CVE Browser

Search and filter CVEs by severity, ecosystem, EPSS score, and more.

Clear
More filters (active)

Page 1

CVE-2026-85091 HIGH

zlib 1.3.1.2 through 1.3.2 Heap Buffer Overflow via gz_vacate

CVSS 8.3 EPSS 0.59% Sep 3, 2026
CVE-2026-76844 HIGH

zlib 1.2.11 through 1.3.2 Heap Buffer Overflow via Stale gzwrite Pointer After Failed Write

CVSS 8.3 EPSS 0.48% Aug 24, 2026
npm
CVE-2026-27171 MEDIUM

zlib: zlib: Denial of Service via infinite loop in CRC32 combine functions

CVSS 5.5 EPSS 0.19% Feb 18, 2026
CVE-2026-22184 MEDIUM

zlib <= 1.3.1.2 untgz Global Buffer Overflow in TGZfname()

CVSS 4.6 EPSS 0.42% Jan 7, 2026
CVE-2023-45853 CRITICAL

zlib: integer overflow and resultant heap-based buffer overflow in zipOpenNewFileInZip4_6

CVSS 9.8 EPSS 3.18% Oct 14, 2023
CVE-2022-37434 CRITICAL

zlib: heap-based buffer over-read and overflow in inflate() in inflate.c via a large gzip header extra field

CVSS 9.8 EPSS 18.97% Aug 5, 2022
CVE-2018-25032 HIGH

zlib: A flaw found in zlib when compressing (not decompressing) certain inputs

CVSS 8.2 EPSS 51.73% Mar 25, 2022
CVE-2016-9843 CRITICAL

zlib: Big-endian out-of-bounds pointer

CVSS 9.8 EPSS 5.77% May 23, 2017
CVE-2016-9842 HIGH

zlib: Undefined left shift of negative number

CVSS 8.8 EPSS 5.20% May 23, 2017
CVE-2016-9841 CRITICAL

zlib: Out-of-bounds pointer arithmetic in inffast.c

CVSS 9.8 EPSS 7.55% May 23, 2017
CVE-2016-9840 HIGH

zlib: Out-of-bound pointer arithmetic in inftrees.c

CVSS 8.8 EPSS 4.79% May 23, 2017
CVE-2015-1191 MEDIUM

Multiple directory traversal vulnerabilities in pigz 2.3.1 allow remote attackers to write to arbitrary files via a (1) full pathname or (2) .. (dot dot) in an…

CVSS 5.0 EPSS 3.03% Jan 21, 2015
CVE-2013-0296 MEDIUM

Race condition in pigz before 2.2.5 uses permissions derived from the umask when compressing a file before setting that file's permissions to match those of th…

CVSS 4.4 EPSS 0.34% Apr 27, 2014
CVE-2005-1849 MEDIUM

zlib DoS

CVSS 5.0 EPSS 4.08% Jul 26, 2005
CVE-2005-2096 HIGH

zlib DoS

CVSS 7.5 EPSS 5.63% Jul 6, 2005
CVE-2004-0797 LOW

The error handling in the (1) inflate and (2) inflateBack functions in ZLib compression library 1.2.x allows local users to cause a denial of service (applicat…

CVSS 2.1 EPSS 0.47% Sep 14, 2004
CVE-2003-0107 HIGH

security flaw

CVSS 7.5 EPSS 25.99% Sep 1, 2004
CVE-2002-0059 CRITICAL

zlib: Double free in inflateEnd

CVSS 9.8 EPSS 9.69% Jun 25, 2002

Showing 1 to 18 CVEs · page 1