VulnSea

CWE-121

CVEs classified under CWE-121, newest first.

345 CVEsRSS

CVE-2026-50259High· 7.8
3mo ago

A stack-based buffer overflow flaw was found in the X.Org X server and Xwayland

A stack-based buffer overflow flaw was found in the X.Org X server and Xwayland. _XkbSetMapChecks() declares a fixed-size stack buffer mapWidths[256] indexed by key type index. The helper function CheckKeyTypes() writes to this buffer at…

▾ Twilightx.org · x_serverEPSS 0.22%via NVD
CVE-2026-50258High· 7.8
3mo ago

A stack-based buffer overflow flaw was found in the X.Org X server and Xwayland

A stack-based buffer overflow flaw was found in the X.Org X server and Xwayland. The X server has multiple stack buffers sized XkbMaxShiftLevel * XkbNumKbdGroups but CheckKeyTypes() does not verify or clamp non-canonical key types to Xkb…

▾ Twilightx.org · x_serverEPSS 0.22%via NVD
CVE-2026-50256High· 7.8
3mo ago

A stack-based buffer overflow flaw was found in the X.Org X server and Xwayland

A stack-based buffer overflow flaw was found in the X.Org X server and Xwayland. A mismatch between the X server and the libXfont2 library's maximum font name length can cause a stack buffer overflow during font alias resolution. The ser…

▾ Twilightx.org · x_serverEPSS 0.21%via NVD
CVE-2026-35085High· 8.8
3mo ago

A remote attacker with user privileges can exploit a stack buffer overflow in gdv-serverconfig to gain full system access as root.

A remote attacker with user privileges can exploit a stack buffer overflow in gdv-serverconfig to gain full system access as root.

▾ Twilightmbs-solutions · universal_gateway_firmwareEPSS 0.58%via NVD
CVE-2026-35084High· 8.8
3mo ago

A remote attacker with user privileges can exploit a stack buffer overflow in dali-devconfig to gain full system access as root.

A remote attacker with user privileges can exploit a stack buffer overflow in dali-devconfig to gain full system access as root.

▾ Twilightmbs-solutions · universal_gateway_firmwareEPSS 0.58%via NVD
CVE-2026-35083High· 8.8
3mo ago

A remote attacker with user privileges can exploit a stack buffer overflow to gain full system access as root.

A remote attacker with user privileges can exploit a stack buffer overflow to gain full system access as root.

▾ Twilightmbs-solutions · universal_gateway_firmwareEPSS 0.58%via NVD
CVE-2026-10292High· 8.8
3mo ago

A vulnerability was detected in UTT HiPER 1200GW up to 2.5.3-170306

A vulnerability was detected in UTT HiPER 1200GW up to 2.5.3-170306. This affects the function strcpy of the file /goform/formTaskEdit. The manipulation results in stack-based buffer overflow. The attack may be launched remotely. The exp…

▾ TwilightEPSS 0.47%via NVD
CVE-2026-43958High· 7.8
3mo ago

A flaw was found in rrdcached, a component of rrdtool

A flaw was found in rrdcached, a component of rrdtool. A local attacker with access to a rrdcached socket can exploit a stack-based buffer overflow by sending an oversized CREATE request. This vulnerability can lead to a denial of servic…

▾ TwilightRed Hat · rrdtoolEPSS 0.19%via NVD
CVE-2026-10125High· 8.8
4mo ago

A vulnerability was identified in Edimax BR-6478AC 1.23

A vulnerability was identified in Edimax BR-6478AC 1.23. Affected by this vulnerability is the function formPPPoESetup of the file /goform/formPPPoESetup of the component POST Request Handler. The manipulation of the argument pppUserName…

▾ TwilightEPSS 0.45%via NVD
CVE-2026-10124High· 8.8
4mo ago

A vulnerability was determined in Shibby Tomato up to 1.28

A vulnerability was determined in Shibby Tomato up to 1.28. Affected is the function rip_zebra_read_ipv4 of the file /usr/sbin/ripd of the component Zserv Handler. Executing a manipulation can lead to stack-based buffer overflow. It is p…

▾ TwilightEPSS 0.47%via NVD
CVE-2026-10123High· 8.8
4mo ago

A vulnerability was found in TRENDnet TEW-432BRP 3.10B20

A vulnerability was found in TRENDnet TEW-432BRP 3.10B20. This impacts the function formSetDomainFilter of the file /goform/formSetDomainFilter. Performing a manipulation of the argument blocked_domain/permitted_domain/blocked_domain_lis…

▾ TwilightEPSS 0.47%via NVD
CVE-2026-10122High· 8.8
4mo ago

A vulnerability has been found in TRENDnet TEW-432BRP 3.10B20

A vulnerability has been found in TRENDnet TEW-432BRP 3.10B20. This affects the function formSetProtocolFilter of the file /goform/formSetProtocolFilter. Such manipulation of the argument protocol_name leads to stack-based buffer overflo…

▾ TwilightEPSS 0.47%via NVD
CVE-2026-10121High· 8.8
4mo ago

A flaw has been found in TRENDnet TEW-432BRP 3.10B20

A flaw has been found in TRENDnet TEW-432BRP 3.10B20. The impacted element is the function formSetUrlFilter of the file /goform/formSetUrlFilter. This manipulation of the argument keyword_list/keyword causes stack-based buffer overflow. …

▾ TwilightEPSS 0.45%via NVD
CVE-2026-9150Medium· 6.5
4mo ago

A flaw was found in libsolv

A flaw was found in libsolv. This stack-based buffer overflow vulnerability occurs in libsolv's Debian metadata parser when processing specially crafted Debian repository metadata. An attacker could exploit this by providing malicious SH…

▾ Sunlitopensuse · libsolvEPSS 0.58%via NVD
CVE-2026-39047High· 7.5PoC
4mo ago

Buffer Overflow vulnerability in EPSON L14150 FL27PB allows a remote attacker to execute arbitrary code via the RAW Printing Service (JetDirect) on TCP port 9100

Buffer Overflow vulnerability in EPSON L14150 FL27PB allows a remote attacker to execute arbitrary code via the RAW Printing Service (JetDirect) on TCP port 9100

▾ MidnightEPSS 0.83%via NVD
CVE-2026-8836Critical· 9.8PoC
4mo ago

A vulnerability was found in lwIP up to 2.2.1

A vulnerability was found in lwIP up to 2.2.1. Affected is the function snmp_parse_inbound_frame of the file src/apps/snmp/snmp_msg.c of the component snmpv3 USM Handler. Performing a manipulation of the argument msgAuthenticationParamet…

▾ AbyssalEPSS 1.6%via NVD
CVE-2026-41956High· 7.5
4mo ago

When a classification profile is configured on a UDP virtual server, undisclosed requests can cause the Traffic Management Microkernel (TMM) to terminate.  Note: Software versions which have reached End of Technical Support (EoTS) are no…

When a classification profile is configured on a UDP virtual server, undisclosed requests can cause the Traffic Management Microkernel (TMM) to terminate.  Note: Software versions which have reached End of Technical Support (EoTS) are no…

▾ TwilightEPSS 0.46%via NVD
CVE-2026-43661High· 7.5
4mo ago

A buffer overflow issue was addressed with improved memory handling

A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, iOS 26.5 and iPadOS 26.5, iOS 26.7 and iPadOS 26.7, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.5, …

▾ Twilightapple · ipadosEPSS 0.72%via NVD
CVE-2026-8258Medium· 5.3
4mo ago

A flaw has been found in Squirrel up to 3.2

A flaw has been found in Squirrel up to 3.2. Impacted is the function validate_format in the library sqstdlib/sqstdstring.cpp. Executing a manipulation can lead to stack-based buffer overflow. The attack can only be executed locally. The…

▾ SunlitEPSS 0.17%via NVD
CVE-2026-8234High· 8.8
4mo ago

A security vulnerability has been detected in EFM ipTIME A8004T 14.18.2

A security vulnerability has been detected in EFM ipTIME A8004T 14.18.2. This vulnerability affects the function formWifiBasicSet of the file /goform/WifiBasicSet. The manipulation of the argument security_5g leads to stack-based buffer …

▾ TwilightEPSS 0.80%via NVD
CVE-2026-41681High· 7.5
5mo ago

rust-openssl provides OpenSSL bindings for the Rust programming language

rust-openssl provides OpenSSL bindings for the Rust programming language. From 0.10.39 to before 0.10.78, EVP_DigestFinal() always writes EVP_MD_CTX_size(ctx) to the out buffer. If out is smaller than that, MdCtxRef::digest_final() writ…

▾ Twilightrust-openssl_project · rust-opensslEPSS 0.62%via NVD
CVE-2026-32195High· 7.0
5mo ago

Windows Kernel Elevation of Privilege Vulnerability

Stack-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

▾ TwilightMicrosoft · Windows 11 version 26H1EPSS 0.26%via CVEORG
CVE-2026-5713None
5mo ago

The "profiling.sampling" module (Python 3.15+) and "asyncio introspection capabilities" (3.14+, "python -m asyncio ps" and "python -m asyncio pstree") features could be used to read and write addresses in a privileged process if that pro…

The "profiling.sampling" module (Python 3.15+) and "asyncio introspection capabilities" (3.14+, "python -m asyncio ps" and "python -m asyncio pstree") features could be used to read and write addresses in a privileged process if that pro…

▾ SunlitEPSS 0.15%via NVD
CVE-2026-32203High· 7.5
5mo ago

.NET and Visual Studio Denial of Service Vulnerability

Stack-based buffer overflow in .NET and Visual Studio allows an unauthorized attacker to deny service over a network.

▾ TwilightMicrosoft · .NET 10.0EPSS 2.4%via CVEORG
CVE-2026-30814High· 8.0
5mo ago

A stack-based buffer overflow in the tmpServer module of TP-Link Archer AX53 v1.0 allows an authenticated adjacent attacker to trigger a segmentation fault and potentially execute arbitrary code via a specially crafted configuration file…

A stack-based buffer overflow in the tmpServer module of TP-Link Archer AX53 v1.0 allows an authenticated adjacent attacker to trigger a segmentation fault and potentially execute arbitrary code via a specially crafted configuration file…

▾ Twilighttp-link · archer_ax53_firmwareEPSS 0.56%via NVD
CVE-2025-50671High· 7.5
5mo ago

A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of parameters in the /xwgl_ref.asp endpoint

A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of parameters in the /xwgl_ref.asp endpoint. An attacker can exploit this vulnerability by sending a crafted HTTP GET request with excessively l…

▾ Twilightdlink · di-8003_firmwareEPSS 0.49%via NVD
CVE-2025-50664High· 7.5
5mo ago

A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of parameters in the /user_group.asp endpoint

A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of parameters in the /user_group.asp endpoint. The attacker can exploit this vulnerability by sending a crafted HTTP GET request with parameters…

▾ Twilightdlink · di-8003_firmwareEPSS 0.60%via NVD
CVE-2025-50663High· 7.5
5mo ago

A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of the name parameter in the /usb_paswd.asp endpoint.

A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of the name parameter in the /usb_paswd.asp endpoint.

▾ Twilightdlink · di-8003_firmwareEPSS 0.52%via NVD
CVE-2025-50662High· 7.5
5mo ago

A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of the name parameter in the /url_group.asp endpoint.

A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of the name parameter in the /url_group.asp endpoint.

▾ Twilightdlink · di-8003_firmwareEPSS 0.52%via NVD
CVE-2025-50661High· 7.5
5mo ago

A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of multiple parameters in the /url_rule.asp endpoint

A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of multiple parameters in the /url_rule.asp endpoint. An attacker can exploit this vulnerability by sending a crafted HTTP GET request with para…

▾ Twilightdlink · di-8003_firmwareEPSS 0.60%via NVD
CWE-121 vulnerabilities (CVEs) — page 9 · VulnSea