FirefoxEPSS 0.15%via NVD
CVE-2026-92006High· 8.8
6d ago

Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component

Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16…

TwilightMozilla · FirefoxEPSS 0.35%via NVD
CVE-2026-92007High· 8.8
6d ago

Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component

Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16…

TwilightMozilla · FirefoxEPSS 0.28%via NVD
CVE-2026-92013High· 8.8
6d ago

Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component

Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16…

TwilightMozilla · FirefoxEPSS 0.28%via NVD
CVE-2026-92008High· 8.8
6d ago

Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component

Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16…

TwilightMozilla · FirefoxEPSS 0.28%via NVD
CVE-2026-92011High· 8.8
6d ago

Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component

Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16…

TwilightMozilla · FirefoxEPSS 0.28%via NVD
CVE-2026-92010High· 8.8
6d ago

Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component

Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16…

TwilightMozilla · FirefoxEPSS 0.28%via NVD
CVE-2026-92009High· 8.8
6d ago

Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component

Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16…

TwilightMozilla · FirefoxEPSS 0.28%via NVD
CVE-2026-92014High· 8.8
6d ago

Privilege escalation due to incorrect boundary conditions in the Graphics component

Privilege escalation due to incorrect boundary conditions in the Graphics component. This vulnerability was fixed in Firefox ESR 115.41, Firefox ESR 140.16, and Thunderbird 140.16.

TwilightMozilla · FirefoxEPSS 0.26%via NVD
CVE-2026-92012High· 8.8
6d ago

Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component

Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16…

TwilightMozilla · FirefoxEPSS 0.28%via NVD
CWE-120 vulnerabilities (CVEs) · VulnSea