Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CWE-122

MITRE ↗

CWE-122

257
CRITICAL
1,911
HIGH
479
MEDIUM
65
LOW
2,756 CVEs · Page 11/56
7.8
CVE-2026-62732

Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-62735

Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-62736

Heap-based buffer overflow in Windows DHCP Client allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-62739

Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-62741

Integer underflow (wrap or wraparound) in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-62747

Heap-based buffer overflow in Windows Device Association Service allows an authorized attacker to elevate privileges loc

7.8
CVE-2026-62752

Heap-based buffer overflow in Windows Kerberos allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-62754

Heap-based buffer overflow in Windows Kerberos allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-62758

Heap-based buffer overflow in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileg

7.8
CVE-2026-62770

Heap-based buffer overflow in Windows Shell allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-62771

Heap-based buffer overflow in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges

7.8
CVE-2026-62772

Heap-based buffer overflow in Windows Container Isolation FS Filter Driver (unionfs.sys) allows an authorized attacker t

7.8
CVE-2026-62783

Heap-based buffer overflow in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileg

7.8
CVE-2026-62797

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-62799

Heap-based buffer overflow in Windows SMB Client allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-62811

Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-62871

Out-of-bounds write in .NET allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-62885

Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-62886

Integer overflow or wraparound in .NET allows an unauthorized attacker to elevate privileges locally.

7.8
CVE-2026-62890

Heap-based buffer overflow in Windows GDI+ allows an authorized attacker to execute code locally.

7.8
CVE-2026-62894

Heap-based buffer overflow in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-63513

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-63518

Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-63519

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-63532

Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-63533

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-64898

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-64903

Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-64906

Heap-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-64908

Heap-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-64909

Integer underflow (wrap or wraparound) in Microsoft Office allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-64911

Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-64914

Heap-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-64915

Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-64920

Heap-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-65661

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-65664

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-65671

Heap-based buffer overflow in Windows Remote Access API allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-65672

Heap-based buffer overflow in Windows Remote Access API allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-65774

Heap-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-65786

Heap-based buffer overflow in Desktop Window Manager allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-65787

Heap-based buffer overflow in Desktop Window Manager allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-65790

Heap-based buffer overflow in Windows Message Queuing allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-65814

Heap-based buffer overflow in Windows Storage Port Driver allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-66799

Heap-based buffer overflow in Windows Key Guard allows an authorized attacker to elevate privileges locally.

7.8
CVE-2026-68794

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-68796

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-68798

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-68800

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-68801

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

Frequently Asked Questions

What is CWE-122?

CWE-122 (CWE-122) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-122?

There are 2,806 CVE records associated with CWE-122 in our database. Of these, 257 are critical severity, 1911 are high severity, and 479 are medium severity.

How can I protect against CWE-122 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-122 using AI-powered security agents.

Detect CWE-122 Vulnerabilities

CyberStrike's AI agents automatically detect cwe-122 vulnerabilities across your infrastructure.

Get Started