Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-119 (内存缓冲区边界内操作的限制不恰当) — Vulnerability Class 1063

1063 vulnerabilities classified as CWE-119 (内存缓冲区边界内操作的限制不恰当). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2026-25585 iccDEV vulnerable to OOB in CIccXform3DLut::Apply() — iccDEV 7.8 High2026-02-04
CVE-2026-25584 iccDEV vulnerable to Stack-based Buffer Overflow in CIccTagFloatNum::GetValues() — iccDEV 7.8 High2026-02-04
CVE-2026-25583 iccDEV vulnerable to Heap Buffer Overflow in CIccFileIO::Read8() — iccDEV 7.8 High2026-02-04
CVE-2026-24798 An Uninitialized stack variable vulnerability in GaijinEntertainment/DagorEngine — DagorEngine 8.4AIHighAI2026-01-27
CVE-2026-24794 Chunk Unloading Security Vulnerability in CardboardPowered/cardboard — cardboard 9.8AICriticalAI2026-01-27
CVE-2026-1465 A heap-based buffer over-read or buffer overflow in tildearrow/furnace — anyRTC-RTMP-OpenSource 9.8AICriticalAI2026-01-27
CVE-2026-1260 Invalid Memory Access in Sentencepiece, — Sentencepiece 6.2 -2026-01-22
CVE-2025-58409 GPU DDK - Disguised freelist buffers passed to RGXCreateHWRTDataSet can cause arbitrary physical memory writes corrupting memory — Graphics DDK 7.8AIHighAI2026-01-13
CVE-2025-15413 wasm3 m3_exec.h op_CallIndirect memory corruption — wasm3 5.3 Medium2026-01-01
CVE-2025-15411 WebAssembly wabt wasm-decompile InsertNode memory corruption — wabt 5.3 Medium2026-01-01
CVE-2025-12771 IBM Concert Software Improper Restriction of Operations within the Bounds of a Memory Buffer. — Concert 7.8 High2025-12-26
CVE-2025-14407 Soda PDF Desktop PDF File Parsing Memory Corruption Information Disclosure Vulnerability — Desktop 5.5AIMediumAI2025-12-23
CVE-2025-14419 pdfforge PDF Architect PDF File Parsing Memory Corruption Remote Code Execution Vulnerability — PDF Architect 7.8AIHighAI2025-12-23
CVE-2024-9684 FreyrSCADA Embedded Solution IEC 60870-5-104 Protocol 缓冲区错误漏洞 — IEC-60870-5-104 7.5 High2025-12-23
CVE-2025-68615 Net-SNMP snmptrapd crash — net-snmp 9.8 Critical2025-12-22
CVE-2025-53618 Grassroot DICOM 缓冲区错误漏洞 — Grassroot DICOM 7.4 High2025-12-16
CVE-2025-53619 Grassroot DICOM 缓冲区错误漏洞 — Grassroot DICOM 7.4 High2025-12-16
CVE-2025-52582 Grassroot DICOM 安全漏洞 — Grassroot DICOM 7.4 High2025-12-16
CVE-2025-48429 Grassroot DICOM 安全漏洞 — Grassroot DICOM 7.4 High2025-12-16
CVE-2025-14607 OFFIS DCMTK dcmdata dcbytstr.cc makeDicomByteString memory corruption — DCMTK 6.3 Medium2025-12-13
CVE-2025-14572 UTT 进取 512W formWebAuthGlobalConfig memory corruption — 进取 512W 8.8 High2025-12-12
CVE-2020-36881 Flexsense DiskBoss 'Add Input Directory' Buffer Overflow — DiskBoss 8.4 -2025-12-05
CVE-2020-36880 Flexsense DiskBoss 'Reports and Data Directory' Buffer Overflow — DiskBoss 7.8 -2025-12-05
CVE-2025-64713 WebAssembly Micro Runtime frame_offset_bottom array bounds overflow in fast Interpreter mode when handling GET_GLOBAL(I32) followed by if opcode — wasm-micro-runtime 5.1 Medium2025-11-25
CVE-2025-33195 NVIDIA DGX Spark 缓冲区错误漏洞 — DGX Spark 4.4 Medium2025-11-25
CVE-2025-13547 D-Link DIR-822K/DWR-M920 formDdns memory corruption — DIR-822K 8.8 High2025-11-23
CVE-2025-9338 ASUS Armoury Crate 安全漏洞 — Armoury Crate 7.8 -2025-11-06
CVE-2025-62594 ImageMagick CLAHE : Unsigned underflow and division-by-zero lead to OOB pointer arithmetic and process crash (DoS) — ImageMagick 4.7 Medium2025-10-27
CVE-2025-55089 Eclipse ThreadX FileX RAM disk driver buffer overflow — FileX 9.1AICriticalAI2025-10-16
CVE-2025-11683 YAML::Syck versions before 1.36 for Perl has missing Null-Terminators which causes Out-of-Bounds Read and potential Information Disclosure — YAML::Syck 7.5AIHighAI2025-10-16

Vulnerabilities classified as CWE-119 (内存缓冲区边界内操作的限制不恰当) represent 1063 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.