CVE-2020-15202 — CVSS 9.0 (critical): In Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, the `Shard` API in TensorFlow expects the last argument to be a…
CVE-2026-63525 — CVSS 7.8 (high): Numeric truncation error in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2026-62698 — CVSS 7.8 (high): Numeric truncation error in Microsoft Digest Authentication allows an authorized attacker to elevate privileges locally.
CVE-2026-50357 — CVSS 7.8 (high): Numeric truncation error in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally.
CVE-2026-49792 — CVSS 7.8 (high): Numeric truncation error in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally.
CVE-2026-44823 — CVSS 7.8 (high): Numeric truncation error in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2025-6965 — CVSS 7.7 (high): There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the number of columns…
CVE-2026-73523 — CVSS 7.5 (high): COVESA Open1722 through 0.9.2 contains an integer truncation vulnerability in acf-can-listener.c that allows unauthenticated remote…
CVE-2026-42944 — CVSS 7.5 (high): NLnet Labs Unbound 1.14.0 up to and including version 1.25.0 has a vulnerability that results in heap overflow when encoding multiple NSID…
CVE-2026-32240 — CVSS 6.5 (medium): Cap'n Proto is a data interchange format and capability-based RPC system. Prior to 1.4.0, when using Transfer-Encoding: chunked, if a…
CVE-2023-36641 — CVSS 6.5 (medium): A numeric truncation error in Fortinet FortiProxy version 7.2.0 through 7.2.4, FortiProxy version 7.0.0 through 7.0.10, FortiProxy 2.0 all…
CVE-2022-34680 — CVSS 5.5 (medium): NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer handler, where an integer truncation can lead to an…
CVE-2026-6039: LibreOffice can import drawings in the DXF format used by CAD software. A heap buffer overflow existed when importing a DXF polyline. The…
CVE-2026-77014 — CVSS 5.3 (medium): A flaw was found in libsoup's SoupServer HTTP Range header processing. The sort_ranges() comparator in soup-message-headers.c truncates a…
CVE-2025-10543 — CVSS 5.3 (medium): In Eclipse Paho Go MQTT v3.1 library (paho.mqtt.golang) versions <=1.5.0 UTF-8 encoded strings, passed into the library, may be incorrectly…
CVE-2026-42371 — CVSS 5.1 (medium): uriparser before 1.0.1 has numeric truncation in text range comparison, if an application accepts URIs with a length in gigabytes.
CVE-2026-44927 — CVSS 2.9 (low): In uriparser before 1.0.2, there is pointer difference truncation to int in various places.
CVE-2026-65610: nnn stores homelen variable as uchar_t, which can only represent values in the range 0-255. An attacker who can influence the victim's…
CVE-2026-49263: Capstone is a disassembly framework. Prior to version 6.0.0-Alpha9, Capstone's WebAssembly backend accepts attacker-controlled raw WASM…