CWE-119Class19 in KEV

Improper Restriction of Operations within the Bounds of a Memory Buffer

Stable in the CWE catalog · 2,807 CVEs mapped

2,807
CVEs mapped
19
In KEV
8.5
Median CVSS
What it is

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

Recent examples
8.8cvss
CVE-2026-86166

Tenda HG10 Boa Web Server formWanRedirect buffer overflow

A vulnerability was determined in Tenda HG10 300001138. This issue affects the function formWanRedirect of the file /boaform/formWanRedirect of the component Boa Web Server. Executing a manipulation of the argument if can lead to buffer overflow. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized.

HIGHno explanation yet
epss
9.8cvss
CVE-2026-86165

Tenda HG10 formURL buffer overflow

A vulnerability was found in Tenda HG10 300001138. This vulnerability affects the function formURL of the file /boaform/admin/formURL. Performing a manipulation of the argument Keywd/urlFQDN results in buffer overflow. The attack may be initiated remotely. The exploit has been made public and could be used.

CRITICALno explanation yet
epss
5.3cvss
CVE-2026-85522

CVE-2026-85522 - MEDIUM Severity Vulnerability

A vulnerability was detected in valkey-io valkey up to 9.5.4/9.1.0. Affected by this vulnerability is the function createSlotImportJob of the file src/cluster_migrateslots.c of the component Slot Migration. The manipulation of the argument job_name results in out-of-bounds read. The attack can be executed remotely. The exploit is now public and may be used. Upgrading to version 9.0.5 and 9.1.1 addresses this issue. The patch is identified as f4dc3ca09eb650c2fe14060090a41c524eca803f. Upgrading the affected component is advised.

MEDIUMno explanation yet
0%
epss
The record
Technical detail
CWE ID
CWE-119
Abstraction
Class
Structure
Simple
Status
Stable
References (18)