CWE-120


Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow.


We have discovered 372,686 live websites that are affected by CWE-120.

Contact us to get more info









CVEs

  • Count - 13



Website Distribution by Country

Number of websites using CWE-120
United States56,003 websites



France158,067 websites
Russia16,806 websites
China13,869 websites
Germany13,123 websites
Netherlands13,013 websites
Japan12,447 websites
Poland8,022 websites
Brazil6,929 websites
Italy6,816 websites

Website Distribution by TLD

Number of websites using CWE-120
.com144,218 websites
.fr66,009 websites
.ru14,365 websites
.org14,214 websites
.net10,945 websites
.nl9,556 websites
.be8,227 websites
.de8,046 websites
.pl7,709 websites
.it6,794 websites

Newest CVEs

List of the most recent CVEs that are part of CWE-120
DiscoveredCVEDescriptionWebsites
Feb, 2026CVE-2026-27942 fast-xml-parser has stack overflow in XMLBuilder with preserveOrder347
Jul, 2025CVE-2025-48386 Git allows a buffer overflow in 'wincred' credential helper474
Mar, 2023CVE-2023-25664 TensorFlow vulnerable to Heap Buffer Overflow in AvgPoolGrad 29
Nov, 2022CVE-2022-41894 Buffer overflow in `CONV_3D_TRANSPOSE` on TFLite27
Jun, 2022CVE-2022-31626 mysqlnd/pdo password buffer overflow252,271
Nov, 2021CVE-2021-41221 Access to invalid memory during shape inference in `Cudnn*` ops25
Nov, 2021CVE-2021-41216 Heap buffer overflow in `Transpose`25
Aug, 2021CVE-2021-37650 Segfault and heap buffer overflow in `{Experimental,}DatasetToTFRecord` in TensorFlow25
May, 2021CVE-2021-29612 Heap buffer overflow in `BandedTriangularSolve`25
May, 2021CVE-2021-29540 Heap buffer overflow in `Conv2DBackpropFilter`25
List of the most common CVEs that are part of CWE-120
DiscoveredCVEDescriptionWebsites
Jun, 2022CVE-2022-31626 mysqlnd/pdo password buffer overflow252,271
Oct, 2019CVE-2019-11043 Underflow in PHP-FPM can lead to RCE119,565
Jul, 2025CVE-2025-48386 Git allows a buffer overflow in 'wincred' credential helper474
Feb, 2026CVE-2026-27942 fast-xml-parser has stack overflow in XMLBuilder with preserveOrder347
Mar, 2023CVE-2023-25664 TensorFlow vulnerable to Heap Buffer Overflow in AvgPoolGrad 29
Nov, 2022CVE-2022-41894 Buffer overflow in `CONV_3D_TRANSPOSE` on TFLite27
May, 2021CVE-2021-29520 Heap buffer overflow in `Conv3DBackprop*`25
May, 2021CVE-2021-29540 Heap buffer overflow in `Conv2DBackpropFilter`25
May, 2021CVE-2021-29612 Heap buffer overflow in `BandedTriangularSolve`25
Aug, 2021CVE-2021-37650 Segfault and heap buffer overflow in `{Experimental,}DatasetToTFRecord` in TensorFlow25

Websites affected by CWE-120

Top websites that are affected by CWE-120. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
*.cn China*,***
*****.pl Poland*,***
*********.org United States*,***
*********.com China*,***
****.com China*,***
**********.org United States*,***
******.com France*,***
*******.pro Russia*,***
*****.**.com China*,***
*****.org United States*,***
See full domain list