Skip to main content

CWE archive

CWE-197 CVEs

Programmatic archive

52 CVEs tagged with CWE-1973 Critical, 37 High, 11 Medium, 1 Low, 0 Unrated.

CVE-2026-50357

Published Jul 14, 2026

Numeric truncation error in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally.

CVSS 7.8 · High
evidence mentions
5
Buzz score
32.4

CVE-2026-49792

Published Jul 14, 2026

Numeric truncation error in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally.

CVSS 7.8 · High
evidence mentions
5
Buzz score
32.4

CVE-2026-6679

Published Jun 25, 2026

A heap buffer overflow could occur in the DTLS 1.3 ACK serialization path before the connecting peer is authenticated. The buffer overflow was due to an integer truncation when co…

CVSS 8.8 · High
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2026-6039

Published Jun 15, 2026

LibreOffice can import drawings in the DXF format used by CAD software. A heap buffer overflow existed when importing a DXF polyline. The point count taken from the file was trunc…

CVSS 5.4 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-42944

Published May 20, 2026

NLnet Labs Unbound 1.14.0 up to and including version 1.25.0 has a vulnerability that results in heap overflow when encoding multiple NSID and/or DNS Cookie EDNS and/or EDNS Paddi…

CVSS 8.7 · High
evidence mentions
9
Buzz score
41.0
Vendor/product tagsBeta · best-effort

CVE-2026-42371

Published Apr 27, 2026

uriparser before 1.0.1 has numeric truncation in text range comparison, if an application accepts URIs with a length in gigabytes.

CVSS 5.1 · Medium
evidence mentions
3
Buzz score
25.4
Vendor/product tagsBeta · best-effort

CVE-2026-32240

Published Mar 12, 2026

Cap'n Proto is a data interchange format and capability-based RPC system. Prior to 1.4.0, when using Transfer-Encoding: chunked, if a chunk's size parsed to a value of 2^64 or lar…

CVSS 6.3 · Medium
evidence mentions
5
Buzz score
27.9
Vendor/product tagsBeta · best-effort

CVE-2025-10543

Published Dec 2, 2025

In Eclipse Paho Go MQTT v3.1 library (paho.mqtt.golang) versions <=1.5.0 UTF-8 encoded strings, passed into the library, may be incorrectly encoded if their length exceeds 65535 b…

CVSS 6.3 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort
Showing 1-25 of 52 CVEsPage 1 of 3