CWE-1325
CVEs classified under CWE-1325, newest first.
5 CVEsRSS
CVE-2026-71436Medium· 7.5Mermaid is a JavaScript tool that uses Markdown-inspired text to create and modify diagrams and charts
Mermaid is a JavaScript tool that uses Markdown-inspired text to create and modify diagrams and charts. From version 10.6.0 until 10.9.8 and 11.16.1, Mermaid XY Charts are vulnerable to an infinite loop denial of service in the setXAxisR…
▾ Sunlitmermaid · mermaidEPSS 0.41%via NVD
CVE-2026-54080MediumveraPDF Parser DoS via PostScript CMap Streams
veraPDF Parser DoS via PostScript CMap Streams
▾ Sunlitverapdf · org.verapdf:parserEPSS 0.30%via GHSA
CVE-2026-54081MediumveraPDF Parser DoS via PostScript Type 1 Font Programs
veraPDF Parser DoS via PostScript Type 1 Font Programs
▾ Sunlitverapdf · org.verapdf:parserEPSS 0.30%via GHSA
GHSA-f283-ghqc-fg79Medium· 5.3Guzzle: Unbounded response cookies risk denial of service
Guzzle: Unbounded response cookies risk denial of service
▾ Sunlitguzzlehttp · guzzlehttp/guzzlevia GHSA
CVE-2025-2240High· 7.5A flaw was found in Smallrye, where smallrye-fault-tolerance is vulnerable to an out-of-memory (OOM) issue
A flaw was found in Smallrye, where smallrye-fault-tolerance is vulnerable to an out-of-memory (OOM) issue. This vulnerability is externally triggered when calling the metrics URI. Every call creates a new object within meterMap and may …
▾ TwilightEPSS 1.0%via NVD