VulnSea

CWE-121

CVEs classified under CWE-121, newest first.

345 CVEsRSS

CVE-2025-48796High· 7.3
1y ago

A flaw was found in GIMP

A flaw was found in GIMP. The GIMP ani_load_image() function is vulnerable to a stack-based overflow. If a user opens.ANI files, GIMP may be used to store more information than the capacity allows. This flaw allows a malicious ANI file t…

▾ TwilightEPSS 0.19%via NVD
CVE-2025-1253High· 7.8
1y ago

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow'), Stack-based Buffer Overflow vulnerability in RTI Connext Professional (Core Libraries) allows Overflow Variables and Tags

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow'), Stack-based Buffer Overflow vulnerability in RTI Connext Professional (Core Libraries) allows Overflow Variables and Tags. This issue affects Connext Professional: f…

▾ Twilightrti · connext_professionalEPSS 0.17%via NVD
CVE-2025-46398Medium· 5.5
1y ago

In xfig diagramming tool, a stack-overflow while running fig2dev allows memory corruption via local input manipulation via read_objects function.

In xfig diagramming tool, a stack-overflow while running fig2dev allows memory corruption via local input manipulation via read_objects function.

▾ Sunlitfig2dev_project · fig2devEPSS 0.27%via NVD
CVE-2025-42599Critical· 9.8CISA KEV
1y ago

Active! mail 6 BuildInfo: 6.60.05008561 and earlier contains a stack-based buffer overflow vulnerability

Active! mail 6 BuildInfo: 6.60.05008561 and earlier contains a stack-based buffer overflow vulnerability. Receiving a specially crafted request created and sent by a remote unauthenticated attacker may lead to arbitrary code execution an…

▾ Hadalqualitia · active!_mailEPSS 3.3%via NVD
CVE-2025-22457Critical· 9.0CISA KEV0dayPoC
1y ago

A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.6, Ivanti Policy Secure before version 22.7R1.4, and Ivanti ZTA Gateways before version 22.8R2.2 allows a remote unauthenticated attacker to achieve remote code…

A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.6, Ivanti Policy Secure before version 22.7R1.4, and Ivanti ZTA Gateways before version 22.8R2.2 allows a remote unauthenticated attacker to achieve remote code…

▾ Hadalivanti · connect_secureEPSS 100%via NVD
CVE-2024-10918Medium· 4.8
1y ago

Stack-based Buffer Overflow vulnerability in libmodbus v3.1.10 allows to overflow the buffer allocated for the Modbus response if the function tries to reply to a Modbus request with an unexpected length.

Stack-based Buffer Overflow vulnerability in libmodbus v3.1.10 allows to overflow the buffer allocated for the Modbus response if the function tries to reply to a Modbus request with an unexpected length.

▾ Sunlitlibmodbus · libmodbusEPSS 0.56%via NVD
CVE-2025-26595High· 7.8
1y ago

A buffer overflow flaw was found in X.Org and Xwayland

A buffer overflow flaw was found in X.Org and Xwayland. The code in XkbVModMaskText() allocates a fixed-sized buffer on the stack and copies the names of the virtual modifiers to that buffer. The code fails to check the bounds of the buf…

▾ Twilighttigervnc · tigervncEPSS 0.44%via NVD
CVE-2024-35276Medium· 5.6
1y ago

A stack-based buffer overflow vulnerability in Fortinet FortiAnalyzer 7.4.0 through 7.4.3, FortiAnalyzer 7.2.0 through 7.2.5, FortiAnalyzer 7.0.0 through 7.0.12, FortiAnalyzer 6.4.0 through 6.4.14, FortiAnalyzer Cloud 7.4.1 through 7.4.3…

A stack-based buffer overflow vulnerability in Fortinet FortiAnalyzer 7.4.0 through 7.4.3, FortiAnalyzer 7.2.0 through 7.2.5, FortiAnalyzer 7.0.0 through 7.0.12, FortiAnalyzer 6.4.0 through 6.4.14, FortiAnalyzer Cloud 7.4.1 through 7.4.3…

▾ Sunlitfortinet · fortianalyzerEPSS 0.42%via NVD
CVE-2025-0282Critical· 9.0CISA KEV0dayPoC
1y ago

A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.5, Ivanti Policy Secure before version 22.7R1.2, and Ivanti Neurons for ZTA gateways before version 22.7R2.3 allows a remote unauthenticated attacker to achieve…

A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.5, Ivanti Policy Secure before version 22.7R1.2, and Ivanti Neurons for ZTA gateways before version 22.7R2.3 allows a remote unauthenticated attacker to achieve…

▾ Hadalivanti · connect_secureEPSS 100%via NVD
CVE-2024-30083High· 7.5
2y ago

Windows Standards-Based Storage Management Service Denial of Service Vulnerability

Windows Standards-Based Storage Management Service Denial of Service Vulnerability

▾ Twilightmicrosoft · windows_server_2012EPSS 2.5%via NVD
CVE-2024-26305Critical· 9.8
2y ago

There is a buffer overflow vulnerability in the underlying Utility daemon that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's access point management protocol) UDP p…

There is a buffer overflow vulnerability in the underlying Utility daemon that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's access point management protocol) UDP p…

▾ Midnightarubanetworks · sd-wanEPSS 15%via NVD
CVE-2023-42790High· 8.1
2y ago

A stack-based buffer overflow vulnerability in Fortinet FortiOS 7.4.0 through 7.4.1, FortiOS 7.2.0 through 7.2.5, FortiOS 7.0.0 through 7.0.12, FortiOS 6.4.0 through 6.4.14, FortiOS 6.2.0 through 6.2.15, FortiProxy 7.4.0, FortiProxy 7.2.…

A stack-based buffer overflow vulnerability in Fortinet FortiOS 7.4.0 through 7.4.1, FortiOS 7.2.0 through 7.2.5, FortiOS 7.0.0 through 7.0.12, FortiOS 6.4.0 through 6.4.14, FortiOS 6.2.0 through 6.2.15, FortiProxy 7.4.0, FortiProxy 7.2.…

▾ Twilightfortinet · fortiproxyEPSS 1.1%via NVD
CVE-2022-3324High· 7.8
4y ago

Stack-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0598.

Stack-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0598.

▾ Twilightneovim · neovimEPSS 0.53%via NVD
CVE-2022-3296High· 7.8
4y ago

Stack-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0577.

Stack-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0577.

▾ Twilightneovim · neovimEPSS 0.56%via NVD
CVE-2020-14498Critical· 9.6
6y ago

HMS Industrial Networks AB eCatcher all versions prior to 6.5.5 is vulnerable to a stack-based buffer overflow, which may allow an attacker to remotely execute arbitrary code.

HMS Industrial Networks AB eCatcher all versions prior to 6.5.5 is vulnerable to a stack-based buffer overflow, which may allow an attacker to remotely execute arbitrary code.

▾ Midnighthms-networks · ecatcherEPSS 4.0%via NVD
CWE-121 vulnerabilities (CVEs) — page 12 · VulnSea