VulnSea

CWE-400

CVEs classified under CWE-400, newest first.

623 CVEsRSS

CVE-2026-48155Medium
3mo ago

pypdf: Possible large memory usage for large offsets for layout mode text

pypdf: Possible large memory usage for large offsets for layout mode text

▾ Sunlitpypdf · pypdfEPSS 0.18%via OSV
CVE-2026-54092High· 6.5
3mo ago

File Browser has a DoS Vulnerability via Public Login API

File Browser has a DoS Vulnerability via Public Login API

▾ Twilightfilebrowser · github.com/filebrowser/filebrowser/v2EPSS 0.55%via GHSA
CVE-2026-50011High· 7.5PoC
3mo ago

Netty is a network application framework for development of protocol servers and clients

Netty is a network application framework for development of protocol servers and clients. Prior to versions 4.1.135.Final and 4.2.15.Final, RedisArrayAggregator pre-allocates ArrayList with initial capacity equal to the RESP array elemen…

▾ Midnightnetty · nettyEPSS 0.85%via NVD
CVE-2026-45169High· 8.6
3mo ago

Idira Privileged Access Manager (PAM) Self-Hosted Vault versions prior to 15.0.3, 14.6.5, 14.2.7, and 14.0.8 exhibit a validation vulnerability

Idira Privileged Access Manager (PAM) Self-Hosted Vault versions prior to 15.0.3, 14.6.5, 14.2.7, and 14.0.8 exhibit a validation vulnerability. Under specific circumstances and configuration scenarios, processing unexpected input could …

▾ Twilightpaloaltonetworks · idira_privileged_access_manager_vaultEPSS 0.63%via NVD
CVE-2026-48043Medium· 5.3⚖ disputed
3mo ago

Netty is a network application framework for development of protocol servers and clients

Netty is a network application framework for development of protocol servers and clients. In netty-codec-http2 prior to versions 4.1.135.Final and 4.2.15.Final, the `DelegatingDecompressorFrameListener` class orchestrates HTTP/2 decompre…

▾ Sunlitnetty · nettyEPSS 0.88%via NVD
CVE-2026-44496High· 7.5PoC
3mo ago

Axios is a promise based HTTP client for the browser and Node.js

Axios is a promise based HTTP client for the browser and Node.js. Axios versions before 0.32.0 on the 0.x line and before 1.16.0 on the 1.x line build a regular expression from the configured XSRF cookie name without escaping regex metac…

▾ Midnightaxios · axiosEPSS 0.97%via NVD
CVE-2026-44250High· 7.5
3mo ago

Netty is a network application framework for development of protocol servers and clients

Netty is a network application framework for development of protocol servers and clients. In netty-codec-redis prior to versions 4.1.135.Final and 4.2.15.Final, an attacker can cause DoS by sending a crafted Redis payload with deeply nes…

▾ Twilightnetty · nettyEPSS 0.85%via NVD
CVE-2026-44890High· 7.5
3mo ago

Netty is a network application framework for development of protocol servers and clients

Netty is a network application framework for development of protocol servers and clients. In netty-codec-redis prior to versions 4.1.135.Final and 4.2.15.Final, an attacker can cause DoS by sending crafted Redis payloads across multiple …

▾ Twilightnetty · nettyEPSS 0.85%via NVD
CVE-2026-48038Medium· 5.3
3mo ago

joi has an uncaught RangeError on deeply nested input through recursive `link()` schemas

joi has an uncaught RangeError on deeply nested input through recursive `link()` schemas

▾ Sunlitjoi · joiEPSS 0.52%via GHSA
CVE-2026-48069High· 7.5
3mo ago

@grpc/grpc-js: An incoming malformed compressed message can cause a client or server crash

@grpc/grpc-js: An incoming malformed compressed message can cause a client or server crash

▾ Twilightgrpc · @grpc/grpc-jsEPSS 0.88%via GHSA
CVE-2026-48045Medium· 6.5
3mo ago

python-zeroconf: Unbounded TC-deferred queue allows LAN-local memory exhaustion via spoofed-source flood

python-zeroconf: Unbounded TC-deferred queue allows LAN-local memory exhaustion via spoofed-source flood

▾ Sunlitzeroconf · zeroconfEPSS 0.37%via GHSA
CVE-2026-5497High· 7.5
3mo ago

vLLM versions 0.8.0 and later are vulnerable to an Out-of-Memory (OOM) Denial of Service (DoS) attack due to unbounded frame count processing in the `VideoMediaIO.load_base64()` method

vLLM versions 0.8.0 and later are vulnerable to an Out-of-Memory (OOM) Denial of Service (DoS) attack due to unbounded frame count processing in the `VideoMediaIO.load_base64()` method. When processing `video/jpeg` data URLs, the method …

▾ Twilightvllm · vllmEPSS 0.90%via NVD
CVE-2026-41721Medium· 5.9
3mo ago

Spring Data Commons contains a vulnerability that can lead to a Denial of Service (DoS) condition if Spring Data Web Support is enabled in conjunction with a Controller method using @ProjectedPayload, when an attacker sends a specially c…

Spring Data Commons contains a vulnerability that can lead to a Denial of Service (DoS) condition if Spring Data Web Support is enabled in conjunction with a Controller method using @ProjectedPayload, when an attacker sends a specially c…

▾ Sunlitbroadcom · spring_data_commonsEPSS 0.44%via NVD
CVE-2026-41711Medium· 5.9
3mo ago

Applications using Spring Data Commons may be vulnerable to a Denial of Service (DoS) attack leading to a StackOverflowException when parsing Sort parameters. Affected versions: Spring Data Commons 4.0.0 through 4.0.5; 3.5.0 through 3.5…

Applications using Spring Data Commons may be vulnerable to a Denial of Service (DoS) attack leading to a StackOverflowException when parsing Sort parameters. Affected versions: Spring Data Commons 4.0.0 through 4.0.5; 3.5.0 through 3.5…

▾ Sunlitbroadcom · spring_data_commonsEPSS 0.37%via NVD
CVE-2026-41695High· 7.5
3mo ago

Spring Data Commons applications may be vulnerable to denial of service through resource exhaustion when attacker-controlled property path strings are passed to MappingContext property path resolution. Affected versions: Spring Data Com…

Spring Data Commons applications may be vulnerable to denial of service through resource exhaustion when attacker-controlled property path strings are passed to MappingContext property path resolution. Affected versions: Spring Data Com…

▾ Twilightbroadcom · spring_data_commonsEPSS 0.46%via NVD
CVE-2026-40988High· 7.5
3mo ago

An application using spring-security-saml2-service-provider and the REDIRECT binding for SAML 2.0 Login or Logout may be vulnerable to a denial of service by way of an unbounded writer that inflates the compressed SAML payload into memor…

An application using spring-security-saml2-service-provider and the REDIRECT binding for SAML 2.0 Login or Logout may be vulnerable to a denial of service by way of an unbounded writer that inflates the compressed SAML payload into memor…

▾ Twilightvmware · spring_securityEPSS 0.46%via NVD
CVE-2026-10143High· 7.5
3mo ago

kafka-python: kafka-python: Denial of Service via excessive SCRAM authentication iteration count (CVE-2026-10143)

A flaw was found in kafka-python. A malicious or machine-in-the-middle broker could exploit a denial-of-service vulnerability during SCRAM authentication. By providing an excessively large iteration count, the broker can cause the client's…

▾ TwilightRed Hat · Red Hat Quay 3.12EPSS 0.52%via CSAF
CVE-2025-53114High· 7.5
3mo ago

Acknowledgement extension out of memory

Acknowledgement extension out of memory

▾ Twilightcometd · org.cometd.java:cometd-java-server-commonEPSS 0.68%via GHSA
CVE-2026-49160High· 7.5PoC
3mo ago

HTTP.sys Denial of Service Vulnerability

Uncontrolled resource consumption in HTTP/2 allows an unauthorized attacker to deny service over a network.

▾ MidnightMicrosoft · Windows 10 Version 1607EPSS 1.2%via CVEORG
CVE-2026-41842High· 7.5
3mo ago

Spring MVC and WebFlux applications are vulnerable to Denial of Service (DoS) attacks when resolving static resources. Affected versions: Spring Framework 7.0.0 through 7.0.7; 6.2.0 through 6.2.18; 6.1.0 through 6.1.27; 5.3.0 through 5.…

Spring MVC and WebFlux applications are vulnerable to Denial of Service (DoS) attacks when resolving static resources. Affected versions: Spring Framework 7.0.0 through 7.0.7; 6.2.0 through 6.2.18; 6.1.0 through 6.1.27; 5.3.0 through 5.…

▾ Twilightvmware · spring_frameworkEPSS 0.46%via NVD
CVE-2026-40984High· 7.5
3mo ago

In Micrometer, it is possible for a user to provide specially crafted HTTP requests that may cause a denial-of-service (DoS) condition. Affected versions: micrometer-core 1.16.0 through 1.16.5; 1.15.0 through 1.15.11; 1.14.0 through 1.1…

In Micrometer, it is possible for a user to provide specially crafted HTTP requests that may cause a denial-of-service (DoS) condition. Affected versions: micrometer-core 1.16.0 through 1.16.5; 1.15.0 through 1.15.11; 1.14.0 through 1.1…

▾ TwilightSpring · micrometer-coreEPSS 1.1%via NVD
CVE-2026-45591High· 7.5
3mo ago

ASP.NET Core Denial of Service Vulnerability

Uncontrolled resource consumption in ASP.NET Core allows an unauthorized attacker to deny service over a network.

▾ TwilightMicrosoft · .NET 10.0EPSS 2.4%via CVEORG
CVE-2026-40983High· 7.5
3mo ago

In Micrometer, it is possible for a user to provide specially crafted gRPC requests that may cause a denial-of-service (DoS) condition. Affected versions: Micrometer 1.16.0 through 1.16.5; 1.15.0 through 1.15.11.

In Micrometer, it is possible for a user to provide specially crafted gRPC requests that may cause a denial-of-service (DoS) condition. Affected versions: Micrometer 1.16.0 through 1.16.5; 1.15.0 through 1.15.11.

▾ TwilightSpring · MicrometerEPSS 0.85%via NVD
CVE-2026-49235High
3mo ago

Routinator crashes when encountering maliciously crafted RRDP XML files

Routinator crashes when encountering maliciously crafted RRDP XML files

▾ Twilightroutinator · routinatorEPSS 0.46%via GHSA
CVE-2026-44892High· 7.5
3mo ago

Netty has a Vulnerable Default Configuration Which Leads to Denial of Service via Unbounded HTTP/3 Header Size

Netty has a Vulnerable Default Configuration Which Leads to Denial of Service via Unbounded HTTP/3 Header Size

▾ Twilightnetty · io.netty:netty-codec-http3EPSS 0.49%via GHSA
CVE-2026-47734Medium· 5.7
3mo ago

Dulwich has unbounded memory allocation in receive-pack from crafted thin packs

Dulwich has unbounded memory allocation in receive-pack from crafted thin packs

▾ Sunlitdulwich · dulwichEPSS 0.33%via GHSA
CVE-2026-47736High· 7.5
3mo ago

Puma PROXY Protocol v1 Parser Allows Remote Memory Exhaustion

Puma PROXY Protocol v1 Parser Allows Remote Memory Exhaustion

▾ Twilightpuma · pumaEPSS 0.63%via GHSA
CVE-2026-46273High· 8.6
3mo ago

In the Linux kernel, the following vulnerability has been resolved: ibmveth: Disable GSO for packets with small MSS Some physical adapters on Power systems do not support segmentation offload when the MSS is less than 224 bytes

In the Linux kernel, the following vulnerability has been resolved: ibmveth: Disable GSO for packets with small MSS Some physical adapters on Power systems do not support segmentation offload when the MSS is less than 224 bytes. Attemp…

▾ Twilightlinux · linux_kernelEPSS 0.72%via NVD
CVE-2026-10291Medium· 4.3
3mo ago

A security vulnerability has been detected in Enderfga claw-orchestrator up to 3.7.0

A security vulnerability has been detected in Enderfga claw-orchestrator up to 3.7.0. The impacted element is the function validateRegex of the file claw-orchestrator/src/embedded-server.ts of the component Session Grep Endpoint. The man…

▾ SunlitEPSS 0.35%via NVD
CVE-2026-46385High· 7.5PoC
4mo ago

iskorotkov/avro is a fast Go Avro codec

iskorotkov/avro is a fast Go Avro codec. Prior to 2.33.0, the Avro array and map decoders looped over an attacker-controlled block-count value without checking the underlying reader's error state inside the loop body. Reader.ReadBlockHea…

▾ Midnightiskorotkov · avroEPSS 0.88%via NVD
CWE-400 vulnerabilities (CVEs) — page 17 · VulnSea