← Back
CWE-787

14,833 CVEs • Abstraction: Base • Likelihood of Exploit: High

Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.

JSON object

Loading...

CVEs (14,833)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Cesanta
1Mjs
Jun 17, 2026
Jan 27, 2022
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
Cesanta MJS v2.20.0 was discovered to contain a heap buffer overflow via to_json_or_debug at mjs/src/mjs_json.c.
1Cesanta
1Mjs
Jun 17, 2026
Jan 27, 2022
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
Cesanta MJS v2.20.0 was discovered to contain a heap buffer overflow via /usr/lib/x86_64-linux-gnu/libasan.so.4+0xaff53.
1Cesanta
1Mjs
Jun 17, 2026
Jan 27, 2022
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
Cesanta MJS v2.20.0 was discovered to contain a heap buffer overflow via mjs_jprintf at src/mjs_util.c.
1Cesanta
1Mjs
Jun 17, 2026
Jan 27, 2022
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
Cesanta MJS v2.20.0 was discovered to contain a heap buffer overflow via mjs_array_length at src/mjs_array.c.
1Cesanta
1Mjs
Jun 17, 2026
Jan 27, 2022
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
Cesanta MJS v2.20.0 was discovered to contain a heap buffer overflow via mjs_disown at src/mjs_core.c.
3Apple
DebianVim
3Debian Linux
MacosVim
Jun 17, 2026
Jan 26, 2022
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
3Apple
DebianVim
3Debian Linux
MacosVim
Jun 17, 2026
Jan 26, 2022
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
1Dell
2Integrated Dell Remote Access Controller 8 Firmware
Integrated Dell Remote Access Controller 9 Firmware
Jun 17, 2026
Jan 25, 2022
N/A· v4
7.2 HIGH· v3
9.0 HIGH· v2
iDRAC9 versions prior to 5.00.20.00 and iDRAC8 versions prior to 2.82.82.82 contain a stack-based buffer overflow vulnerability. An authenticated remote attacker with high privileges could potentially exploit this vulner...Show more
iDRAC9 versions prior to 5.00.20.00 and iDRAC8 versions prior to 2.82.82.82 contain a stack-based buffer overflow vulnerability. An authenticated remote attacker with high privileges could potentially exploit this vulnerability to control process execution and gain access to the iDRAC operating system.Show less
1Jsish
1Jsish
Jun 17, 2026
Jan 25, 2022
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
Jsish v3.5.0 was discovered to contain a heap buffer overflow via BooleanConstructor at src/jsiBool.c.
1Jsish
1Jsish
Jun 17, 2026
Jan 25, 2022
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
Jsish v3.5.0 was discovered to contain a heap buffer overflow via NumberConstructor at src/jsiNumber.c.
1Jsish
1Jsish
Jun 17, 2026
Jan 25, 2022
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
Jsish v3.5.0 was discovered to contain a heap buffer overflow via jsiValueObjDelete in src/jsiEval.c. This vulnerability can lead to a Denial of Service (DoS).
1Jsish
1Jsish
Jun 17, 2026
Jan 25, 2022
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
Jsish v3.5.0 was discovered to contain a heap buffer overflow via jsiClearStack in src/jsiEval.c. This vulnerability can lead to a Denial of Service (DoS).
1Jsish
1Jsish
Jun 17, 2026
Jan 25, 2022
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
Jsish v3.5.0 was discovered to contain a heap buffer overflow via RegExp_constructor in src/jsiRegexp.c. This vulnerability can lead to a Denial of Service (DoS).
1Jsish
1Jsish
Jun 17, 2026
Jan 25, 2022
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
Jsish v3.5.0 was discovered to contain a heap buffer overflow via jsi_ArraySliceCmd in src/jsiArray.c. This vulnerability can lead to a Denial of Service (DoS).
1Jsish
1Jsish
Jun 17, 2026
Jan 25, 2022
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
Jsish v3.5.0 was discovered to contain a heap buffer overflow via jsiEvalCodeSub in src/jsiEval.c. This vulnerability can lead to a Denial of Service (DoS).
1Epub2txt Project
1Epub2txt
Jun 17, 2026
Jan 23, 2022
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
xhtml_translate_entity in xhtml.c in epub2txt (aka epub2txt2) through 2.02 allows a stack-based buffer overflow via a crafted EPUB document.
1Gpac
1Gpac
Jun 17, 2026
Jan 21, 2022
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
GPAC v1.1.0 was discovered to contain a stack overflow via the function gf_node_get_name () at scenegraph/base_scenegraph.c. This vulnerability can lead to a program crash, causing a Denial of Service (DoS).
3Apple
DebianVim
3Debian Linux
MacosVim
Jun 17, 2026
Jan 21, 2022
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Heap-based Buffer Overflow in vim/vim prior to 8.2.
1Asus
13Pa90 Firmware
Pb50 FirmwarePb60 Firmware+10 more
Jun 17, 2026
Jan 21, 2022
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
ASUS VivoMini/Mini PC device has an improper input validation vulnerability. A local attacker with system privilege can use system management interrupt (SMI) to modify memory, resulting in arbitrary code execution for co...Show more
ASUS VivoMini/Mini PC device has an improper input validation vulnerability. A local attacker with system privilege can use system management interrupt (SMI) to modify memory, resulting in arbitrary code execution for controlling the system or disrupting service.Show less
1Jerryscript
1Jerryscript
Jun 17, 2026
Jan 21, 2022
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
Jerryscript 3.0.0 was discovered to contain a heap-buffer-overflow via ecma_utf8_string_to_number_by_radix in /jerry-core/ecma/base/ecma-helpers-conversion.c.