VulnSea

CWE-126

CVEs classified under CWE-126, newest first.

74 CVEsRSS

CVE-2026-24081High· 7.4
4d ago

Transient DOS when processing a channel map with insufficient used channels and adaptive frequency hopping is fully enabled.

Transient DOS when processing a channel map with insufficient used channels and adaptive frequency hopping is fully enabled.

TwilightQualcomm, Inc. · SnapdragonEPSS 0.16%via NVD
CVE-2026-24075High· 7.8
4d ago

Memory Corruption when multiple threads issue concurrent IOCTL requests to the device control handler due to improper synchronization and race conditions.

Memory Corruption when multiple threads issue concurrent IOCTL requests to the device control handler due to improper synchronization and race conditions.

TwilightQualcomm, Inc. · SnapdragonEPSS 0.11%via NVD
CVE-2026-25275High· 7.5
4d ago

Transient DOS when processing authentication frames with invalid FILS information element header lengths.

Transient DOS when processing authentication frames with invalid FILS information element header lengths.

TwilightQualcomm, Inc. · SnapdragonEPSS 0.30%via NVD
CVE-2026-25284High· 7.3
4d ago

Information Disclosure when a pointer is reused after being deallocated.

Information Disclosure when a pointer is reused after being deallocated.

TwilightQualcomm, Inc. · SnapdragonEPSS 0.11%via NVD
CVE-2026-25294High· 7.4
4d ago

Transient DOS while parsing frame during channel usage.

Transient DOS while parsing frame during channel usage.

TwilightQualcomm, Inc. · SnapdragonEPSS 0.16%via NVD
CVE-2026-90610Low· 3.3PoC
1w ago

A vulnerability was found in GPAC up to f1219cde

A vulnerability was found in GPAC up to f1219cde. This affects the function gf_svg_attributes_copy of the file scenegraph/svg_attributes.c of the component MP4Box. Performing a manipulation results in buffer over-read. The attack is only…

TwilightEPSS 0.12%via NVD
CVE-2026-76653Medium· 5.3
1w ago

A missing authentication vulnerability in the VPN configuration management has been identified in Archer MR600 (v2, v3 & v5) and TL-MR6400 v8 due to improper access control; a remote unauthenticated attacker may be able to access and mod…

A missing authentication vulnerability in the VPN configuration management has been identified in Archer MR600 (v2, v3 & v5) and TL-MR6400 v8 due to improper access control; a remote unauthenticated attacker may be able to access and mod…

SunlitTP-Link Systems Inc. · TL-MR6400 v8EPSS 0.30%via NVD
CVE-2026-83951Medium· 5.5
1w ago

Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

Sunlitmicrosoft · 365_appsEPSS 0.40%via NVD
CVE-2026-83949Medium· 5.5
1w ago

Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

Sunlitmicrosoft · 365_appsEPSS 0.40%via NVD
CVE-2026-81399Medium· 5.5
1w ago

Buffer over-read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

Buffer over-read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

Sunlitmicrosoft · 365_appsEPSS 0.38%via NVD
CVE-2026-78516Medium· 4.3
1w ago

Buffer over-read in Windows Storage allows an unauthorized attacker to disclose information with a physical attack.

Buffer over-read in Windows Storage allows an unauthorized attacker to disclose information with a physical attack.

Sunlitmicrosoft · windows_10_1607EPSS 0.50%via NVD
CVE-2026-73029Medium· 6.5
1w ago

Buffer over-read in SQL Server allows an authorized attacker to disclose information over a network.

Buffer over-read in SQL Server allows an authorized attacker to disclose information over a network.

Sunlitmicrosoft · sql_server_2019EPSS 0.75%via NVD
CVE-2026-72974Medium· 6.5
1w ago

Buffer over-read in Microsoft Office Excel allows an unauthorized attacker to disclose information over a network.

Buffer over-read in Microsoft Office Excel allows an unauthorized attacker to disclose information over a network.

Sunlitmicrosoft · 365_appsEPSS 0.92%via NVD
CVE-2026-72932High· 7.5
1w ago

Buffer over-read in Windows Message Queuing Queue Manager allows an unauthorized attacker to disclose information over a network.

Buffer over-read in Windows Message Queuing Queue Manager allows an unauthorized attacker to disclose information over a network.

TwilightMicrosoft · Windows 10 Version 1607EPSS 1.0%via NVD
CVE-2026-69794Medium· 5.5
1w ago

Buffer over-read in Windows Encrypting File System (EFS) allows an authorized attacker to disclose information locally.

Buffer over-read in Windows Encrypting File System (EFS) allows an authorized attacker to disclose information locally.

SunlitMicrosoft · Windows 10 Version 1607EPSS 0.40%via NVD
CVE-2026-69719Medium· 6.5
1w ago

Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information over a network.

Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information over a network.

Sunlitmicrosoft · 365_appsEPSS 0.87%via NVD
CVE-2026-69626Medium· 6.5
1w ago

Buffer over-read in Microsoft Office allows an unauthorized attacker to disclose information over a network.

Buffer over-read in Microsoft Office allows an unauthorized attacker to disclose information over a network.

Sunlitmicrosoft · 365_appsEPSS 0.87%via NVD
CVE-2026-69610High· 7.0
1w ago

Buffer over-read in Windows Win32K allows an authorized attacker to elevate privileges locally.

Buffer over-read in Windows Win32K allows an authorized attacker to elevate privileges locally.

Twilightmicrosoft · windows_10_1607EPSS 0.25%via NVD
CVE-2026-69582High· 7.8
1w ago

Buffer over-read in Windows Volume Manager Extension Driver allows an authorized attacker to elevate privileges locally.

Buffer over-read in Windows Volume Manager Extension Driver allows an authorized attacker to elevate privileges locally.

TwilightMicrosoft · Windows 10 Version 1607EPSS 0.32%via NVD
CVE-2026-69474Medium· 4.8
1w ago

Use after free in Windows Overlay Filter allows an authorized attacker to disclose information over a network.

Use after free in Windows Overlay Filter allows an authorized attacker to disclose information over a network.

Sunlitmicrosoft · windows_10_1607EPSS 0.65%via NVD
CVE-2026-69416Medium· 5.7
1w ago

Buffer over-read in Windows DHCP Server allows an authorized attacker to deny service over an adjacent network.

Buffer over-read in Windows DHCP Server allows an authorized attacker to deny service over an adjacent network.

Sunlitmicrosoft · windows_10_1607EPSS 0.56%via NVD
CVE-2026-69316Medium· 4.7
1w ago

Buffer over-read in Windows Overlay Filter allows an authorized attacker to disclose information locally.

Buffer over-read in Windows Overlay Filter allows an authorized attacker to disclose information locally.

Sunlitmicrosoft · windows_10_1607EPSS 0.30%via NVD
CVE-2026-68875High· 7.8
1w ago

Buffer over-read in Windows NTFS allows an authorized attacker to execute code locally.

Buffer over-read in Windows NTFS allows an authorized attacker to execute code locally.

Twilightmicrosoft · windows_10_1607EPSS 0.24%via NVD
CVE-2026-68851Medium· 5.5
1w ago

Buffer over-read in Windows NTFS allows an authorized attacker to disclose information locally.

Buffer over-read in Windows NTFS allows an authorized attacker to disclose information locally.

Sunlitmicrosoft · windows_10_1607EPSS 0.30%via NVD
CVE-2026-67393Medium· 6.5
1w ago

Buffer over-read in SQL Server allows an authorized attacker to disclose information over a network.

Buffer over-read in SQL Server allows an authorized attacker to disclose information over a network.

Sunlitmicrosoft · sql_server_2017EPSS 0.74%via NVD
CVE-2026-67390Medium· 6.5
1w ago

Buffer over-read in SQL Server allows an authorized attacker to disclose information over a network.

Buffer over-read in SQL Server allows an authorized attacker to disclose information over a network.

Sunlitmicrosoft · sql_server_2017EPSS 0.95%via NVD
CVE-2026-18238Medium· 5.0
2w ago

The rpcap client code that processes a RPCAP_MSG_PACKET message received from the server incorrectly validates its headers

The rpcap client code that processes a RPCAP_MSG_PACKET message received from the server incorrectly validates its headers. A malicious server can send a crafted message and cause the client to treat up to 20 bytes of the client process…

SunlitThe Tcpdump Group · libpcapEPSS 0.18%via NVD
CVE-2026-70652None
1mo ago

libvips is a fast image processing library with low memory needs

libvips is a fast image processing library with low memory needs. Prior to version 8.18.3, libvips built with libultrahdr support can incorrectly size an output buffer in libvips/foreign/uhdrsave.c within vips_foreign_save_uhdr_set_raw_h…

SunlitEPSS 0.11%via NVD
CVE-2026-53587High· 7.5PoC
1mo ago

libgit2 is a portable C implementation of the Git core methods provided as a linkable library with a solid API, allowing to build Git functionality into your application

libgit2 is a portable C implementation of the Git core methods provided as a linkable library with a solid API, allowing to build Git functionality into your application. Prior to 1.8.6 and 1.9.5, libgit2 performs a fixed-size strncmp in…

Midnightlibgit2 · libgit2EPSS 0.47%via NVD
CVE-2026-76885Low· 3.1
1mo ago

Buffer Over-read in Wireshark

Tektronix K12xx file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

SunlitWireshark Foundation · WiresharkEPSS 0.19%via CVEORG
CWE-126 vulnerabilities (CVEs) · VulnSea