Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CWE-787

MITRE ↗

Out-of-bounds Write

2,513
CRITICAL
8,761
HIGH
2,814
MEDIUM
124
LOW
14,298 CVEs · Page 17/286
7.8
CVE-2026-55130

Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-47976

Media Encoder is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the c

7.8
CVE-2026-48270

Premiere Pro is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the co

7.8
CVE-2026-48274

After Effects is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the c

7.8
CVE-2026-48311

Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context

7.8
CVE-2026-48341

Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context

7.8
CVE-2026-48343

Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context

7.8
CVE-2026-48366

Media Encoder is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the c

7.8
CVE-2026-48367

After Effects is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the c

7.8
CVE-2026-48369

Premiere Pro is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the co

7.8
CVE-2026-48370

Media Encoder is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the c

7.8
CVE-2026-48335

Illustrator is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the con

7.8
CVE-2026-48336

Illustrator is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the con

7.8
CVE-2026-48337

Illustrator is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the con

7.8
CVE-2026-3842

A flaw was found in QEMU. This vulnerability allows a local attacker within a guest virtual machine to write data beyond

7.8
CVE-2026-53380

In the Linux kernel, the following vulnerability has been resolved: media: rzv2h-ivc: Fix concurrent buffer list access

7.8
CVE-2026-63794

In the Linux kernel, the following vulnerability has been resolved: KVM: SVM: Fix page overflow in sev_dbg_crypt() for

7.8
CVE-2026-64097

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Validate GPIO pin LUT table size b

7.8
CVE-2026-64145

In the Linux kernel, the following vulnerability has been resolved: wifi: wilc1000: fix dma_buffer leak on bus acquire

7.8
CVE-2026-59146

Data::SpatialHash::Shared versions before 0.02 for Perl allow out-of-bounds reads and writes via unvalidated bucket, lin

7.8
CVE-2026-65703

FFmpeg versions 2.7 through 8.1.2 contain an out-of-bounds write vulnerability in the TDSC video decoder that allows rem

7.8
CVE-2026-65704

FFmpeg through 8.1.2 contains an out-of-bounds write vulnerability that allows attackers to cause heap corruption by sup

7.8
CVE-2026-65705

FFmpeg versions 3.4 through 8.1.2 contain an out-of-bounds write vulnerability in the vf_floodfill video filter that all

7.8
CVE-2026-65706

FFmpeg versions 3.0 through 8.1.2 contain an out-of-bounds write vulnerability in the vf_swaprect video filter that allo

7.8
CVE-2026-64217

In the Linux kernel, the following vulnerability has been resolved: netfs: Fix overrun check in netfs_extract_user_iter

7.8
CVE-2026-64270

In the Linux kernel, the following vulnerability has been resolved: Input: mms114 - reject an oversized device packet s

7.8
CVE-2026-64274

In the Linux kernel, the following vulnerability has been resolved: Input: goodix - clamp the device-reported contact c

7.8
CVE-2026-64276

In the Linux kernel, the following vulnerability has been resolved: Input: synaptics-rmi4 - bound the F30 keymap to the

7.8
CVE-2026-64763

An out-of-bounds write issue was addressed by removing the vulnerable code. This issue is fixed in iOS 18.7.10 and iPadO

7.8
CVE-2026-64764

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 18.7.10 and iPadOS

7.8
CVE-2026-48372

Format Plugins is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution i

7.8
CVE-2026-48392

Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context

7.8
CVE-2026-48393

Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context

7.8
CVE-2026-48394

Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context

7.8
CVE-2026-18220

An out-of-bounds write vulnerability was found in the BFD library's DLX ELF backend (bfd/elf32-dlx.c) in GNU binutils. T

7.8
CVE-2026-34641

Premiere Pro is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the co

7.8
CVE-2026-70628

FFmpeg versions from 0.5 up to, but not including, 9.0 contain a signed integer overflow vulnerability in the DVB subtit

7.8
CVE-2026-70632

FFmpeg versions from 4.4 up to, but not including, 9.0 contain an out-of-bounds heap write vulnerability in the native G

7.8
CVE-2026-8325

A maliciously crafted PDF file, when parsed through Autodesk Revit, can force an Out-of-Bounds Write vulnerability. A ma

7.8
CVE-2026-59087

A flaw was found in the GIMP image manipulation program, specifically within its Seattle Filmworks file loader. A remote

7.8
CVE-2026-50059

A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versi

7.8
CVE-2026-50064

A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versi

7.8
CVE-2026-62871

Out-of-bounds write in .NET allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-68806

Out-of-bounds write in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-70354

Out-of-bounds write in .NET allows an unauthorized attacker to execute code locally.

7.8
CVE-2026-48404

Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in t

7.8
CVE-2026-48405

Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in t

7.8
CVE-2026-48406

Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in t

7.8
CVE-2026-48407

Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in t

7.8
CVE-2026-48408

Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in t

Frequently Asked Questions

What is CWE-787?

CWE-787 (Out-of-bounds Write) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-787?

There are 17,111 CVE records associated with CWE-787 in our database. Of these, 2513 are critical severity, 8761 are high severity, and 2814 are medium severity.

How can I protect against CWE-787 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-787 using AI-powered security agents.

Detect CWE-787 Vulnerabilities

CyberStrike's AI agents automatically detect out-of-bounds write vulnerabilities across your infrastructure.

Get Started