Fallos del tipo CWE-672

50 resultados
CVE-2022-45292MEDIUMUser invites for Funkwhale v1.2.8 do not permanently expire after being used for signup and can be used again after an account has been deleEPSS 0.5%CVE-2026-31875HIGHParse Server MFA recovery codes not consumed after useEPSS 0.4%CVE-2022-27499LOWPremature release of resource during expected lifetime in the Intel(R) SGX SDK software may allow a privileged user to potentially enable inEPSS 0.4%CVE-2024-25619LOWDestroying OAuth Applications doesn't notify Streaming of Access Tokens being destroyed in mastodonEPSS 0.4%CVE-2013-10075CRITICALApache::Session versions through 1.94 for Perl re-creates deleted sessionsEPSS 0.4%CVE-2025-2517LOWReference to Expired Domain Vulnerability in OpenText™ ArcSight Enterprise Security ManagerEPSS 0.4%CVE-2025-58149HIGHIncorrect removal of permissions on PCI device unplugEPSS 0.4%CVE-2025-55669HIGHBIG-IP HTTP/2 vulnerabilityEPSS 0.4%CVE-2024-4693MEDIUMQemu-kvm: virtio-pci: improper release of configure vector leads to guest triggerable crashEPSS 0.3%CVE-2026-42791MEDIUMOCSP responder certificate validity period not checked in public_keyEPSS 0.3%CVE-2025-30351LOWSuspended Directus user can continue to use session token to access APIEPSS 0.3%CVE-2025-10060MEDIUMMongoDB may be susceptible to Invariant Failure in Transactions due Upsert OperationEPSS 0.3%CVE-2026-56314HIGHCapgo - Deleted Bundle Selection via Missing Deletion Filter in /updates EndpointEPSS 0.3%CVE-2025-53901LOWWasmtime has host panic with `fd_renumber` WASIp1 functionEPSS 0.3%CVE-2026-45005MEDIUMOpenClaw < 2026.4.23 - Webhook Route Secret Cache Not Invalidated After RotationEPSS 0.3%CVE-2024-23332MEDIUMClient configured with permissive trust policies susceptible to rollback attack in Notary ProjectEPSS 0.3%CVE-2023-34326HIGHx86/AMD: missing IOMMU TLB flushingEPSS 0.3%CVE-2026-30978HIGHHeap-use-after-free in CIccCmm::AddXform()EPSS 0.3%CVE-2025-69415HIGHIn Plex Media Server (PMS) through 1.42.2.10156, ability to access /myplex/account with a device token is not properly aligned with whether EPSS 0.3%CVE-2025-6031HIGHInsecure device pairing in end of life Amazon Cloud CamEPSS 0.2%