Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CWE-787

MITRE ↗

Out-of-bounds Write

2,513
CRITICAL
8,761
HIGH
2,814
MEDIUM
124
LOW
14,298 CVEs · Page 34/286
8.8
CVE-2025-3887

GStreamer H265 Codec Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows

8.8
CVE-2025-5080

A vulnerability classified as critical has been found in Tenda FH451 1.0.0.9. Affected is the function webExcptypemanFil

8.8
CVE-2025-5215

A vulnerability classified as critical has been found in D-Link DCS-5020L 1.01_B2. This affects the function websReadEve

8.8
CVE-2025-5280

Out of bounds write in V8 in Google Chrome prior to 137.0.7151.55 allowed a remote attacker to potentially exploit heap

8.8
CVE-2025-1051

Sonos Era 300 Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent

8.8
CVE-2025-5419 KEV

Out of bounds read and write in V8 in Google Chrome prior to 137.0.7151.68 allowed a remote attacker to potentially expl

8.8
CVE-2025-5503

A vulnerability, which was classified as critical, was found in TOTOLINK X15 1.0.0-B20230714.1105. This affects the func

8.8
CVE-2025-5527

A vulnerability was found in Tenda RX3 16.03.13.11_multi_TDE01. It has been rated as critical. This issue affects the fu

8.8
CVE-2025-5572

A vulnerability was found in D-Link DCS-932L 2.18.01. It has been declared as critical. Affected by this vulnerability i

8.8
CVE-2025-5619

A vulnerability, which was classified as critical, has been found in Tenda CH22 1.0.0.1. This issue affects the function

8.8
CVE-2025-5685

A vulnerability, which was classified as critical, was found in Tenda CH22 1.0.0.1. This affects the function formNatlim

8.8
CVE-2025-5847

A vulnerability has been found in Tenda AC9 15.03.02.13 and classified as critical. Affected by this vulnerability is th

8.8
CVE-2025-5853

A vulnerability classified as critical was found in Tenda AC6 15.03.05.16. Affected by this vulnerability is the functio

8.8
CVE-2025-5855

A vulnerability, which was classified as critical, was found in Tenda AC6 15.03.05.16. This affects the function formSet

8.8
CVE-2025-5863

A vulnerability was found in Tenda AC5 15.03.06.47. It has been classified as critical. Affected is the function formSet

8.8
CVE-2025-5934

A vulnerability was found in Netgear EX3700 up to 1.0.0.88. It has been classified as critical. Affected is the function

8.8
CVE-2025-5943

MicroDicom DICOM Viewer suffers from an out-of-bounds write vulnerability. Remote attackers are able to exploit this i

8.8
CVE-2025-5978

A vulnerability was found in Tenda FH1202 1.2.0.14. It has been classified as critical. Affected is the function fromVir

8.8
CVE-2025-25050

An out-of-bounds write vulnerability exists in the cv_upgrade_sensor_firmware functionality of Dell ControlVault3 prior

8.8
CVE-2025-6110

A vulnerability classified as critical has been found in Tenda FH1201 1.2.0.14(408). This affects an unknown part of the

8.8
CVE-2025-6111

A vulnerability classified as critical was found in Tenda FH1205 2.0.0.7(775). This vulnerability affects the function f

8.8
CVE-2025-47998

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execut

8.8
CVE-2025-7586

A vulnerability was found in Tenda AC500 2.0.1.9(1307). It has been declared as critical. Affected by this vulnerability

8.8
CVE-2025-7596

A vulnerability was found in Tenda FH1205 2.0.0.7(775). It has been rated as critical. This issue affects the function f

8.8
CVE-2025-8159

A vulnerability was found in D-Link DIR-513 1.0. It has been rated as critical. This issue affects the function formLang

8.8
CVE-2025-8168

A vulnerability was found in D-Link DIR-513 1.10. It has been rated as critical. Affected by this issue is the function

8.8
CVE-2025-8169

A vulnerability classified as critical has been found in D-Link DIR-513 1.10. This affects the function formSetWanPPTPca

8.8
CVE-2025-8184

A vulnerability was found in D-Link DIR-513 up to 1.10 and classified as critical. This issue affects the function formS

8.8
CVE-2025-8243

A vulnerability was found in TOTOLINK X15 1.0.0-B20230714.1105 and classified as critical. This issue affects some unkno

8.8
CVE-2025-54627

Out-of-bounds write vulnerability in the skia module. Impact: Successful exploitation of this vulnerability may affect s

8.8
CVE-2025-8901

Out of bounds write in ANGLE in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to perform out of bounds

8.8
CVE-2025-9088

A vulnerability was found in Tenda AC20 16.03.08.12. This vulnerability affects the function save_virtualser_data of the

8.8
CVE-2025-9132

Out of bounds write in V8 in Google Chrome prior to 139.0.7258.138 allowed a remote attacker to potentially exploit heap

8.8
CVE-2025-9748

A vulnerability was determined in Tenda CH22 1.0.0.1. Affected by this issue is the function fromIpsecitem of the file /

8.8
CVE-2025-20708

In Modem, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote escalation

8.8
CVE-2025-9791

A weakness has been identified in Tenda AC20 16.03.08.05. This vulnerability affects unknown code of the file /goform/fr

8.8
CVE-2025-9938

A weakness has been identified in D-Link DI-8400 16.07.26A1. The affected element is the function yyxz_dlink_asp of the

8.8
CVE-2025-21042 KEV

Out-of-bounds write in libimagecodec.quram.so prior to SMR Apr-2025 Release 1 allows remote attackers to execute arbitra

8.8
CVE-2025-21043 KEV

Out-of-bounds write in libimagecodec.quram.so prior to SMR Sep-2025 Release 1 allows remote attackers to execute arbitra

8.8
CVE-2025-39849

In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: sme: cap SSID length in __cfg80211_

8.8
CVE-2025-39862

In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7915: fix list corruption after hardw

8.8
CVE-2025-10773

A security flaw has been discovered in B-Link BL-AC2100 up to 1.0.3. Affected by this issue is the function delshrpath o

8.8
CVE-2025-10779

A vulnerability was found in D-Link DCS-935L up to 1.13.01. The impacted element is the function sub_402280 of the file

8.8
CVE-2025-10792

A security vulnerability has been detected in D-Link DIR-513 A1FW110. Affected is an unknown function of the file /gofor

8.8
CVE-2025-44014

An out-of-bounds write vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user accoun

8.8
CVE-2025-39952

In the Linux kernel, the following vulnerability has been resolved: wifi: wilc1000: avoid buffer overflow in WID string

8.8
CVE-2023-53676

In the Linux kernel, the following vulnerability has been resolved: scsi: target: iscsi: Fix buffer overflow in lio_tar

8.8
CVE-2025-20711

In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (

8.8
CVE-2025-20719

In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (

8.8
CVE-2025-20720

In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (

Frequently Asked Questions

What is CWE-787?

CWE-787 (Out-of-bounds Write) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-787?

There are 17,111 CVE records associated with CWE-787 in our database. Of these, 2513 are critical severity, 8761 are high severity, and 2814 are medium severity.

How can I protect against CWE-787 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-787 using AI-powered security agents.

Detect CWE-787 Vulnerabilities

CyberStrike's AI agents automatically detect out-of-bounds write vulnerabilities across your infrastructure.

Get Started