Blog

"Prevention is cheaper than a breach"

Live Vulnerability Intelligence

Threat Database

Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.

Total48
Critical1
High22
Medium24
Reset
Showing 41-48 of 48 records
Threat Entry Updated 2026-01-12

CVE-2026-21676 - iccDEV Plugin

iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1 and below have a Heap-based Buffer Overflow in its CIccMBB::Validate function which checks tag data validity. This issue is fixed in version 2.3.1.1.

PLUGIN iccDEV

CVE-2026-21676

HIGH CVSS 8.8 2026-01-06
Threat Entry Updated 2026-01-12

CVE-2026-21487 - iccDEV Plugin

iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1.1 and below have an Out-of-bounds Read, Use of Out-of-range Pointer Offset and have Improper Input Validation in its CIccProfile::LoadTag function. This issue is fixed in version 2.3.1.2.

PLUGIN iccDEV

CVE-2026-21487

MEDIUM CVSS 6.1 2026-01-06
Threat Entry Updated 2026-01-14

CVE-2026-21485 - iccDEV Plugin

iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1.1 and below are prone to have Undefined Behavior (UB) and Out of Memory errors. This issue is fixed in version 2.3.1.2.

PLUGIN iccDEV

CVE-2026-21485

HIGH CVSS 8.8 2026-01-06
Threat Entry Updated 2026-01-12

CVE-2026-21486 - iccDEV Plugin

iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1.1 and below contain Use After Free, Heap-based Buffer Overflow and Integer Overflow or Wraparound and Out-of-bounds Write vulnerabilities in its CIccSparseMatrix::CIccSparseMatrix function. This issue is fixed in version 2.3.1.2.

PLUGIN iccDEV

CVE-2026-21486

HIGH CVSS 7.8 2026-01-06
Threat Entry Updated 2026-01-12

CVE-2026-21675 - iccDEV Plugin

iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1 and below contain a Use After Free vulnerability in the CIccXform::Create() function, where it deletes the hint. This issue is fixed in version 2.3.1.1.

PLUGIN iccDEV

CVE-2026-21675

CRITICAL CVSS 9.8 2026-01-06
Threat Entry Updated 2026-01-12

CVE-2026-21673 - iccDEV Plugin

iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1 and below have overflows and underflows in CIccXmlArrayType::ParseTextCountNum(). This vulnerability affects users of the iccDEV library who process ICC color profiles. This issue is fixed in version 2.3.1.1.

PLUGIN iccDEV

CVE-2026-21673

HIGH CVSS 7.8 2026-01-06
Threat Entry Updated 2026-01-12

CVE-2026-21674 - iccDEV Plugin

iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1 and below contain a memory leak vulnerability in its XML MPE Parsing Path (iccFromXml). This issue is fixed in version 2.3.1.1.

PLUGIN iccDEV

CVE-2026-21674

LOW CVSS 3.3 2026-01-06
Threat Entry Updated 2026-01-12

CVE-2026-21507 - iccDEV Plugin

iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1 and below have an infinite loop in the IccProfile.cpp function, CalcProfileID. This issue is fixed in version 2.3.1.1.

PLUGIN iccDEV

CVE-2026-21507

HIGH CVSS 7.5 2026-01-06
Scroll to top