VulnSea

CWE-124

CVEs classified under CWE-124, newest first.

4 CVEsRSS

CVE-2026-91948High· 7.5PoC
1w ago

FreeRDP versions before 3.31.0 contain an out-of-bounds write vulnerability in server-side static virtual channel handling when CHANNEL_OPTION_SHOW_PROTOCOL is enabled

FreeRDP versions before 3.31.0 contain an out-of-bounds write vulnerability in server-side static virtual channel handling when CHANNEL_OPTION_SHOW_PROTOCOL is enabled. Authenticated clients can queue oversized channel messages that caus…

MidnightFreeRDP · FreeRDPEPSS 0.65%via NVD
CVE-2026-73075None
1mo ago

Vim is an open source, command line text editor

Vim is an open source, command line text editor. From 9.2.0469 until 9.2.0843, popup_mark_opacity_zindex() in src/popupwin.c can use a negative w_winrow for a text-property-anchored popup with clipwindow and opacity, indexing before the …

SunlitEPSS 0.12%via NVD
CVE-2026-0966High· 8.2
6mo ago

A flaw was found in libssh

A flaw was found in libssh. The API function `ssh_get_hexa()` is vulnerable to a denial of service when processing zero-length input. This can be exploited remotely by an attacker during GSSAPI (Generic Security Service Application Progr…

Twilightlibssh · libsshEPSS 0.58%via NVD
CVE-2025-4373Medium· 4.8
1y ago

A flaw was found in GLib, which is vulnerable to an integer overflow in the g_string_insert_unichar() function

A flaw was found in GLib, which is vulnerable to an integer overflow in the g_string_insert_unichar() function. When the position at which to insert the character is large, the position will overflow, leading to a buffer underwrite.

SunlitRed Hat · glibEPSS 0.53%via NVD
CWE-124 vulnerabilities (CVEs) · VulnSea