Skip to main content

CWE archive

CWE-123 CVEs

Programmatic archive

55 CVEs tagged with CWE-1237 Critical, 34 High, 13 Medium, 1 Low, 0 Unrated.

CVE-2026-47473

Published Jul 14, 2026

NVIDIA TensorRT-LLM contains a vulnerability where an attacker could cause a write-what-where condition. A successful exploit of this vulnerability might lead to data tampering, d…

CVSS 7.4 · High
evidence mentions
2
Buzz score
17.5

CVE-2026-45257

Published Jun 26, 2026

The KTLS receive path decrypted each record in place, assuming that the mbufs holding received data were anonymous and safe to modify. This assumption does not hold for data plac…

CVSS 7.8 · High
evidence mentions
5
Buzz score
37.9
Vendor/product tagsBeta · best-effort

CVE-2026-30121

Published Jun 15, 2026

remotion-dev remotion v4.0.409 was discovered to contain an arbitrary file write vulnerability.

CVSS 9.1 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-46323

Published Jun 9, 2026

In the Linux kernel, the following vulnerability has been resolved: net: gro: don't merge zcopy skbs skb_gro_receive() can currently copy frags between the source and GRO skb, w…

CVSS 7.8 · High
evidence mentions
15
Buzz score
47.7
Vendor/product tagsBeta · best-effort

CVE-2026-46300

Published May 23, 2026

In the Linux kernel, the following vulnerability has been resolved: net: skbuff: preserve shared-frag marker during coalescing skb_try_coalesce() can attach paged frags from @fr…

CVSS 7.8 · High
evidence mentions
61
Buzz score
50.0
Vendor/product tagsBeta · best-effort

CVE-2026-43500

Published May 11, 2026

In the Linux kernel, the following vulnerability has been resolved: rxrpc: Also unshare DATA/RESPONSE packets when paged frags are present The DATA-packet handler in rxrpc_input…

CVSS 7.8 · High
evidence mentions
22
Buzz score
60.8
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2026-43284

Published May 8, 2026

In the Linux kernel, the following vulnerability has been resolved: xfrm: esp: avoid in-place decrypt on shared skb frags MSG_SPLICE_PAGES can attach pages from a pipe directly…

CVSS 8.8 · High
evidence mentions
76
Buzz score
65.3
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2026-41952

Published Apr 29, 2026

Local privilege escalation due to improper input validation. The following products are affected: Acronis DeviceLock DLP (Windows) before build 9.0.93212, Acronis Cyber Protect Cl…

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9

CVE-2025-14857

Published Apr 7, 2026

An improper access control vulnerability exists in Semtech LoRa LR11xxx transceivers running early versions of firmware where the memory write command accessible via the physical…

CVSS 5.4 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2025-69809

Published Mar 16, 2026

A write-what-where condition in p2r3 Bareiron commit 8e4d40 allows unauthenticated attackers to write arbitrary values to memory, enabling arbitrary code execution via a crafted p…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2026-25634

Published Feb 6, 2026

iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color management profiles. Prior to 2.3.1.4, SrcPixel and DestPix…

CVSS 7.8 · High
evidence mentions
5
Buzz score
22.9
Vendor/product tagsBeta · best-effort

CVE-2025-29943

Published Jan 16, 2026

Write what were condition within AMD CPUs may allow an admin-privileged attacker to modify the configuration of the CPU pipeline potentially resulting in the corruption of the sta…

CVSS 4.6 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2025-62164

Published Nov 21, 2025

vLLM is an inference and serving engine for large language models (LLMs). From versions 0.10.2 to before 0.11.1, a memory corruption vulnerability could lead to a crash (denial-of…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2025-9900

Published Sep 23, 2025

A flaw was found in Libtiff. This vulnerability is a "write-what-where" condition, triggered when the library processes a specially crafted TIFF image file. By providing an abnor…

CVSS 8.8 · High

CVE-2025-7403

Published Sep 19, 2025

Unsafe handling in bt_conn_tx_processor causes a use-after-free, resulting in a write-before-zero. The written 4 bytes are attacker-controlled, enabling precise memory corruption.

CVSS 7.6 · High
Vendor/product tagsBeta · best-effort

CVE-2025-33045

Published Sep 9, 2025

APTIOV contains vulnerabilities in the BIOS where a privileged user may cause “Write-what-where Condition” and “Exposure of Sensitive Information to an Unauthorized Actor” through…

CVSS 8.2 · High
Vendor/product tagsBeta · best-effort

CVE-2025-55298

Published Aug 26, 2025

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to ImageMagick versions 6.9.13-28 and 7.1.2-2, a format string bug vulnerabili…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2024-47438

Published Nov 12, 2024

Substance3D - Painter versions 10.1.0 and earlier are affected by a Write-what-where Condition vulnerability that could lead to a memory leak. This vulnerability allows an attacke…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-20119

Published Nov 4, 2024

In mms, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User in…

CVSS 6.7 · Medium

CVE-2024-20118

Published Nov 4, 2024

In mms, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User in…

CVSS 6.7 · Medium

CVE-2024-44067

Published Aug 19, 2024

The T-Head XuanTie C910 CPU in the TH1520 SoC and the T-Head XuanTie C920 CPU in the SOPHON SG2042 have instructions that allow unprivileged attackers to write to arbitrary physic…

CVSS 8.4 · High

CVE-2024-36877

Published Aug 12, 2024

Micro-Star International Z-series motherboards (Z590, Z490, and Z790) and B-series motherboards (B760, B560, B660, and B460) with firmware 7D25v14, 7D25v17 to 7D25v19, and 7D25v1A…

CVSS 8.2 · High
Showing 1-25 of 55 CVEsPage 1 of 3