Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
FFmpeg through 8.1.2, fixed in commit 5d7112c, contains a heap out-of-bounds write vulnerability in the vf_hqdn3d filter that allows attackers to… (CVE-2026-66036)CVE-2026-66036 0 FFmpeg versions through 8.1.2 contain a heap out-of-bounds write vulnerability in the vf_hqdn3d filter. This occurs when a crafted video input with increasing frame resolution is processed with filtergraph reinitialization disabled (-reinit_filter 0). The vulnerability allows heap memory corruption due to undersized buffer allocation for line-history, leading to out-of-bounds writes during denoising. This issue is fixed in commit 5d7112c. Join the discussion | GCVE Database | 07/24/2026, 21:32:22 UTC Added: 07/25/2026, 23:09:30 UTC |
FFmpeg through 8.1.2, fixed in commit b506faf, contains a heap out-of-bounds write vulnerability in the native PNG and APNG encoders that allows… (CVE-2026-66040)CVE-2026-66040 0 FFmpeg versions through 8.1.2 contain a heap out-of-bounds write vulnerability in the native PNG and APNG encoders. This flaw is triggered by a crafted PNG image with a malicious eXIf chunk that causes excessive memory writes beyond allocated buffers. The vulnerability can lead to deterministic heap corruption, process crashes, and potentially arbitrary code execution. The issue was fixed in a commit identified as b506faf. No explicit affected versions were provided beyond 'through 8.1.2'. Join the discussion | GCVE Database | 07/24/2026, 21:32:22 UTC Added: 07/25/2026, 23:09:30 UTC |
FFmpeg through 8.1.2, fixed in commit aafb5c6, contains a signed integer overflow vulnerability in the MACE6 audio decoder that allows attackers to… (CVE-2026-66039)CVE-2026-66039 0 FFmpeg versions through 8.1.2 contain a signed integer overflow vulnerability in the MACE6 audio decoder. This flaw allows attackers to craft a malicious CAF audio file with specially manipulated bytes_per_packet and frames_per_packet values. The vulnerability triggers an integer overflow during output sample count calculation, causing an undersized buffer allocation and a heap out-of-bounds write. This memory corruption could potentially enable code execution. The issue was fixed in commit aafb5c6. Join the discussion | GCVE Database | 07/24/2026, 21:32:22 UTC Added: 07/25/2026, 23:09:28 UTC |
FFmpeg through 8.1.2, fixed in commit 8670835, contains an information disclosure vulnerability in the LCL/ZLIB video decoder that allows attackers… (CVE-2026-66038)CVE-2026-66038 0 FFmpeg versions through 8.1.2 contain an information disclosure vulnerability in the LCL/ZLIB video decoder. This flaw allows attackers to expose uninitialized heap memory by providing a valid zlib stream that decompresses to fewer bytes than the expected frame size. The vulnerability arises because the decompression function treats short decompression as non-fatal and proceeds to copy a full frame's worth of data from the allocation buffer, potentially leaking sensitive memory contents. This may aid attackers in bypassing address space layout randomization (ASLR) in long-running media processing services. Join the discussion | GCVE Database | 07/24/2026, 21:32:22 UTC Added: 07/25/2026, 23:09:28 UTC |
FFmpeg 7.0 through 8.1.2, fixed in commit 4da9812, contains a heap out-of-bounds write vulnerability in the vf_quirc filter that allows an attacker… (CVE-2026-66041)CVE-2026-66041 0 FFmpeg versions 7.0 through 8.1.2 contain a heap out-of-bounds write vulnerability in the vf_quirc filter. This flaw arises when processing crafted PGS/SUP subtitle files with mismatched frame dimensions, leading to heap corruption and potential process crashes or code execution. The vulnerability is fixed in commit 4da9812. Join the discussion | GCVE Database | 07/24/2026, 21:32:22 UTC Added: 07/25/2026, 23:09:28 UTC |
FFmpeg through 8.1.2, fixed in commit 5d7112c, contains an uncontrolled resource consumption vulnerability in the IAMF demuxer that allows an… (CVE-2026-66037)CVE-2026-66037 0 FFmpeg versions through 8.1.2 contain an uncontrolled resource consumption vulnerability in the IAMF demuxer. An unauthenticated attacker can supply a crafted count_label field in a small input file to trigger excessive memory allocation, leading to process memory exhaustion or out-of-memory termination during format probing. The vulnerability is fixed in commit 5d7112c. Join the discussion | GCVE Database | 07/24/2026, 21:32:22 UTC Added: 07/25/2026, 23:09:28 UTC |
FFmpeg through 8.1.2 contains an out-of-bounds write vulnerability that allows attackers to cause heap corruption by supplying a crafted ffconcat… (CVE-2026-65704)CVE-2026-65704 0 FFmpeg versions through 8.1.2 contain an out-of-bounds write vulnerability in the TY demuxer's demux_audio() function. This flaw occurs when processing a crafted ffconcat file with the -safe 0 flag, leading to heap corruption due to improper bounds checking and a negative packet size value that wraps to a large size_t value. This causes reads and writes beyond allocated buffers in the Shorten decoder's bitstream buffer. Join the discussion | GCVE Database | 07/23/2026, 21:31:02 UTC Added: 07/23/2026, 22:51:59 UTC |
FFmpeg versions 3.0 through 8.1.2 contain an out-of-bounds write vulnerability in the vf_swaprect video filter that allows attackers to corrupt heap… (CVE-2026-65706)CVE-2026-65706 0 FFmpeg versions 3.0 through 8.1.2 contain an out-of-bounds write vulnerability in the vf_swaprect video filter. This occurs when processing crafted NV12 video frames with odd width dimensions, leading to heap memory corruption and potential process crashes. The issue arises from a buffer size mismatch during a memcpy operation in the filter_frame() function. This vulnerability can potentially allow code execution. Join the discussion | GCVE Database | 07/23/2026, 21:31:02 UTC Added: 07/23/2026, 22:51:58 UTC |
FFmpeg versions 3.4 through 8.1.2 contain an out-of-bounds write vulnerability in the vf_floodfill video filter that allows attackers to corrupt… (CVE-2026-65705)CVE-2026-65705 0 FFmpeg versions from 3.4 up to and including 8.1.2 contain an out-of-bounds write vulnerability in the vf_floodfill video filter. This flaw occurs when processing dynamically sized video streams with filtergraph reinitialization disabled, leading to heap memory corruption. The vulnerability can cause process crashes and may allow code execution depending on the heap layout and system hardening. Join the discussion | GCVE Database | 07/23/2026, 21:31:02 UTC Added: 07/23/2026, 22:51:58 UTC |
FFmpeg versions 2.7 through 8.1.2 contain an out-of-bounds write vulnerability in the TDSC video decoder that allows remote attackers to cause heap… (CVE-2026-65703)CVE-2026-65703 0 FFmpeg versions 2.7 through 8.1.2 contain an out-of-bounds write vulnerability in the TDSC video decoder. This flaw arises when processing crafted AVI files that change frame dimensions across TDSF frames, leading to heap corruption. The vulnerability is due to the tdsc_parse_tdsf() function not properly unreferencing existing reference frames before buffer allocation, causing subsequent functions to write beyond buffer boundaries. This can result in a process crash and potentially allow remote code execution. Join the discussion | GCVE Database | 07/23/2026, 21:31:02 UTC Added: 07/23/2026, 22:51:57 UTC |
Showing 1 to 10 of 16 results