Falhas do tipo CWE-1284

234 resultados
CVE-2025-36427MEDIUMIBM Db2 Denial of ServiceEPSS 0.3%CVE-2025-36424MEDIUMIBM Db2 Denial of ServiceEPSS 0.3%CVE-2026-9704MEDIUMKeycloak: keycloak: privilege escalation due to oversized subject_token jwtEPSS 0.3%CVE-2024-31957MEDIUMA vulnerability was discovered in Samsung Mobile Processors Exynos 2200 and Exynos 2400 where they lack a check for the validation of nativeEPSS 0.3%CVE-2025-61938HIGHBIG-IP Advanced WAF and ASM bd process vulnerabilityEPSS 0.3%CVE-2026-40093HIGHnimiq-blockchain is missing a wall-clock upper bound on block timestampsEPSS 0.3%CVE-2025-32689HIGHWordPress Download Manager and Payment Form plugin <= 2.8.2 - Price Manipulation vulnerabilityEPSS 0.3%CVE-2026-21485HIGHiccDEV Undefined Behavior (UB) and Out of Memory in CIccProfile::LoadTag()EPSS 0.3%CVE-2023-0195LOWNVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer driver nvlddmkm.sys, where an can cause CWE-1284, whEPSS 0.3%CVE-2026-27384CRITICALWordPress W3 Total Cache plugin <= 2.9.1 - Arbitrary Code Execution vulnerabilityEPSS 0.3%CVE-2021-47824MEDIUMiDailyDiary 4.30 - Denial of Service (PoC)EPSS 0.3%CVE-2025-36428MEDIUMIBM Db2 Denial of ServiceEPSS 0.3%CVE-2023-52343MEDIUMIn SecurityCommand message after as security has been actived., there is a possible improper input validation. This could lead to remote infEPSS 0.3%CVE-2025-5257MEDIUMPredictable Page Indexing Might Lead to Sensitive Data ExposureEPSS 0.3%CVE-2025-52534MEDIUMImproper bound check within AMD CPU microcode can allow a malicious guest to write to host memory, potentially resulting in loss of integritEPSS 0.3%CVE-2026-2597HIGHCrypt::SysRandom::XS versions before 0.010 for Perl is vulnerable to a heap buffer overflow in the XS function random_bytes()EPSS 0.3%CVE-2026-2474HIGHCrypt::URandom versions from 0.41 before 0.55 for Perl is vulnerable to a heap buffer overflow in the XS function crypt_urandom_getrandom()EPSS 0.3%CVE-2026-41677LOWrust-openssl: Out-of-bounds read in PEM password callback when user callback returns an oversized lengthEPSS 0.3%CVE-2021-46893Vulnerability of unstrict data verification and parameter check. Successful exploitation of this vulnerability may affect integrity.EPSS 0.3%CVE-2025-43881MEDIUMImproper validation of specified quantity in input issue exists in Real-time Bus Tracking System versions prior to 1.1. If exploited, a deniEPSS 0.3%