VulnSea

CWE-787

CVEs classified under CWE-787, newest first.

807 CVEsRSS

CVE-2026-92010High· 8.8
1w ago

Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component

Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16…

▾ TwilightMozilla · FirefoxEPSS 0.28%via NVD
CVE-2026-92009High· 8.8
1w ago

Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component

Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16…

▾ TwilightMozilla · FirefoxEPSS 0.28%via NVD
CVE-2026-92014High· 8.8
1w ago

Privilege escalation due to incorrect boundary conditions in the Graphics component

Privilege escalation due to incorrect boundary conditions in the Graphics component. This vulnerability was fixed in Firefox ESR 115.41, Firefox ESR 140.16, and Thunderbird 140.16.

▾ TwilightMozilla · FirefoxEPSS 0.26%via NVD
CVE-2026-92020High· 8.8
1w ago

Privilege escalation due to incorrect boundary conditions in the Graphics: WebRender component

Privilege escalation due to incorrect boundary conditions in the Graphics: WebRender component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16, …

▾ TwilightMozilla · FirefoxEPSS 0.28%via NVD
CVE-2026-92036Critical· 9.8⚖ disputed
1w ago

Incorrect boundary conditions in the Networking: HTTP component

Incorrect boundary conditions in the Networking: HTTP component. This vulnerability was fixed in Firefox 156 and Thunderbird 156.

▾ MidnightMozilla · FirefoxEPSS 0.59%via NVD
CVE-2026-92037Critical· 9.8⚖ disputed
1w ago

Incorrect boundary conditions in the DOM: Animation component

Incorrect boundary conditions in the DOM: Animation component. This vulnerability was fixed in Firefox 156 and Thunderbird 156.

▾ MidnightMozilla · FirefoxEPSS 0.59%via NVD
CVE-2026-92043High· 8.8⚖ disputed
1w ago

Privilege escalation due to incorrect boundary conditions in the Audio/Video component

Privilege escalation due to incorrect boundary conditions in the Audio/Video component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

▾ TwilightMozilla · FirefoxEPSS 0.48%via NVD
CVE-2026-92059Critical· 9.3⚖ disputed
1w ago

Incorrect boundary conditions in the DOM: Editor component

Incorrect boundary conditions in the DOM: Editor component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

▾ MidnightMozilla · FirefoxEPSS 0.18%via NVD
CVE-2026-92065High· 8.8⚖ disputed
1w ago

Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component

Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

▾ TwilightMozilla · FirefoxEPSS 0.16%via NVD
CVE-2026-14986Medium· 6.8
1w ago

The ITE it51xxx I2C driver, when operating as an I2C target (slave) in buffer mode (CONFIG_I2C_TARGET + CONFIG_I2C_TARGET_BUFFER_MODE), copies host-supplied write data into the fixed-size data->target_in_buffer inside its target FIFO int…

The ITE it51xxx I2C driver, when operating as an I2C target (slave) in buffer mode (CONFIG_I2C_TARGET + CONFIG_I2C_TARGET_BUFFER_MODE), copies host-supplied write data into the fixed-size data->target_in_buffer inside its target FIFO int…

▾ Sunlitzephyrproject · zephyrEPSS 0.18%via NVD
CVE-2026-90831Medium· 5.3
1w ago

A vulnerability was detected in GNU Binutils 2.47

A vulnerability was detected in GNU Binutils 2.47. The affected element is the function _bfd_elf_strtab_delref of the file bfd/elf-strtab.c of the component ELF String Table. The manipulation results in memory corruption. The attack requ…

▾ Sunlitgnu · binutilsEPSS 0.17%via NVD
CVE-2026-65344High· 7.8
1w ago

An out-of-bounds write issue was addressed with improved bounds checking

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27. Processing…

▾ Twilightapple · ipadosEPSS 0.17%via NVD
CVE-2026-84511High· 7.8
1w ago

An out-of-bounds write issue was addressed with improved bounds checking

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. Processing a maliciously…

▾ Twilightapple · ipadosEPSS 0.17%via NVD
CVE-2026-84546High· 8.4
1w ago

An out-of-bounds write issue was addressed with improved bounds checking

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27…

▾ Twilightapple · ipadosEPSS 0.19%via NVD
CVE-2026-86869Medium· 6.5
1w ago

An out-of-bounds write issue was addressed with improved bounds checking

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, macOS Golden Gate 27. Processing a maliciously crafted image may lead to unexpected app termination.

▾ Sunlitapple · ipadosEPSS 0.34%via NVD
CVE-2026-84531Medium· 6.2
1w ago

An out-of-bounds write issue was addressed with improved bounds checking

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27. Processing maliciously crafted NTLM input may lead to unexpected app termination.

▾ Sunlitapple · ipadosEPSS 0.15%via NVD
CVE-2026-65374High· 8.8PoC
1w ago

A memory corruption issue was addressed with improved validation

A memory corruption issue was addressed with improved validation. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. Connecting to a malicious WebDAV server may result in code execution.

▾ Midnightapple · macosEPSS 0.53%via NVD
CVE-2026-84567Medium· 5.5
1w ago

The issue was addressed with improved memory handling

The issue was addressed with improved memory handling. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An app may be able to cause unexpected system termination.

▾ Sunlitapple · macosEPSS 0.16%via NVD
CVE-2026-84588Medium· 6.5
1w ago

A memory corruption issue was addressed by removing the vulnerable code

A memory corruption issue was addressed by removing the vulnerable code. This issue is fixed in macOS Golden Gate 27. Mounting a maliciously crafted disk image may cause unexpected system termination or corrupt kernel memory.

▾ Sunlitapple · macosEPSS 0.33%via NVD
CVE-2026-84526Medium· 4.3
1w ago

An out-of-bounds write issue was addressed with improved bounds checking

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27…

▾ Sunlitapple · ipadosEPSS 0.43%via NVD
CVE-2026-84619Medium· 6.1
1w ago

An out-of-bounds write issue was addressed with improved bounds checking

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An app may be able to cause unexpected system termination or write kernel memory.

▾ Sunlitapple · macosEPSS 0.16%via NVD
CVE-2026-64752High· 7.3
1w ago

A memory corruption issue was addressed by removing the vulnerable code

A memory corruption issue was addressed by removing the vulnerable code. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, visionOS 27. Processing a maliciously crafted image may lead to arbitrary code execution.

▾ Twilightapple · ipadosEPSS 0.17%via NVD
CVE-2026-43790Critical· 9.1
1w ago

The issue was addressed with improved memory handling

The issue was addressed with improved memory handling. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. A remote attacker may be able to cause unexpected system termination or corrupt kernel memory.

▾ Midnightapple · macosEPSS 0.72%via NVD
CVE-2026-43677Medium· 6.5
1w ago

An out-of-bounds write issue was addressed by removing the vulnerable code

An out-of-bounds write issue was addressed by removing the vulnerable code. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. Connecting to a malicious WebDAV server may lead to unexpected app termination.

▾ Sunlitapple · macosEPSS 0.40%via NVD
CVE-2026-86901High· 7.1
1w ago

An out-of-bounds write issue was addressed with improved bounds checking

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Golden Gate 27. Mounting a maliciously crafted exFAT volume may cause unexpected system termination or kernel memory disclosure.

▾ Twilightapple · macosEPSS 0.17%via NVD
CVE-2026-84505High· 7.8
1w ago

An out-of-bounds write issue was addressed with improved bounds checking

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An app may be able to gain root privileges.

▾ Twilightapple · macosEPSS 0.17%via NVD
CVE-2026-84552Medium· 5.5
1w ago

The issue was addressed with improved memory handling

The issue was addressed with improved memory handling. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An app may be able to cause unexpected system termi…

▾ Sunlitapple · ipadosEPSS 0.16%via NVD
CVE-2026-65414Critical· 9.8
1w ago

An out-of-bounds write issue was addressed with improved bounds checking

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27…

▾ Midnightapple · ipadosEPSS 1.1%via NVD
CVE-2026-43815High· 8.8
1w ago

A buffer overflow was addressed with improved bounds checking

A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. Connecting to a malicious afpfs server may lead to kernel memory corruption.

▾ Twilightapple · macosEPSS 0.48%via NVD
CVE-2026-28966Medium· 4.3
1w ago

An out-of-bounds write issue was addressed with improved bounds checking

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27. Processing…

▾ Sunlitapple · ipadosEPSS 0.42%via NVD
CWE-787 vulnerabilities (CVEs) — page 5 · VulnSea