VulnSea

CWE-121

CVEs classified under CWE-121, newest first.

345 CVEsRSS

CVE-2026-64912High· 7.8
1mo ago

Microsoft Access Remote Code Execution Vulnerability

Stack-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally.

▾ TwilightMicrosoft · Microsoft 365 Apps for EnterpriseEPSS 0.47%via CVEORG
CVE-2026-64907High· 7.8
1mo ago

Microsoft Office Word Remote Code Execution Vulnerability

Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.

▾ TwilightMicrosoft · Microsoft 365 Apps for EnterpriseEPSS 0.47%via CVEORG
CVE-2026-66807High· 7.8
1mo ago

Microsoft Office Graphics Component Remote Code Execution Vulnerability

Stack-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

▾ TwilightMicrosoft · Microsoft 365 Apps for EnterpriseEPSS 0.47%via CVEORG
CVE-2026-68817High· 7.8
1mo ago

Microsoft Excel Remote Code Execution Vulnerability

Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

▾ TwilightMicrosoft · Microsoft 365 Apps for EnterpriseEPSS 0.47%via CVEORG
CVE-2026-11735Medium· 4.9
1mo ago

A stack-based buffer overflow vulnerability affects the listed NETGEAR models allowing an authenticated admin user to make unauthorized modification to the router's software and functionality.

A stack-based buffer overflow vulnerability affects the listed NETGEAR models allowing an authenticated admin user to make unauthorized modification to the router's software and functionality.

▾ Sunlitnetgear · r7000_firmwareEPSS 0.51%via NVD
CVE-2026-11734Low· 2.7
1mo ago

A buffer overflow vulnerability in the listed NETGEAR models allows an authenticated admin user to cause the affected device to become temporarily unavailable.

A buffer overflow vulnerability in the listed NETGEAR models allows an authenticated admin user to cause the affected device to become temporarily unavailable.

▾ Sunlitnetgear · mr70_firmwareEPSS 0.60%via NVD
CVE-2026-11733Medium· 4.9
1mo ago

A buffer overflow vulnerability in the listed NETGEAR models allows a device administrator to temporarily interrupt the normal operation of the affected device.

A buffer overflow vulnerability in the listed NETGEAR models allows a device administrator to temporarily interrupt the normal operation of the affected device.

▾ Sunlitnetgear · rax41_firmwareEPSS 0.51%via NVD
CVE-2026-19341High· 8.8
1mo ago

A security vulnerability has been detected in UTT HiPER 1200GW up to 2.5.3-170306

A security vulnerability has been detected in UTT HiPER 1200GW up to 2.5.3-170306. This impacts the function strcpy of the file /goform/pptpSrvGlobalConfig. Such manipulation of the argument EncryptionMode leads to stack-based buffer ove…

▾ TwilightEPSS 0.60%via NVD
CVE-2026-45809None
1mo ago

OpenSIPS is a Session Initiation Protocol (SIP) server implementation

OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Versions prior to 3.6.6 and 4.0.0-rc1 contain a denial of service vulnerability in the watcherinfo generation functionality. An attacker can create an oversized watch…

▾ SunlitEPSS 0.64%via NVD
CVE-2026-61486Critical· 9.8
1mo ago

** UNSUPPORTED WHEN ASSIGNED ** Stack-based Buffer Overflow vulnerability in Apache Lucy. This issue affects Apache Lucy: all versions. As this project is retired, we do not plan to release a version that fixes this issue

** UNSUPPORTED WHEN ASSIGNED ** Stack-based Buffer Overflow vulnerability in Apache Lucy. This issue affects Apache Lucy: all versions. As this project is retired, we do not plan to release a version that fixes this issue. Users ar…

▾ Midnightapache · lucyEPSS 0.81%via NVD
CVE-2026-45538Critical· 9.8
1mo ago

OpenSIPS is a Session Initiation Protocol (SIP) server implementation

OpenSIPS is a Session Initiation Protocol (SIP) server implementation. In versions 4.0.0 and prior, processing a SIP message with a header name longer than 255 bytes causes a stack buffer overflow when sip_to_json() is called in the rout…

▾ MidnightEPSS 0.80%via NVD
CVE-2026-67673Medium· 4.6
1mo ago

A stack-based buffer overflow vulnerability exists in the cmd_edl function of OreSat Firmware v1.0

A stack-based buffer overflow vulnerability exists in the cmd_edl function of OreSat Firmware v1.0. The vulnerability is triggered when processing the edl fw_flash command, where the <filename> argument is copied to a 64-byte stack buffe…

▾ SunlitEPSS 0.22%via NVD
CVE-2026-15722High· 7.5
1mo ago

A stack buffer overflow flaw was found in 389 Directory Server (389-ds-base)

A stack buffer overflow flaw was found in 389 Directory Server (389-ds-base). The get_ruvelement_from_berval() function in repl5_ruv.c copies digit characters from a network-supplied RUV berval into a fixed 16-byte stack buffer without b…

▾ Twilightredhat · directory_serverEPSS 0.83%via NVD
CVE-2026-15370Medium· 6.7
2mo ago

A flaw was found in libssh

A flaw was found in libssh. During SFTP server directory listing, the longname field is constructed with unsafe concatenation into a fixed-size stack buffer. When a client causes the server to list attacker-controlled filenames, sufficie…

▾ Sunlitlibssh · libsshEPSS 0.17%via NVD
CVE-2026-16097High· 8.8
2mo ago

A vulnerability was found in Shibby Tomato 1.28

A vulnerability was found in Shibby Tomato 1.28. This vulnerability affects the function sub_42537C of the component Scheduler Name Handler. The manipulation of the argument a1 results in stack-based buffer overflow. It is possible to la…

▾ TwilightEPSS 0.79%via NVD
CVE-2026-16096High· 8.8
2mo ago

A vulnerability has been found in Shibby Tomato 1.28 RT-N5x MIPSR2 Build 124

A vulnerability has been found in Shibby Tomato 1.28 RT-N5x MIPSR2 Build 124. This affects the function sub_40BB50 of the file /proc/webmon_recent_domains. The manipulation leads to stack-based buffer overflow. It is possible to initiate…

▾ TwilightEPSS 0.79%via NVD
CVE-2026-48863High· 7.5
2mo ago

A flaw was found in libsolv

A flaw was found in libsolv. A stack-based buffer overflow vulnerability exists in the PGP verification component due to incorrect length handling when copying EdDSA 's' MPI into a stack buffer. A remote attacker could craft a malicious …

▾ TwilightEPSS 0.82%via NVD
CVE-2026-54983High· 7.5
2mo ago

Windows Active Directory Federation Services Denial of Service Vulnerability

Stack-based buffer overflow in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over a network.

▾ TwilightMicrosoft · Windows 10 Version 1607EPSS 1.2%via CVEORG
CVE-2026-50695High· 7.5
2mo ago

Windows Active Directory Federation Services Denial of Service Vulnerability

Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over a network.

▾ TwilightMicrosoft · Windows 10 Version 1607EPSS 1.2%via CVEORG
CVE-2026-55899High· 7.8
2mo ago

Microsoft Excel Remote Code Execution Vulnerability

Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

▾ TwilightMicrosoft · Microsoft 365 Apps for EnterpriseEPSS 0.47%via CVEORG
CVE-2026-49789High· 7.3
2mo ago

Windows NTFS Elevation of Privilege Vulnerability

Stack-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.

▾ TwilightMicrosoft · Windows 10 Version 1607EPSS 0.36%via CVEORG
CVE-2026-50318High· 7.8
2mo ago

Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability

Stack-based buffer overflow in Windows Resilient File System (ReFS) allows an authorized attacker to elevate privileges locally.

▾ TwilightMicrosoft · Windows 10 Version 1607EPSS 0.33%via CVEORG
CVE-2026-50412High· 7.8
2mo ago

Windows NTFS Elevation of Privilege Vulnerability

Stack-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.

▾ TwilightMicrosoft · Windows 10 Version 1607EPSS 0.33%via CVEORG
CVE-2026-50400High· 7.8
2mo ago

Windows App Package Installer Elevation of Privilege Vulnerability

Stack-based buffer overflow in Windows App Installer allows an authorized attacker to elevate privileges locally.

▾ TwilightMicrosoft · Windows 10 Version 1607EPSS 0.33%via CVEORG
CVE-2026-50387High· 7.8
2mo ago

Windows GDI Elevation of Privilege Vulnerability

Stack-based buffer overflow in Windows GDI allows an authorized attacker to elevate privileges locally.

▾ TwilightMicrosoft · Microsoft Office 365 for MacEPSS 0.33%via CVEORG
CVE-2026-50501High· 7.8
2mo ago

Windows Resilient File System (ReFS) Remote Code Execution Vulnerability

Stack-based buffer overflow in Windows Resilient File System (ReFS) allows an unauthorized attacker to execute code locally.

▾ TwilightMicrosoft · Windows 11 Version 24H2EPSS 0.36%via CVEORG
CVE-2026-55141High· 7.8
2mo ago

Microsoft Excel Remote Code Execution Vulnerability

Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

▾ TwilightMicrosoft · Microsoft 365 Apps for EnterpriseEPSS 0.47%via CVEORG
CVE-2026-55055High· 7.8
2mo ago

Microsoft Word Remote Code Execution Vulnerability

Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.

▾ TwilightMicrosoft · Microsoft 365 Apps for EnterpriseEPSS 0.57%via CVEORG
CVE-2026-55038High· 7.8
2mo ago

Microsoft Word Remote Code Execution Vulnerability

Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.

▾ TwilightMicrosoft · Microsoft 365 Apps for EnterpriseEPSS 0.57%via CVEORG
CVE-2026-55134High· 7.8
2mo ago

Microsoft Word Remote Code Execution Vulnerability

Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.

▾ TwilightMicrosoft · Microsoft 365 Apps for EnterpriseEPSS 0.57%via CVEORG
CWE-121 vulnerabilities (CVEs) — page 7 · VulnSea