Skip to main content

Daily materialized evidence profile

CWE CWE-125

This factual profile is rebuilt from stored cvebuzz evidence each day. It is a timestamped snapshot, not an immutable publication.

Refreshed UTC

Stored evidence summary

Sample size
9,304
CVEs with mentions
2,501
Total mentions
8,610
CVEs with KEV
19
CVEs with PoC
52

Attack vector counts

Network
4,079
Adjacent network
232
Local
4,882
Physical
111

Top snapshot Buzz entries

Up to five denormalized entries captured by the same daily profile refresh.

CVE-2021-4034

Published Jan 28, 2022

A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool designed to allow unprivileged users to run commands as pr…

CVSS 7.8 · High
evidence mentions
24
Buzz score
90.5
KEV listedPublic PoC observed

CVE-2025-5777

Published Jun 17, 2025

Insufficient input validation leading to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server

CVSS 9.3 · Critical
evidence mentions
45
Buzz score
75.0

CVE-2026-3055

Published Mar 23, 2026

Insufficient input validation in NetScaler ADC and NetScaler Gateway when configured as a SAML IDP leading to memory overread

CVSS 9.3 · Critical
evidence mentions
23
Buzz score
75.0
KEV listed

CVE-2025-5419

Published Jun 3, 2025

Out of bounds read and write in V8 in Google Chrome prior to 137.0.7151.68 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium secu…

CVSS 8.8 · High
evidence mentions
19
Buzz score
75.0
KEV listed

CVE-2014-0160

Published Apr 7, 2014

The (1) TLS and (2) DTLS implementations in OpenSSL 1.0.1 before 1.0.1g do not properly handle Heartbeat Extension packets, which allows remote attackers to obtain sensitive infor…

CVSS 7.5 · High
evidence mentions
46
Buzz score
72.5
KEV listed