CWE-119: Buffer Overflow

The product performs operations on a memory buffer, but it can read from or write to a memory location that is outside of the intended boundary of the buffer.

1,172
Total CVEs
124
Critical
859
High
7.9
Avg CVSS
3
In CISA KEV

Yearly Trend

2026
161
2025
663
2024
139
2023
70
2022
53

Top Affected Vendors

1 Tenda 185
2 Dlink 82
3 Totolink 76
4 Apple 48
5 Utt 47
6 Cadsofttools 32
7 Pcman 28
8 Freefloat 25
9 Mozilla 24
10 Fedoraproject 22

All Buffer Overflow CVEs (1,172)

CVE-2025-8245
8.8

This critical buffer overflow vulnerability in TOTOLINK X15 routers allows remote attackers to execute arbitrary code by sending specially crafted HTT...

Jul 27, 2025
CVE-2025-8243
8.8

This critical buffer overflow vulnerability in TOTOLINK X15 routers allows remote attackers to execute arbitrary code by sending specially crafted HTT...

Jul 27, 2025
CVE-2025-8184
8.8

A critical stack-based buffer overflow vulnerability in D-Link DIR-513 routers allows remote attackers to execute arbitrary code via specially crafted...

Jul 26, 2025
CVE-2025-8180
8.8

A critical buffer overflow vulnerability in Tenda CH22 routers allows remote attackers to execute arbitrary code by manipulating the 'old_account' par...

Jul 26, 2025
CVE-2025-8169
8.8

A critical buffer overflow vulnerability in D-Link DIR-513 routers allows remote attackers to execute arbitrary code by sending specially crafted HTTP...

Jul 25, 2025
CVE-2025-8159
8.8

This critical vulnerability in D-Link DIR-513 routers allows remote attackers to execute arbitrary code via a stack-based buffer overflow in the langu...

Jul 25, 2025
CVE-2025-8139
8.8

This critical vulnerability in TOTOLINK A702R routers allows remote attackers to execute arbitrary code via a buffer overflow in the HTTP POST request...

Jul 25, 2025
CVE-2025-8138
8.8

This critical vulnerability in TOTOLINK A702R routers allows remote attackers to execute arbitrary code via buffer overflow in the HTTP POST request h...

Jul 25, 2025
CVE-2025-8136
8.8

This critical vulnerability in TOTOLINK A702R routers allows remote attackers to execute arbitrary code via a buffer overflow in the HTTP POST request...

Jul 25, 2025
CVE-2025-8131
8.8

This critical vulnerability in Tenda AC20 routers allows remote attackers to execute arbitrary code via a stack-based buffer overflow in the SetStatic...

Jul 25, 2025
CVE-2025-33076
8.8

A local user can exploit a stack-based buffer overflow in IBM Engineering Systems Design Rhapsody to execute arbitrary code on the system. This affect...

Jul 23, 2025
CVE-2025-8060
8.8

A critical stack-based buffer overflow vulnerability in Tenda AC23 routers allows remote attackers to execute arbitrary code by manipulating the devic...

Jul 23, 2025
CVE-2025-8034
8.8

This CVE describes memory safety bugs in multiple Mozilla products that could lead to memory corruption. With sufficient effort, attackers could poten...

Jul 22, 2025
CVE-2025-7945
8.8

A critical buffer overflow vulnerability in D-Link DIR-513 routers allows remote attackers to execute arbitrary code by sending specially crafted requ...

Jul 22, 2025
CVE-2025-7913
8.8

This critical vulnerability in TOTOLINK T6 routers allows remote attackers to execute arbitrary code via a buffer overflow in the MQTT service's updat...

Jul 21, 2025
CVE-2025-7911
8.8

A critical stack-based buffer overflow vulnerability in D-Link DI-8100 routers allows remote attackers to execute arbitrary code by exploiting the spr...

Jul 20, 2025
CVE-2025-7910
8.8

A critical stack-based buffer overflow vulnerability in D-Link DIR-513 routers allows remote attackers to execute arbitrary code by exploiting the spr...

Jul 20, 2025
CVE-2025-7908
8.8

A critical stack-based buffer overflow vulnerability exists in D-Link DI-8100 routers through the jhttpd component's ddns.asp endpoint. Attackers can ...

Jul 20, 2025
CVE-2025-7855
8.8

A critical stack-based buffer overflow vulnerability in Tenda FH451 routers allows remote attackers to execute arbitrary code by manipulating the 'pag...

Jul 19, 2025
CVE-2025-7853
8.8

A critical stack-based buffer overflow vulnerability in Tenda FH451 routers allows remote attackers to execute arbitrary code by manipulating the 'pag...

Jul 19, 2025
CVE-2025-7837
8.8

A critical buffer overflow vulnerability exists in the MQTT service of TOTOLINK T6 routers, specifically in the recvSlaveStaInfo function. Attackers c...

Jul 19, 2025
CVE-2025-7806
8.8

A critical stack-based buffer overflow vulnerability in Tenda FH451 routers allows remote attackers to execute arbitrary code by manipulating the Go/p...

Jul 18, 2025
CVE-2025-7805
8.8

A critical stack-based buffer overflow vulnerability in Tenda FH451 routers allows remote attackers to execute arbitrary code by manipulating the 'del...

Jul 18, 2025
CVE-2025-7795
EPSS 10.9% 8.8

A critical stack-based buffer overflow vulnerability in Tenda FH451 routers allows remote attackers to execute arbitrary code by manipulating the 'pag...

Jul 18, 2025
CVE-2025-7792
8.8

A critical stack-based buffer overflow vulnerability in Tenda FH451 routers allows remote attackers to execute arbitrary code by manipulating the 'pag...

Jul 18, 2025
CVE-2025-7794
8.8

A critical stack-based buffer overflow vulnerability in Tenda FH451 routers allows remote attackers to execute arbitrary code by manipulating the 'pag...

Jul 18, 2025
CVE-2025-7790
8.8

This critical vulnerability in D-Link DI-8100 routers allows remote attackers to execute arbitrary code via a stack-based buffer overflow in the HTTP ...

Jul 18, 2025
CVE-2025-7762
8.8

This critical vulnerability in D-Link DI-8100 routers allows remote attackers to execute arbitrary code via a stack-based buffer overflow in the HTTP ...

Jul 17, 2025
CVE-2025-7549
8.8

A critical stack-based buffer overflow vulnerability in Tenda FH1201 routers allows remote attackers to execute arbitrary code by manipulating the 'pa...

Jul 13, 2025
CVE-2025-7544
8.8

A critical stack-based buffer overflow vulnerability in Tenda AC1206 routers allows remote attackers to execute arbitrary code by manipulating the dev...

Jul 13, 2025
CVE-2025-7531
8.8

A critical stack-based buffer overflow vulnerability in Tenda FH1202 routers allows remote attackers to execute arbitrary code by manipulating the 'de...

Jul 13, 2025
CVE-2025-7529
8.8

A critical stack-based buffer overflow vulnerability in Tenda FH1202 routers allows remote attackers to execute arbitrary code by manipulating the 'pa...

Jul 13, 2025
CVE-2025-7527
8.8

A critical stack-based buffer overflow vulnerability in Tenda FH1202 routers allows remote attackers to execute arbitrary code by manipulating the PPP...

Jul 13, 2025
CVE-2025-7505
8.8

A critical stack-based buffer overflow vulnerability in Tenda FH451 routers allows remote attackers to execute arbitrary code by sending specially cra...

Jul 12, 2025
CVE-2025-7468
8.8

A critical buffer overflow vulnerability in Tenda FH1201 routers allows remote attackers to execute arbitrary code by sending specially crafted HTTP P...

Jul 12, 2025
CVE-2025-7465
8.8

A critical buffer overflow vulnerability in Tenda FH1201 routers allows remote attackers to execute arbitrary code by sending specially crafted HTTP P...

Jul 12, 2025
CVE-2025-7463
8.8

A critical buffer overflow vulnerability in Tenda FH1201 routers allows remote attackers to execute arbitrary code by sending specially crafted HTTP P...

Jul 12, 2025
CVE-2025-7460
8.8

This critical vulnerability in TOTOLINK T6 routers allows remote attackers to execute arbitrary code via a buffer overflow in the WiFi ACL rules confi...

Jul 11, 2025
CVE-2025-7421
8.8

A critical stack-based buffer overflow vulnerability in Tenda O3V2 routers allows remote attackers to execute arbitrary code by manipulating the 'mac'...

Jul 11, 2025
CVE-2025-7423
8.8

A critical stack-based buffer overflow vulnerability in Tenda O3V2 routers allows remote attackers to execute arbitrary code by sending specially craf...

Jul 11, 2025
CVE-2025-7420
8.8

A critical stack-based buffer overflow vulnerability in Tenda O3V2 routers allows remote attackers to execute arbitrary code by manipulating the extCh...

Jul 11, 2025
CVE-2025-7418
8.8

A critical stack-based buffer overflow vulnerability in Tenda O3V2 routers allows remote attackers to execute arbitrary code by manipulating the destI...

Jul 10, 2025
CVE-2025-7416
8.8

A critical stack-based buffer overflow vulnerability exists in Tenda O3V2 routers running firmware version 1.0.0.12(3880). Remote attackers can exploi...

Jul 10, 2025
CVE-2025-7194
8.8

A critical stack-based buffer overflow vulnerability in D-Link DI-500WF routers allows remote attackers to execute arbitrary code by manipulating the ...

Jul 8, 2025
CVE-2025-7117
8.8

A critical buffer overflow vulnerability in UTT HiPER 840G routers allows remote attackers to execute arbitrary code by manipulating the addHostFilter...

Jul 7, 2025
CVE-2025-7094
8.8

A critical stack-based buffer overflow vulnerability in Belkin F9K1122 routers allows remote attackers to execute arbitrary code by manipulating the s...

Jul 6, 2025
CVE-2025-7092
8.8

A critical stack-based buffer overflow vulnerability in Belkin F9K1122 routers allows remote attackers to execute arbitrary code by manipulating the w...

Jul 6, 2025
CVE-2025-7090
8.8

A critical stack-based buffer overflow vulnerability in Belkin F9K1122 routers allows remote attackers to execute arbitrary code by manipulating the m...

Jul 6, 2025
CVE-2025-7088
8.8

A critical stack-based buffer overflow vulnerability in Belkin F9K1122 routers allows remote attackers to execute arbitrary code by manipulating the p...

Jul 6, 2025
CVE-2025-7086
8.8

A critical stack-based buffer overflow vulnerability in Belkin F9K1122 routers allows remote attackers to execute arbitrary code by manipulating the p...

Jul 6, 2025

About Buffer Overflow (CWE-119)

The product performs operations on a memory buffer, but it can read from or write to a memory location that is outside of the intended boundary of the buffer.

Our database tracks 1,172 CVEs classified as CWE-119, with 124 rated critical and 859 rated high severity. The average CVSS score for Buffer Overflow vulnerabilities is 7.9.

External reference: View CWE-119 on MITRE CWE →

Monitor Buffer Overflow Vulnerabilities

Get alerted when new Buffer Overflow CVEs affect your infrastructure.

Start Monitoring Free