VulnSea

CWE-121

CVEs classified under CWE-121, newest first.

345 CVEsRSS

CVE-2026-56642High· 8.8
2mo ago

Microsoft Fabric Data Warehouse Remote Code Execution Vulnerability

Stack-based buffer overflow in Microsoft Fabric Data Warehouse allows an authorized attacker to execute code over a network.

▾ TwilightMicrosoft · Service FabricEPSS 0.91%via CVEORG
CVE-2026-50527High· 7.5
2mo ago

.NET Framework Denial of Service Vulnerability

Stack-based buffer overflow in .NET Framework allows an unauthorized attacker to deny service over a network.

▾ TwilightMicrosoft · .NET 10.0EPSS 1.2%via CVEORG
CVE-2026-51807Critical· 9.8
2mo ago

Heap-based out-of-bounds write in j2k_precinct_subband::parse_packet_header() in OpenHTJ2K versions 0.18.3 and earlier (fixed in v0.18.4) caused by missing bounds validation before coding-pass lengths are written to j2k_codeblock::pass_l…

Heap-based out-of-bounds write in j2k_precinct_subband::parse_packet_header() in OpenHTJ2K versions 0.18.3 and earlier (fixed in v0.18.4) caused by missing bounds validation before coding-pass lengths are written to j2k_codeblock::pass_l…

▾ MidnightEPSS 0.67%via NVD
CVE-2026-57091High· 7.8
2mo ago

Stack-based buffer overflow in Windows File History Service allows an authorized attacker to elevate privileges locally.

Stack-based buffer overflow in Windows File History Service allows an authorized attacker to elevate privileges locally.

▾ Twilightmicrosoft · windows_10_1607EPSS 0.33%via NVD
CVE-2026-50411High· 7.5
2mo ago

Stack-based buffer overflow in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over a network.

Stack-based buffer overflow in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over a network.

▾ TwilightMicrosoft · Microsoft .NET Framework 3.5 AND 4.7.2EPSS 1.2%via NVD
CVE-2026-50368High· 7.5
2mo ago

Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over a network.

Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over a network.

▾ TwilightMicrosoft · Microsoft .NET Framework 3.5 AND 4.7.2EPSS 1.2%via NVD
CVE-2026-50355High· 7.5
2mo ago

Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over a network.

Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over a network.

▾ TwilightMicrosoft · Microsoft .NET Framework 3.5 AND 4.7.2EPSS 1.2%via NVD
CVE-2026-50304High· 7.5
2mo ago

Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over a network.

Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over a network.

▾ Twilightmicrosoft · windows_10_1607EPSS 1.2%via NVD
CVE-2026-15544High· 8.8
2mo ago

A vulnerability was determined in Shibby Tomato up to 1.28.0000

A vulnerability was determined in Shibby Tomato up to 1.28.0000. Affected is the function getupsvar of the file www/apcupsd/tomatodata.cgi of the component apcupsd. This manipulation of the argument Field causes stack-based buffer overfl…

▾ TwilightEPSS 0.79%via NVD
CVE-2026-15480High· 8.8
2mo ago

A vulnerability was identified in Trendnet TEW-635BRM up to 1.00.03

A vulnerability was identified in Trendnet TEW-635BRM up to 1.00.03. This affects the function start_httpd of the file /sbin/rc of the component Web Service. Such manipulation of the argument device_name leads to stack-based buffer overf…

▾ TwilightEPSS 0.79%via NVD
CVE-2026-55687High· 7.5
2mo ago

ESF-IDF is the Espressif Internet of Things (IOT) Development Framework

ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. Versions 6.0.1, 5.5.4, 5.4.4, 5.3.5, and possibly prior contain an out-of-bounds write in jpeg_parse_dqt_marker() in components/esp_driver_jpeg/jpeg_parse_marker.c …

▾ TwilightEPSS 0.70%via NVD
CVE-2026-59692High· 7.5
2mo ago

A stack buffer overflow vulnerability was found in GStreamer's DTLS plugin

A stack buffer overflow vulnerability was found in GStreamer's DTLS plugin. During a DTLS handshake, the peer certificate Subject Distinguished Name is printed into a fixed-size 2048-byte stack buffer without bounds checking. A remote un…

▾ TwilightRed Hat · gstreamer1-plugins-bad-freeEPSS 1.0%via NVD
CVE-2026-14606High· 7.8
2mo ago

A security flaw has been discovered in RT-Thread up to 5.0.2

A security flaw has been discovered in RT-Thread up to 5.0.2. Affected by this issue is the function CAN_Receive in the library bsp/synwit/libraries/SWM341_CSL/CMSIS/DeviceSupport/SWM341.h of the component SWM341 CAN Handler. Performing …

▾ TwilightEPSS 0.20%via NVD
CVE-2026-14605High· 7.8
2mo ago

A vulnerability was identified in RT-Thread up to 5.0.2

A vulnerability was identified in RT-Thread up to 5.0.2. Affected by this vulnerability is the function recvmsg in the library bsp/loongson/ls1cdev/libraries/ls1c_can.h of the component ls1c CAN Handler. Such manipulation leads to stack-…

▾ TwilightEPSS 0.20%via NVD
CVE-2026-13539High· 8.8
3mo ago

A vulnerability was identified in Wavlink WL-NU516U1-A M16U1_V240425

A vulnerability was identified in Wavlink WL-NU516U1-A M16U1_V240425. The impacted element is the function sub_407504 of the file /cgi-bin/wireless.cgi of the component POST Parameter Handler. Such manipulation of the argument Guest_ssid…

▾ TwilightEPSS 0.85%via NVD
CVE-2026-13519High· 8.8
3mo ago

A vulnerability was found in Tenda JD12L 16.03.53.23

A vulnerability was found in Tenda JD12L 16.03.53.23. This impacts the function fromNatStaticSetting of the file /goform/NatStaticSetting. The manipulation of the argument page results in stack-based buffer overflow. The attack can be ex…

▾ TwilightEPSS 0.85%via NVD
CVE-2026-13518High· 8.8
3mo ago

A vulnerability has been found in Tenda JD12L 16.03.53.23

A vulnerability has been found in Tenda JD12L 16.03.53.23. This affects the function fromAddressNat of the file /goform/addressNat. The manipulation of the argument page leads to stack-based buffer overflow. Remote exploitation of the at…

▾ TwilightEPSS 0.85%via NVD
CVE-2026-13517High· 8.8
3mo ago

A flaw has been found in Tenda JD12L 16.03.53.23

A flaw has been found in Tenda JD12L 16.03.53.23. The impacted element is the function formWifiBasicSet of the file /goform/WifiBasicSet. Executing a manipulation of the argument security_5g can lead to stack-based buffer overflow. The a…

▾ TwilightEPSS 0.85%via NVD
CVE-2026-13516High· 8.8
3mo ago

A vulnerability was detected in Tenda JD12L 16.03.53.23

A vulnerability was detected in Tenda JD12L 16.03.53.23. The affected element is the function fromSetWifiGusetBasic of the file /goform/WifiGuestSet. Performing a manipulation of the argument shareSpeed results in stack-based buffer over…

▾ TwilightEPSS 0.85%via NVD
CVE-2026-13515High· 8.8
3mo ago

A security vulnerability has been detected in Tenda JD12L 16.03.53.23

A security vulnerability has been detected in Tenda JD12L 16.03.53.23. Impacted is the function formSetPPTPServer of the file /goform/SetPptpServerCfg. Such manipulation of the argument startIp leads to stack-based buffer overflow. The a…

▾ TwilightEPSS 0.85%via NVD
CVE-2026-54502High
3mo ago

Oj: Stack Buffer Overflow in Oj.dump via Large Indent

Oj: Stack Buffer Overflow in Oj.dump via Large Indent

▾ Twilightoj · ojEPSS 0.43%via GHSA
CVE-2026-55738High· 8.8
3mo ago

A stack-based buffer overflow exists in the raw_to_header function in src/microtar.c in rxi microtar 0.1.0

A stack-based buffer overflow exists in the raw_to_header function in src/microtar.c in rxi microtar 0.1.0. The function copies the 100-byte name and linkname fields of a TAR header with strcpy without guaranteeing null termination of th…

▾ TwilightEPSS 0.55%via NVD
CVE-2026-7273High· 8.8CISA KEVPoC
3mo ago

A stack-based buffer overflow vulnerability in the CGI program of Zyxel GS1900-48HPv2 firmware versions through 2.90(ABTQ.1)C0 could allow a LAN-based, unauthenticated attacker to exploit the flaw and potentially execute OS commands via …

A stack-based buffer overflow vulnerability in the CGI program of Zyxel GS1900-48HPv2 firmware versions through 2.90(ABTQ.1)C0 could allow a LAN-based, unauthenticated attacker to exploit the flaw and potentially execute OS commands via …

▾ Abyssalzyxel · gs1900-8_firmwareEPSS 2.5%via NVD
CVE-2026-49760Medium· 5.5
3mo ago

Stack-based Buffer Overflow vulnerability in Erlang OTP (erl_interface) allows Stack-based Buffer Overflow. This vulnerability is associated with program file lib/erl_interface/src/misc/ei_printterm.c and program routine ei_s_print_term…

Stack-based Buffer Overflow vulnerability in Erlang OTP (erl_interface) allows Stack-based Buffer Overflow. This vulnerability is associated with program file lib/erl_interface/src/misc/ei_printterm.c and program routine ei_s_print_term…

▾ Sunliterlang · erl_interfaceEPSS 0.19%via NVD
CVE-2026-49759High· 8.2
3mo ago

Stack-based Buffer Overflow vulnerability in Erlang OTP erts (inet_drv) allows an unauthenticated remote attacker to crash the BEAM VM by sending a crafted SCTP ERROR chunk. The sctp_parse_error_chunk function in erts/emulator/drivers/c…

Stack-based Buffer Overflow vulnerability in Erlang OTP erts (inet_drv) allows an unauthenticated remote attacker to crash the BEAM VM by sending a crafted SCTP ERROR chunk. The sctp_parse_error_chunk function in erts/emulator/drivers/c…

▾ Twilighterlang · erlang/otpEPSS 0.86%via NVD
CVE-2026-45648High· 8.8
3mo ago

Windows Active Directory Domain Services Remote Code Execution Vulnerability

Stack-based buffer overflow in Active Directory Domain Services allows an authorized attacker to execute code over a network.

▾ TwilightMicrosoft · Windows Server 2022EPSS 0.91%via CVEORG
CVE-2026-45463High· 8.4
3mo ago

Microsoft Office Remote Code Execution Vulnerability

Integer underflow (wrap or wraparound) in Microsoft Office allows an unauthorized attacker to execute code locally.

▾ TwilightMicrosoft · Microsoft 365 Apps for EnterpriseEPSS 0.36%via CVEORG
CVE-2026-44815Critical· 9.8
3mo ago

DHCP Client Service Remote Code Execution Vulnerability

Stack-based buffer overflow in Windows DHCP Client allows an unauthorized attacker to execute code over a network.

▾ MidnightMicrosoft · Windows 10 Version 1607EPSS 0.97%via CVEORG
CVE-2026-11793Medium· 4.9
3mo ago

A stack buffer overflow flaw was found in 389 Directory Server

A stack buffer overflow flaw was found in 389 Directory Server. The checkPrefix() function in pw.c copies an attacker-controlled algorithm ID into a 256-byte stack buffer without bounds checking when parsing reversible-encrypted attribut…

▾ Sunlitredhat · 389_directory_serverEPSS 0.28%via NVD
CVE-2026-9669Medium· 5.9
3mo ago

bz2.BZ2Decompressor objects could be reused after a decompression error

bz2.BZ2Decompressor objects could be reused after a decompression error. If an application caught the resulting OSError and retried with the same decompressor, crafted input could cause the decompressor to resume from an invalid internal…

▾ SunlitRed Hat · Red Hat Enterprise Linux 8EPSS 0.60%via NVD
CWE-121 vulnerabilities (CVEs) — page 8 · VulnSea