VulnSea

CWE-125

CVEs classified under CWE-125, newest first.

940 CVEsRSS

CVE-2026-23204High· 7.1
7mo ago

In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_u32: use skb_header_pointer_careful() skb_header_pointer() does not fully validate negative @offset values. Use skb_header_pointer_careful() instead. …

In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_u32: use skb_header_pointer_careful() skb_header_pointer() does not fully validate negative @offset values. Use skb_header_pointer_careful() instead. …

▾ Twilightlinux · linux_kernelEPSS 0.13%via NVD
CVE-2026-21348Medium· 5.5
7mo ago

Substance3D - Modeler versions 1.22.5 and earlier are affected by an out-of-bounds read vulnerability that could lead to memory exposure

Substance3D - Modeler versions 1.22.5 and earlier are affected by an out-of-bounds read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. E…

▾ Sunlitadobe · substance_3d_modelerEPSS 0.16%via NVD
CVE-2026-21355Medium· 5.5
7mo ago

DNG SDK versions 1.7.1 2410 and earlier are affected by an out-of-bounds read vulnerability that could lead to memory exposure

DNG SDK versions 1.7.1 2410 and earlier are affected by an out-of-bounds read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitatio…

▾ Sunlitadobe · dng_software_development_kitEPSS 0.16%via NVD
CVE-2026-21345High· 7.8
7mo ago

Substance3D - Stager versions 3.1.6 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure

Substance3D - Stager versions 3.1.6 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this …

▾ Twilightadobe · substance_3d_stagerEPSS 0.16%via NVD
CVE-2026-21344High· 7.8
7mo ago

Substance3D - Stager versions 3.1.6 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure

Substance3D - Stager versions 3.1.6 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this …

▾ Twilightadobe · substance_3d_stagerEPSS 0.17%via NVD
CVE-2026-21343High· 7.8
7mo ago

Substance3D - Stager versions 3.1.6 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure

Substance3D - Stager versions 3.1.6 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this …

▾ Twilightadobe · substance_3d_stagerEPSS 0.17%via NVD
CVE-2026-21340Medium· 5.5
7mo ago

Substance3D - Designer versions 15.1.0 and earlier are affected by an out-of-bounds read vulnerability that could lead to memory exposure

Substance3D - Designer versions 15.1.0 and earlier are affected by an out-of-bounds read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. …

▾ Sunlitadobe · substance_3d_designerEPSS 0.16%via NVD
CVE-2026-21339Medium· 5.5
7mo ago

Substance3D - Designer versions 15.1.0 and earlier are affected by an out-of-bounds read vulnerability that could lead to memory exposure

Substance3D - Designer versions 15.1.0 and earlier are affected by an out-of-bounds read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. …

▾ Sunlitadobe · substance_3d_designerEPSS 0.16%via NVD
CVE-2026-21337Medium· 5.5
7mo ago

Substance3D - Designer versions 15.1.0 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure

Substance3D - Designer versions 15.1.0 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to access sensitive information stored in memory. Ex…

▾ Sunlitadobe · substance_3d_designerEPSS 0.16%via NVD
CVE-2026-21332Medium· 5.5
7mo ago

InDesign Desktop versions 21.1, 20.5.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to memory exposure

InDesign Desktop versions 21.1, 20.5.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. …

▾ Sunlitadobe · indesignEPSS 0.16%via NVD
CVE-2026-21325High· 7.8
7mo ago

After Effects versions 25.6 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure

After Effects versions 25.6 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerab…

▾ Twilightadobe · after_effectsEPSS 0.22%via NVD
CVE-2026-21324High· 7.8
7mo ago

After Effects versions 25.6 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure

After Effects versions 25.6 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerab…

▾ Twilightadobe · after_effectsEPSS 0.22%via NVD
CVE-2026-21322High· 7.8
7mo ago

After Effects versions 25.6 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure

After Effects versions 25.6 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerab…

▾ Twilightadobe · after_effectsEPSS 0.22%via NVD
CVE-2026-21319Medium· 5.5
7mo ago

After Effects versions 25.6 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure

After Effects versions 25.6 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to access sensitive information stored in memory. Exploitation …

▾ Sunlitadobe · after_effectsEPSS 0.16%via NVD
CVE-2026-21317Medium· 5.5
7mo ago

Audition versions 25.3 and earlier are affected by an out-of-bounds read vulnerability that could lead to memory exposure

Audition versions 25.3 and earlier are affected by an out-of-bounds read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of …

▾ Sunlitadobe · auditionEPSS 0.16%via NVD
CVE-2026-21315Medium· 5.5
7mo ago

Audition versions 25.3 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure

Audition versions 25.3 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to access sensitive information stored in memory. Exploitation of th…

▾ Sunlitadobe · auditionEPSS 0.16%via NVD
CVE-2026-21314Medium· 5.5
7mo ago

Audition versions 25.3 and earlier are affected by an out-of-bounds read vulnerability that could lead to memory exposure

Audition versions 25.3 and earlier are affected by an out-of-bounds read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of …

▾ Sunlitadobe · auditionEPSS 0.16%via NVD
CVE-2026-21313Medium· 5.5
7mo ago

Audition versions 25.3 and earlier are affected by an out-of-bounds read vulnerability that could lead to memory exposure

Audition versions 25.3 and earlier are affected by an out-of-bounds read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of …

▾ Sunlitadobe · auditionEPSS 0.16%via NVD
CVE-2026-25646High· 8.1
7mo ago

LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files

LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API functio…

▾ Twilightlibpng · libpngEPSS 0.64%via NVD
CVE-2025-65396Medium· 6.1
8mo ago

A vulnerability in the boot process of Blurams Flare Camera version 24.1114.151.929 and earlier allows a physically proximate attacker to hijack the boot mechanism and gain a bootloader shell via the UART interface

A vulnerability in the boot process of Blurams Flare Camera version 24.1114.151.929 and earlier allows a physically proximate attacker to hijack the boot mechanism and gain a bootloader shell via the UART interface. This is achieved by i…

▾ Sunlitblurams · dome_flare_firmwareEPSS 0.21%via NVD
CVE-2026-22859Critical· 9.1
8mo ago

FreeRDP is a free implementation of the Remote Desktop Protocol

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.20.1, the URBDRC client does not perform bounds checking on server‑supplied MSUSB_INTERFACE_DESCRIPTOR values and uses them as indices in libusb_udev_complete_ms…

▾ Midnightfreerdp · freerdpEPSS 0.87%via NVD
CVE-2026-22858Critical· 9.1
8mo ago

FreeRDP is a free implementation of the Remote Desktop Protocol

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.20.1, global-buffer-overflow was observed in FreeRDP's Base64 decoding path. The root cause appears to be implementation-defined char signedness: on Arm/AArch64 …

▾ Midnightfreerdp · freerdpEPSS 0.69%via NVD
CVE-2026-22855Critical· 9.1
8mo ago

FreeRDP is a free implementation of the Remote Desktop Protocol

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.20.1, a heap out-of-bounds read occurs in the smartcard SetAttrib path when cbAttrLen does not match the actual NDR buffer length. This vulnerability is fixed in…

▾ Midnightfreerdp · freerdpEPSS 0.87%via NVD
CVE-2026-21303Medium· 5.5
8mo ago

Substance3D - Modeler versions 1.22.4 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure

Substance3D - Modeler versions 1.22.4 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. E…

▾ Sunlitadobe · substance_3d_modelerEPSS 0.25%via NVD
CVE-2026-21302Medium· 5.5
8mo ago

Substance3D - Modeler versions 1.22.4 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure

Substance3D - Modeler versions 1.22.4 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. E…

▾ Sunlitadobe · substance_3d_modelerEPSS 0.18%via NVD
CVE-2026-21308Medium· 5.5
8mo ago

Substance3D - Designer versions 15.0.3 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure

Substance3D - Designer versions 15.0.3 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. …

▾ Sunlitadobe · substance_3d_designerEPSS 0.18%via NVD
CVE-2026-21278Medium· 5.5
8mo ago

InDesign Desktop versions 21.0, 19.5.5 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure

InDesign Desktop versions 21.0, 19.5.5 and earlier are affected by an Out-of-bounds Read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to access sensitive information stored in memory. Ex…

▾ Sunlitadobe · indesignEPSS 0.22%via NVD
CVE-2026-20851Medium· 6.2
8mo ago

Out-of-bounds read in Capability Access Management Service (camsvc) allows an unauthorized attacker to disclose information locally.

Out-of-bounds read in Capability Access Management Service (camsvc) allows an unauthorized attacker to disclose information locally.

▾ Sunlitmicrosoft · windows_11_24h2EPSS 0.60%via NVD
CVE-2026-20835Medium· 5.5
8mo ago

Out-of-bounds read in Capability Access Management Service (camsvc) allows an authorized attacker to disclose information locally.

Out-of-bounds read in Capability Access Management Service (camsvc) allows an authorized attacker to disclose information locally.

▾ Sunlitmicrosoft · windows_11_24h2EPSS 0.56%via NVD
CVE-2026-20829Medium· 5.5
8mo ago

Out-of-bounds read in Windows TPM allows an authorized attacker to disclose information locally.

Out-of-bounds read in Windows TPM allows an authorized attacker to disclose information locally.

▾ Sunlitmicrosoft · windows_10_1809EPSS 0.56%via NVD
CWE-125 vulnerabilities (CVEs) — page 28 · VulnSea