VulnSea

CWE-122

CVEs classified under CWE-122, newest first.

870 CVEsRSS

CVE-2025-48379High· 7.1
1y ago

Pillow is a Python imaging library

Pillow is a Python imaging library. In versions 11.2.0 to before 11.3.0, there is a heap buffer overflow when writing a sufficiently large (>64k encoded with default settings) image in the DDS format due to writing into a buffer without …

▾ Twilightpython · pillowEPSS 0.30%via NVD
CVE-2025-5915Medium· 6.6PoC
1y ago

A vulnerability has been identified in the libarchive library

A vulnerability has been identified in the libarchive library. This flaw can lead to a heap buffer over-read due to the size of a filter block potentially exceeding the Lempel-Ziv-Storer-Schieber (LZSS) window. This means the library may…

▾ Twilightlibarchive · libarchiveEPSS 0.19%via NVD
CVE-2025-48797High· 7.3
1y ago

A flaw was found in GIMP when processing certain TGA image files

A flaw was found in GIMP when processing certain TGA image files. If a user opens one of these image files that has been specially crafted by an attacker, GIMP can be tricked into making serious memory errors, potentially leading to cras…

▾ TwilightEPSS 0.26%via NVD
CVE-2025-1252High· 7.1
1y ago

Heap-based Buffer Overflow vulnerability in RTI Connext Professional (Core Libraries) allows Overflow Variables and Tags

Heap-based Buffer Overflow vulnerability in RTI Connext Professional (Core Libraries) allows Overflow Variables and Tags. This issue affects Connext Professional: from 7.4.0 before 7.5.0, from 7.0.0 before 7.3.0.7, from 6.1.0 before 6.1.…

▾ Twilightrti · connext_professionalEPSS 0.15%via NVD
CVE-2025-31177Medium· 5.5
1y ago

gnuplot is affected by a heap buffer overflow at function utf8_copy_one.

gnuplot is affected by a heap buffer overflow at function utf8_copy_one.

▾ Sunlitgnuplot · gnuplotEPSS 0.20%via NVD
CVE-2025-3512None
1y ago

There is a Heap-based Buffer Overflow vulnerability in QTextMarkdownImporter

There is a Heap-based Buffer Overflow vulnerability in QTextMarkdownImporter. This requires an incorrectly formatted markdown file to be passed to QTextMarkdownImporter to trigger the overflow. This issue affects Qt from 6.8.0 to 6.8.4.…

▾ SunlitEPSS 0.23%via NVD
CVE-2025-24993High· 7.8CISA KEV0day
1y ago

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

▾ Abyssalmicrosoft · windows_10_1507EPSS 2.2%via NVD
CVE-2024-12084Critical· 9.8PoC
1y ago

A heap-based buffer overflow flaw was found in the rsync daemon

A heap-based buffer overflow flaw was found in the rsync daemon. This issue is due to improper handling of attacker-controlled checksum lengths (s2length) in the code. When MAX_DIGEST_LEN exceeds the fixed SUM_LENGTH (16 bytes), an attac…

▾ Abyssalsamba · rsyncEPSS 72%via NVD
CVE-2024-56732High· 8.8
1y ago

HarfBuzz is a text shaping engine

HarfBuzz is a text shaping engine. Starting with 8.5.0 through 10.0.1, there is a heap-based buffer overflow in the hb_cairo_glyphs_from_buffer function.

▾ Twilightharfbuzz_project · harfbuzzEPSS 0.66%via NVD
CVE-2024-52059High· 7.8
1y ago

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow'), Heap-based Buffer Overflow, Integer Overflow or Wraparound vulnerability in RTI Connext Professional (Security Plugins) allows Overflow Variables and Tags

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow'), Heap-based Buffer Overflow, Integer Overflow or Wraparound vulnerability in RTI Connext Professional (Security Plugins) allows Overflow Variables and Tags. This issu…

▾ Twilightrti · connext_professionalEPSS 0.17%via NVD
CVE-2024-8443Low· 2.9
2y ago

A heap-based buffer overflow vulnerability was found in the libopensc OpenPGP driver

A heap-based buffer overflow vulnerability was found in the libopensc OpenPGP driver. A crafted USB device or smart card with malicious responses to the APDUs during the card enrollment process using the `pkcs15-init` tool may lead to ou…

▾ Sunlitopensc_project · openscEPSS 0.32%via NVD
CVE-2024-30095High· 7.8
2y ago

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

▾ Twilightmicrosoft · windows_10_1507EPSS 1.0%via NVD
CVE-2024-30094High· 7.8
2y ago

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

▾ Twilightmicrosoft · windows_10_1507EPSS 0.91%via NVD
CVE-2024-30091High· 7.8
2y ago

Win32k Elevation of Privilege Vulnerability

Win32k Elevation of Privilege Vulnerability

▾ Twilightmicrosoft · windows_10_1507EPSS 4.3%via NVD
CVE-2024-30085High· 7.8PoC
2y ago

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

▾ Midnightmicrosoft · windows_10_1809EPSS 14%via NVD
CVE-2024-30077High· 8.0
2y ago

Windows OLE Remote Code Execution Vulnerability

Windows OLE Remote Code Execution Vulnerability

▾ Twilightmicrosoft · windows_10_1507EPSS 1.8%via NVD
CVE-2024-30075High· 8.0
2y ago

Windows Link Layer Topology Discovery Protocol Remote Code Execution Vulnerability

Windows Link Layer Topology Discovery Protocol Remote Code Execution Vulnerability

▾ Twilightmicrosoft · windows_server_2008EPSS 0.88%via NVD
CVE-2024-30074High· 8.0
2y ago

Windows Link Layer Topology Discovery Protocol Remote Code Execution Vulnerability

Windows Link Layer Topology Discovery Protocol Remote Code Execution Vulnerability

▾ Twilightmicrosoft · windows_server_2008EPSS 1.2%via NVD
CVE-2024-30066Medium· 5.5
2y ago

Winlogon Elevation of Privilege Vulnerability

Winlogon Elevation of Privilege Vulnerability

▾ Sunlitmicrosoft · windows_10_1507EPSS 0.63%via NVD
CVE-2023-4692High· 7.5
2y ago

An out-of-bounds write flaw was found in grub2's NTFS filesystem driver

An out-of-bounds write flaw was found in grub2's NTFS filesystem driver. This issue may allow an attacker to present a specially crafted NTFS filesystem image, leading to grub's heap metadata corruption. In some circumstances, the attack…

▾ Twilightgnu · grub2EPSS 0.54%via NVD
CVE-2023-4781High· 7.8
3y ago

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1873.

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1873.

▾ Twilightneovim · neovimEPSS 0.61%via NVD
CVE-2023-4751High· 7.8
3y ago

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1331.

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1331.

▾ Twilightneovim · neovimEPSS 0.56%via NVD
CVE-2023-4738High· 7.8
3y ago

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1848.

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1848.

▾ Twilightneovim · neovimEPSS 0.60%via NVD
CVE-2023-27997Critical· 9.8CISA KEV0dayPoC
3y ago

A heap-based buffer overflow vulnerability [CWE-122] in FortiOS version 7.2.4 and below, version 7.0.11 and below, version 6.4.12 and below, version 6.0.16 and below and FortiProxy version 7.2.3 and below, version 7.0.9 and below, versio…

A heap-based buffer overflow vulnerability [CWE-122] in FortiOS version 7.2.4 and below, version 7.0.11 and below, version 6.4.12 and below, version 6.0.16 and below and FortiProxy version 7.2.3 and below, version 7.0.9 and below, versio…

▾ Hadalfortinet · fortiproxyEPSS 86%via NVD
CVE-2023-1170Medium· 6.6
3y ago

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1376.

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1376.

▾ Sunlitneovim · neovimEPSS 0.50%via NVD
CVE-2023-23376High· 7.8CISA KEV0day
3y ago

Windows Common Log File System Driver Elevation of Privilege Vulnerability

Windows Common Log File System Driver Elevation of Privilege Vulnerability

▾ Abyssalmicrosoft · windows_10_1507EPSS 11%via NVD
CVE-2023-0433High· 7.8
3y ago

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1225.

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1225.

▾ Twilightneovim · neovimEPSS 0.52%via NVD
CVE-2023-0288High· 7.8
3y ago

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1189.

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1189.

▾ Twilightneovim · neovimEPSS 0.48%via NVD
CVE-2022-4141High· 7.8
3y ago

Heap based buffer overflow in vim/vim 9.0.0946 and below by allowing an attacker to CTRL-W gf in the expression used in the RHS of the substitute command.

Heap based buffer overflow in vim/vim 9.0.0946 and below by allowing an attacker to CTRL-W gf in the expression used in the RHS of the substitute command.

▾ Twilightneovim · neovimEPSS 0.45%via NVD
CVE-2020-6851High· 7.5
6y ago

OpenJPEG through 2.3.1 has a heap-based buffer overflow in opj_t1_clbl_decode_processor in openjp2/t1.c because of lack of opj_j2k_update_image_dimensions validation.

OpenJPEG through 2.3.1 has a heap-based buffer overflow in opj_t1_clbl_decode_processor in openjp2/t1.c because of lack of opj_j2k_update_image_dimensions validation.

▾ Twilightuclouvain · openjpegEPSS 5.2%via NVD
CWE-122 vulnerabilities (CVEs) — page 29 · VulnSea