Skip to main content

CWE archive

CWE-126 CVEs

Programmatic archive

477 CVEs tagged with CWE-12610 Critical, 249 High, 204 Medium, 14 Low, 0 Unrated.

CVE-2026-55970

Published Jul 27, 2026

Buffer Over-read vulnerability in Apache Thrift C++ bindings. This issue affects Apache Thrift: before 0.24.0. Users are recommended to upgrade to version 0.24.0, which fixes th…

CVSS 6.9 · Medium
evidence mentions
3
Buzz score
23.9
Vendor/product tagsBeta · best-effort

CVE-2026-55238

Published Jul 20, 2026

xrdp is an open source RDP server. Versions 0.10.6 and prior contain a vulnerability concerning the processing of RDP Confirm Active PDU, where during the capability negotiation p…

CVSS 5.3 · Medium
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2026-63091

Published Jul 20, 2026

ProFTPD before 1.3.9c and 1.3.10rc3 contains a signed integer overflow vulnerability in the mod_sftp module's SCP size-record parser that allows authenticated low-privilege attack…

CVSS 7.1 · High
evidence mentions
6
Buzz score
26.0

CVE-2026-47088

Published Jul 16, 2026

An issue was discovered in cyrus-imapd in Cyrus IMAP through 3.12.2. There is heap exposure in nested MIME comment parsing. An authenticated IMAP user could craft an email message…

CVSS 3.1 · Low
evidence mentions
2
Buzz score
16.0

CVE-2026-62353

Published Jul 15, 2026

TDengine is a time-series database optimized for Internet of Things devices. Prior to 3.4.1.14, source/libs/parser/src/parTokenizer.c tGetToken() incremented past a trailing backs…

CVSS 5.4 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-49854

Published Jul 14, 2026

Tornado is a Python web framework and asynchronous networking library. Prior to 6.5.6, the optional native extension tornado.speedups implemented websocket_mask without validating…

CVSS 5.3 · Medium
evidence mentions
4
Buzz score
21.1

CVE-2026-50468

Published Jul 14, 2026

Buffer over-read in SQL Server allows an authorized attacker to disclose information over a network.

CVSS 6.5 · Medium
evidence mentions
4
Buzz score
29.1
Vendor/product tagsBeta · best-effort

CVE-2026-50383

Published Jul 14, 2026

Buffer over-read in Windows Print Spooler Components allows an authorized attacker to disclose information locally.

CVSS 6.1 · Medium
evidence mentions
5
Buzz score
32.4

CVE-2026-59840

Published Jul 14, 2026

A buffer over-read vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2 all versions, FortiOS 7.0 all versions, FortiOS 6.4 all versions…

CVSS 4.3 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-43892

Published Jul 14, 2026

A buffer over-read vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2 all versions, FortiOS 7.0 all versions, FortiOS 6.4 all versions…

CVSS 4.3 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-50813

Published Jul 8, 2026

An issue in SQLite before Fossil check-in 869a51ae84df allows a local attacker to obtain sensitive information via the Session Extension changeset concat/changegroup merge path

CVSS 6.1 · Medium
evidence mentions
3
Buzz score
25.4

CVE-2026-58013

Published Jun 30, 2026

A flaw was found in GLib. A buffer over-read can occur in g_io_channel_read_line_backend() in the giochannel.c file when a custom line terminator with a length greater than one is…

CVSS 6.5 · Medium
evidence mentions
4
Buzz score
32.6
Vendor/product tagsBeta · best-effort

CVE-2026-58012

Published Jun 30, 2026

A flaw was found in GLib. A buffer over-read can occur in the g_regex_replace function when used with the `G_REGEX_RAW` compile flag and case-change replacement escapes because th…

CVSS 6.5 · Medium
evidence mentions
4
Buzz score
32.6
Vendor/product tagsBeta · best-effort

CVE-2026-58010

Published Jun 30, 2026

A flaw was found in GLib. An off-by-one error can occur in the gvs_tuple_is_normal function in the glib/gvariant-serialiser.c file when doing an alignment padding check because th…

CVSS 6.5 · Medium
evidence mentions
4
Buzz score
32.6
Vendor/product tagsBeta · best-effort
Showing 1-25 of 477 CVEsPage 1 of 20