CWE-126— Buffer Over-read
The product reads from a buffer using buffer access mechanisms such as indexes or pointers that reference memory locations after the targeted buffer.— MITRE CWE catalog
529 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-126page 11 of 11
- CVE-2026-66312HIGHCVSS 8.8EG 8.82026-08-03
Buffer over-read in Microsoft Edge (Chromium-based) allows an authorized attacker to execute code over a network.
- CVE-2026-67390MEDIUMCVSS 6.5EG 6.52026-09-08
Buffer over-read in SQL Server allows an authorized attacker to disclose information over a network.
- CVE-2026-67393MEDIUMCVSS 6.5EG 6.52026-09-08
Buffer over-read in SQL Server allows an authorized attacker to disclose information over a network.
- CVE-2026-68819HIGHCVSS 7.5EG 7.52026-08-11
Buffer over-read in Windows Network File System allows an unauthorized attacker to deny service over a network.
- CVE-2026-68851MEDIUMCVSS 5.5EG 5.52026-09-08
Buffer over-read in Windows NTFS allows an authorized attacker to disclose information locally.
- CVE-2026-68875HIGHCVSS 7.8EG 7.82026-09-08
Buffer over-read in Windows NTFS allows an authorized attacker to execute code locally.
- CVE-2026-69316MEDIUMCVSS 4.7EG 4.72026-09-08
Buffer over-read in Windows Overlay Filter allows an authorized attacker to disclose information locally.
- CVE-2026-69416MEDIUMCVSS 5.7EG 5.72026-09-08
Buffer over-read in Windows DHCP Server allows an authorized attacker to deny service over an adjacent network.
- CVE-2026-69474MEDIUMCVSS 4.8EG 4.82026-09-08
Use after free in Windows Overlay Filter allows an authorized attacker to disclose information over a network.
- CVE-2026-69550MEDIUMCVSS 6.5EG 6.52026-08-19
Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.
- CVE-2026-69582HIGHCVSS 7.8EG 7.82026-09-08
Buffer over-read in Windows Volume Manager Extension Driver allows an authorized attacker to elevate privileges locally.
- CVE-2026-69610HIGHCVSS 7.0EG 7.02026-09-08
Buffer over-read in Windows Win32K allows an authorized attacker to elevate privileges locally.
- CVE-2026-69626MEDIUMCVSS 6.5EG 6.52026-09-08
Buffer over-read in Microsoft Office allows an unauthorized attacker to disclose information over a network.
- CVE-2026-69719MEDIUMCVSS 6.5EG 6.52026-09-08
Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information over a network.
- CVE-2026-69794MEDIUMCVSS 5.5EG 5.52026-09-08
Buffer over-read in Windows Encrypting File System (EFS) allows an authorized attacker to disclose information locally.
- CVE-2026-70652LOWCVSS 2.0EG 2.02026-08-20
libvips is a fast image processing library with low memory needs. Prior to version 8.18.3, libvips built with libultrahdr support can incorrectly size an output buffer in libvips/foreign/uhdrsave.c within vips_foreign_save_uhdr_set_raw_hdr…
- CVE-2026-72932HIGHCVSS 7.5EG 7.52026-09-08
Buffer over-read in Windows Message Queuing Queue Manager allows an unauthorized attacker to disclose information over a network.
- CVE-2026-72974MEDIUMCVSS 6.5EG 6.52026-09-08
Buffer over-read in Microsoft Office Excel allows an unauthorized attacker to disclose information over a network.
- CVE-2026-73029MEDIUMCVSS 6.5EG 6.52026-09-08
Buffer over-read in SQL Server allows an authorized attacker to disclose information over a network.
- CVE-2026-76653MEDIUMCVSS 5.3EG 5.32026-09-10
A missing authentication vulnerability in the VPN configuration management has been identified in Archer MR600 (v2, v3 & v5) and TL-MR6400 v8 due to improper access control; a remote unauthenticated attacker may be able to access and mod…
- CVE-2026-76884MEDIUMCVSS 6.5EG 6.52026-08-19
ERF file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
- CVE-2026-76885MEDIUMCVSS 6.5EG 6.52026-08-19
Tektronix K12xx file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
- CVE-2026-78516MEDIUMCVSS 4.3EG 4.32026-09-08
Buffer over-read in Windows Storage allows an unauthorized attacker to disclose information with a physical attack.
- CVE-2026-81399MEDIUMCVSS 5.5EG 5.52026-09-08
Buffer over-read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
- CVE-2026-83949MEDIUMCVSS 5.5EG 5.52026-09-08
Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
- CVE-2026-83951MEDIUMCVSS 5.5EG 5.52026-09-08
Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
- CVE-2026-8463MEDIUMCVSS 5.3EG 5.32026-05-13
Crypt::Argon2 versions from 0.017 before 0.031 for Perl perform a heap out-of-bounds read in argon2_verify on empty encoded input. The auto-detect form of argon2_verify passes encoded_len - 1 as the length argument to memchr without check…
- CVE-2026-84640HIGHCVSS 7.5EG 7.52026-09-01
A maliciously constructed mail header could lead to a one byte read past the end of a buffer. This vulnerability was fixed in Thunderbird 155, Thunderbird 140.15, and Thunderbird 153.2.
- CVE-2026-90610LOWCVSS 3.3EG 3.32026-09-14
A vulnerability was found in GPAC up to f1219cde. This affects the function gf_svg_attributes_copy of the file scenegraph/svg_attributes.c of the component MP4Box. Performing a manipulation results in buffer over-read. The attack is only p…
Map vulnerabilities like CWE-126 to your infrastructure
EchelonGraph correlates every CVE — across CWE-126 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →