Fallos del tipo CWE-697

70 resultados
CVE-2026-34210MEDIUMmppx has Stripe charge credential replay via missing idempotency checkEPSS 0.5%CVE-2023-23765MEDIUMIncorrect comparison vulnerability in GitHub Enterprise Server leading to commit smugglingEPSS 0.5%CVE-2025-54336CRITICALIn Plesk Obsidian 18.0.70, _isAdminPasswordValid uses an == comparison. Thus, if the correct password is "0e" followed by any digit string, EPSS 0.5%CVE-2023-23764MEDIUMIncorrect comparison vulnerability in GitHub Enterprise Server leading to commit smugglingEPSS 0.5%CVE-2015-6964MEDIUMMultiBit HD before 0.1.2 allows attackers to conduct bit-flipping attacks that insert unspendable Bitcoin addresses into the list that MultiEPSS 0.4%CVE-2024-29026HIGHOwncast cross origin requestEPSS 0.4%CVE-2026-44249HIGHNetty has an IPv6 Subnet Filter Bypass via Incorrect Comparator MaskingEPSS 0.4%CVE-2024-28246MEDIUMKaTeX is missing normalization of the protocol in URLs allows bypassing forbidden protocolsEPSS 0.4%CVE-2021-20219A denial of service vulnerability was found in n_tty_receive_char_special in drivers/tty/n_tty.c of the Linux kernel. In this flaw a local aEPSS 0.4%CVE-2023-25673HIGHTensorFlow has Floating Point Exception in TensorListSplit with XLA EPSS 0.4%CVE-2025-9401MEDIUMHuangDou UTCMS Login login.php comparisonEPSS 0.4%CVE-2023-25675HIGHTensorFlow has Segfault in Bincount with XLAEPSS 0.4%CVE-2023-27579HIGHTensorFlow has Floating Point Exception in TFLite in conv kernelEPSS 0.4%CVE-2023-25669HIGHTensorFlow has Floating Point Exception in AvgPoolGrad with XLAEPSS 0.4%CVE-2023-25666HIGHTensorFlow has Floating Point Exception in AudioSpectrogram EPSS 0.4%CVE-2026-35040MEDIUMfast-jwt: Stateful RegExp (/g or /y) causes non-deterministic allowed-claim validation (logical DoS)EPSS 0.4%CVE-2022-35091MEDIUMSWFTools commit 772e55a2 was discovered to contain a floating point exception (FPE) via DCTStream::readMCURow() at /xpdf/Stream.cc.ow()EPSS 0.4%CVE-2025-47416MEDIUMConsoleFindCommandMatchListEPSS 0.3%CVE-2026-45569HIGHRoxy-WI: Path-traversal patch in commit d4d10006 is a no-op (tuple-membership bug)EPSS 0.3%CVE-2026-44196CRITICALPingvin Share X: TOTP Authentication Bypass via Password-only LoginEPSS 0.3%