VYPR

CWE-125

Out-of-bounds Read

BaseDraft

Description

The product reads data past the end, or before the beginning, of the intended buffer.

Hierarchy (View 1000)

Parents

Related attack patterns (CAPEC)

CAPEC-540

CVEs mapped to this weakness (9,337)

page 438 of 467
  • CVE-2025-53379HigJul 14, 2026
    risk 0.00cvss 7.5epss 0.00

    A out-of-bounds read vulnerability in Fortinet FortiAuthenticator 6.6.0 through 6.6.2, FortiAuthenticator 6.5 all versions may allow a remote unauthenticated attacker to retrieve sensitive information via a specially crafted request.

  • CVE-2026-53566MedJul 14, 2026
    risk 0.00cvss epss 0.00

    Out-of-bounds read vulnerability in Citrix Citrix Secure Access Client for Windows. This issue affects Citrix Secure Access Client for Windows: before 26.6.1.20.

  • CVE-2026-12478MedJul 14, 2026
    risk 0.00cvss 4.8epss 0.00

    The fix for CVE-2026-0716 (commit 6ff7ef0, libsoup 3.6.6) placed the integer overflow guard inside the if (masked) block, leaving unmasked server-to-client frames unprotected. A malicious WebSocket server can send a crafted unmasked frame with a payload length near UINT64_MAX to…

  • CVE-2026-40454HigJul 10, 2026
    risk 0.00cvss 7.5epss 0.00

    Out-of-bounds Read, Improper Input Validation vulnerability in Apache IoTDB C++ client. Out-of-bounds reads in IoTDB C++ client TsBlock deserializer crash client process on malformed server data. This issue affects Apache IoTDB C++ client: from 1.3.5 before 1.3.8, from 2.0.5…

  • CVE-2026-58307MedJul 9, 2026
    risk 0.00cvss 6.1epss 0.00

    Out-of-bounds read, Reachable assertion vulnerability in Samsung Open Source Escargot allows Overread Buffers, Input Data Manipulation. This issue affects Escargot: before 2dee22f5c7b8bf31cb7252d7731fae8c07f2842c.

  • CVE-2026-58304MedJul 9, 2026
    risk 0.00cvss 6.1epss 0.00

    Out-of-bounds read, Out-of-bounds write vulnerability in Samsung Open Source Escargot allows Overflow Buffers. This issue affects Escargot: before 779f6bedf58f334dec64b0a51ebb724b4708b84a.

  • CVE-2026-57258MedJul 8, 2026
    risk 0.00cvss 6.1epss 0.00

    The PRC file header parsing logic trusts the constructed file structure description information, assumes that the underlying array contains elements and reads them, leading to out-of-bounds reads and application crashes.

  • CVE-2026-57257MedJul 8, 2026
    risk 0.00cvss 6.1epss 0.00

    During the PRC parsing stage, there is a lack of boundary verification for the PRC entity index, which leads to an out-of-bounds read of the entity array. As a result, the application crashes.

  • CVE-2026-57255MedJul 8, 2026
    risk 0.00cvss 6.1epss 0.00

    The application opens a PDF containing an abnormal color space whose attributes reference a valid but semantically malformed function. The function's output is not validated; when subsequently read, it produces an illegal pointer that accesses an out-of-bounds region, crashing…

  • CVE-2026-57253MedJul 8, 2026
    risk 0.00cvss 6.1epss 0.00

    An abnormal image object causes the renderer to enter the wrong processing branch. When converting the scan lines, an invalid image buffer pointer is used, resulting in the application crashing.

  • CVE-2026-57243MedJul 8, 2026
    risk 0.00cvss 6.1epss 0.00

    During the process of page opening and form formatting, a JavaScript reentrancy results in an inconsistent document status. Subsequently, with outdated page information, the application attempts to access invalid addresses, causing the application to crash.

  • CVE-2026-57241MedJul 8, 2026
    risk 0.00cvss 6.1epss 0.00

    The application opens the PDF, and JavaScript performs operations on the page and the document, causing the page-related objects within the application to lose synchronization; however, the renderer still trusts the outdated page count, and eventually the application crashes due…

  • CVE-2026-38973MedJul 6, 2026
    risk 0.00cvss 4.4epss 0.00

    mrubyc through release3.4.1 was found to contain an out-of-bounds read in builtin missing-method lookup inside mrbc_find_method().

  • CVE-2026-56015CriJul 3, 2026
    risk 0.00cvss 9.1epss 0.01

    Net::IP::LPM versions through 1.10 for Perl allow a heap out-of-bounds read via an unbounded prefix length. add() passes the prefix string to the trie builder addPrefixToTrie() without checking it against the address width. addPrefixToTrie() then walks the prefix buffer by…

  • CVE-2026-38971CriJul 2, 2026
    risk 0.00cvss 9.1epss 0.01

    ardupilot through Plane-4.6.3 was found to contain an out-of-bounds read issue in libraries/GCS_MAVLink/GCS_serial_control.cpp in GCS_MAVLINK::handle_serial_control().

  • CVE-2026-14422HigJul 1, 2026
    risk 0.00cvss 8.8epss 0.00

    Out of bounds read and write in Tint in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)

  • CVE-2026-14420CriJul 1, 2026
    risk 0.00cvss 9.6epss 0.00

    Out of bounds read and write in Dawn in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)

  • CVE-2026-14416CriJul 1, 2026
    risk 0.00cvss 9.6epss 0.00

    Out of bounds read in Dawn in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Low)

  • CVE-2026-14406MedJul 1, 2026
    risk 0.00cvss 5.9epss 0.00

    Out of bounds read in V8 in Google Chrome prior to 150.0.7871.46 allowed an attacker who convinced a user to install a malicious extension to obtain potentially sensitive information from process memory via a crafted Chrome Extension. (Chromium security severity: Medium)

  • CVE-2026-14396MedJul 1, 2026
    risk 0.00cvss 6.5epss 0.00

    Out of bounds read in ANGLE in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)