VulnSea

CWE-400

CVEs classified under CWE-400, newest first.

622 CVEsRSS

CVE-2026-54135High· 7.5PoC
2w ago

AirSane is a SANE frontend, and a scanner server that supports Apple's AirScan protocol

AirSane is a SANE frontend, and a scanner server that supports Apple's AirScan protocol. Versions prior to 0.4.12 have a vulnerability in the custom HTTP server implementation of AirSane that allows a remote unauthenticated attacker to c…

▾ MidnightSimulPiscator · AirSaneEPSS 0.76%via NVD
CVE-2026-68497High· 7.5PoC
2w ago

jackson-databind binds a JSON string to a javax.xml.datatype.Duration or javax.xml.datatype.XMLGregorianCalendar field by passing the raw string verbatim to DatatypeFactory.newDuration(value) or newXMLGregorianCalendar(value) in CoreXMLD…

jackson-databind binds a JSON string to a javax.xml.datatype.Duration or javax.xml.datatype.XMLGregorianCalendar field by passing the raw string verbatim to DatatypeFactory.newDuration(value) or newXMLGregorianCalendar(value) in CoreXMLD…

▾ MidnightFasterXML · com.fasterxml.jackson.core:jackson-databindEPSS 0.58%via NVD
CVE-2026-71646High· 7.5
2w ago

An issue in Robotics-STAR-Lab (SYSU STAR Group) RACER Tested affected version: commit abcdef1234567890 allows an attacker to cause a denial of service via the FastExplorationFSM::optTimerCallback() in swarm_exploration/exploration_manage…

An issue in Robotics-STAR-Lab (SYSU STAR Group) RACER Tested affected version: commit abcdef1234567890 allows an attacker to cause a denial of service via the FastExplorationFSM::optTimerCallback() in swarm_exploration/exploration_manage…

▾ TwilightEPSS 0.49%via NVD
CVE-2026-89147High· 7.5PoC
2w ago

Net-SNMP through 5.9.5.2 contains a denial of service vulnerability in the SMUX module where smux_accept() performs an unauthenticated blocking read without timeout on newly accepted connections

Net-SNMP through 5.9.5.2 contains a denial of service vulnerability in the SMUX module where smux_accept() performs an unauthenticated blocking read without timeout on newly accepted connections. An unauthenticated remote client can conn…

▾ Midnightnet-snmp · Net-SNMPEPSS 0.49%via NVD
CVE-2026-71641High· 7.5
2w ago

An issue in ZJU-FAST-Lab EGO-Planner-v2 All versions up to commit 5c99a95880401e2599638d567abc0e240396cb42 allows an attacker to cause a denial of service via thenteraction between traj_server, poscmd_2_odom, and the EGOReplanFSM emergen…

An issue in ZJU-FAST-Lab EGO-Planner-v2 All versions up to commit 5c99a95880401e2599638d567abc0e240396cb42 allows an attacker to cause a denial of service via thenteraction between traj_server, poscmd_2_odom, and the EGOReplanFSM emergen…

▾ TwilightEPSS 0.61%via NVD
CVE-2026-87908High· 7.5
2w ago

multiparty is a Node.js library for parsing multipart/form-data request bodies

multiparty is a Node.js library for parsing multipart/form-data request bodies. In versions from 2.1.0 up to but not including 4.3.1, the parser does not bound the amount of memory used while accumulating the headers of a single multipar…

▾ Twilightmultiparty · multipartyEPSS 0.51%via NVD
CVE-2026-50018Medium· 6.5PoC
2w ago

Hoverfly is an open source API simulation tool

Hoverfly is an open source API simulation tool. Prior to version 1.12.8, remote post-serve actions use `http.DefaultClient` without any timeout configuration. When the remote endpoint is unreachable or intentionally slow (accepts TCP con…

▾ TwilightSpectoLabs · hoverflyEPSS 0.54%via NVD
CVE-2026-45768High· 7.5
2w ago

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Starting in version 8.0.0 and prior to version 8.0.5, LDAP transaction state could store an unbounded number of respons…

▾ Twilightoisf · suricataEPSS 0.70%via NVD
CVE-2026-45765High· 7.5
2w ago

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to versions 7.0.16 and 8.0.5, DNP3 reassembly could buffer data without sufficient parser-level bounds. Crafted D…

▾ Twilightoisf · suricataEPSS 0.62%via NVD
CVE-2026-45766High· 7.5
2w ago

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to versions 7.0.16 and 8.0.5, certain NFS parser state structures were insufficiently bounded. Crafted NFS traffi…

▾ Twilightoisf · suricataEPSS 0.62%via NVD
CVE-2026-45759High· 7.5
2w ago

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to versions 7.0.16 and 8.0.5, Suricata could repeatedly perform expensive parsing of large HTTP `Content-Disposit…

▾ Twilightoisf · suricataEPSS 0.84%via NVD
CVE-2026-45769High· 7.5PoC
2w ago

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to versions 7.0.16 and 8.0.5,IKEv2 parser state could grow without bounds while storing client transforms. Repeat…

▾ Midnightoisf · suricataEPSS 1.8%via NVD
CVE-2026-9338Medium· 5.3
2w ago

IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to a denial of service, caused by sending a specially-crafted request

IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to a denial of service, caused by sending a specially-crafted request. A remote attacker could exploit this vulnerability to trigger excessive resource consumption, potentially …

▾ Sunlitibm · websphere_application_serverEPSS 0.49%via NVD
CVE-2026-87106Medium· 6.5
2w ago

Consul vulnerable to a denial of service in the native RPC listener

Consul and Consul Enterprise are vulnerable to a denial of service in the native RPC listener that may allow an authenticated client to exhaust server memory before ACL authorization is evaluated. A client that can complete the internal …

▾ SunlitHashiCorp · ConsulEPSS 0.41%via CVEORG
CVE-2026-71643High· 7.5
2w ago

An issue in ZJU-FAST-Lab EGO-Planner-v2 All versions up to commit 5c99a95880401e2599638d567abc0e240396cb42 allows an attacker to cause a denial of service via the EGOReplanFSM component

An issue in ZJU-FAST-Lab EGO-Planner-v2 All versions up to commit 5c99a95880401e2599638d567abc0e240396cb42 allows an attacker to cause a denial of service via the EGOReplanFSM component

▾ TwilightEPSS 0.61%via NVD
CVE-2026-71642Medium· 4.0
2w ago

An issue in ZJU-FAST-Lab EGO-Planner-v2 All versions up to commit 5c99a95880401e2599638d567abc0e240396cb42 allows an attacker to cause a denial of service via the EGOReplanFSM::checkCollisionCallback()

An issue in ZJU-FAST-Lab EGO-Planner-v2 All versions up to commit 5c99a95880401e2599638d567abc0e240396cb42 allows an attacker to cause a denial of service via the EGOReplanFSM::checkCollisionCallback()

▾ SunlitEPSS 0.18%via NVD
CVE-2026-71647High· 7.5
2w ago

An issue in EGO-Planner-v2 All versions up to commit 5c99a95880401e2599638d567abc0e240396cb42 allows an attacker to cause a denial of service via the checkCollisionCallback, execFSMCallback, planFromGlobalTraj in ego_replan_fsm.cpp

An issue in EGO-Planner-v2 All versions up to commit 5c99a95880401e2599638d567abc0e240396cb42 allows an attacker to cause a denial of service via the checkCollisionCallback, execFSMCallback, planFromGlobalTraj in ego_replan_fsm.cpp

▾ TwilightEPSS 0.61%via NVD
GHSA-m3wp-48jr-vr4gHigh· 7.5
2w ago

mistral.rs: Unbounded Remote Media Fetch and Video Frame Expansion DoS

mistral.rs: Unbounded Remote Media Fetch and Video Frame Expansion DoS

▾ Twilightmistralrs-server-core · mistralrs-server-corevia GHSA
CVE-2026-88290High· 7.5
2w ago

GeoVision GV-LPC2211 V1.14 (260903) allows unauthenticated clients to declare unbounded VLSVR frame lengths and indefinitely delay blocking receives, allowing remote exhaustion of memory, connection, and worker resources.

GeoVision GV-LPC2211 V1.14 (260903) allows unauthenticated clients to declare unbounded VLSVR frame lengths and indefinitely delay blocking receives, allowing remote exhaustion of memory, connection, and worker resources.

▾ TwilightGeoVision Inc. · GV-LPC2011/LPC2211EPSS 0.46%via NVD
CVE-2026-88286High· 7.5
2w ago

GeoVision GV-LPC2211 V1.13 improperly manages PTZ connection state, allowing an unauthenticated remote client to block the accept loop and prevent new PTZ connections.

GeoVision GV-LPC2211 V1.13 improperly manages PTZ connection state, allowing an unauthenticated remote client to block the accept loop and prevent new PTZ connections.

▾ TwilightGeoVision Inc. · GV-LPC2011/LPC2211EPSS 0.46%via NVD
CVE-2026-86201High· 7.5PoC
2w ago

PocketMine-MP before 5.41.1 contains a denial of service vulnerability in LoginPacket processing where large or complex structures in unknown clientData JWT properties cause excessive logging without sanitization

PocketMine-MP before 5.41.1 contains a denial of service vulnerability in LoginPacket processing where large or complex structures in unknown clientData JWT properties cause excessive logging without sanitization. Attackers can send craf…

▾ Midnightpmmp · PocketMine-MPEPSS 0.61%via NVD
CVE-2026-22591High· 7.5PoC
2w ago

eprosima Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group)

eprosima Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group). Prior to versions 2.6.12, 2.14.6, 3.2.4, and 3.4.3, Fast DDS’s implementation of SQL‑based content filtering …

▾ MidnighteProsima · Fast-DDSEPSS 0.32%via NVD
CVE-2025-71418Medium· 5.3
2w ago

PocketMine-MP versions before 5.25.2 fail to limit the explode() function in packet parsing, allowing malicious clients to waste server resources

PocketMine-MP versions before 5.25.2 fail to limit the explode() function in packet parsing, allowing malicious clients to waste server resources. Attackers can send crafted packets with excessive delimiters to consume CPU and memory thr…

▾ Sunlitpmmp · PocketMine-MPEPSS 0.40%via NVD
CVE-2026-73786High· 7.5PoC
2w ago

A vulnerability in the web-based management interface of CPPM could allow an unauthenticated remote attacker to conduct a Denial-of-Service (DoS) attack

A vulnerability in the web-based management interface of CPPM could allow an unauthenticated remote attacker to conduct a Denial-of-Service (DoS) attack. Successful exploitation could allow an attacker to cause instability and degrade pe…

▾ MidnightHewlett Packard Enterprise (HPE) · ClearPass Policy Manager (CPPM)EPSS 0.57%via NVD
CVE-2026-86204Medium· 6.5PoC
2w ago

PocketMine-MP versions before 5.39.2 fail to limit JSON payload size in ModalFormResponsePacket handling, allowing authenticated players to cause denial of service

PocketMine-MP versions before 5.39.2 fail to limit JSON payload size in ModalFormResponsePacket handling, allowing authenticated players to cause denial of service. Attackers can send modal form response packets with massive JSON arrays …

▾ Twilightpmmp · PocketMine-MPEPSS 0.44%via NVD
CVE-2026-53937Medium· 6.2PoC
2w ago

MCP Kotlin SDK is the Kotlin Multiplatform software development kit for the Model Context Protocol

MCP Kotlin SDK is the Kotlin Multiplatform software development kit for the Model Context Protocol. In versions 0.7.0 through 0.12.0, `ReadBuffer.append` in `kotlin-sdk-core/src/commonMain/kotlin/io/modelcontextprotocol/kotlin/sdk/shared…

▾ Twilightmodelcontextprotocol · io.modelcontextprotocol:kotlin-sdkEPSS 0.19%via NVD
GHSA-j95f-988m-3j2fHigh
2w ago

Tiptap: Quadratic ReDoS in block and inline Markdown attribute parsing

Tiptap: Quadratic ReDoS in block and inline Markdown attribute parsing

▾ Twilighttiptap · @tiptap/corevia GHSA
GHSA-2x7j-588g-ccc2High· 7.5
2w ago

Nodemailer: Quadratic (O(n²)) time complexity in addressparser allows remote denial of service via a crafted address list

Nodemailer: Quadratic (O(n²)) time complexity in addressparser allows remote denial of service via a crafted address list

▾ Twilightnodemailer · nodemailervia GHSA
CVE-2026-82333High· 7.5
2w ago

multer vulnerable to Denial of Service via oversized array index in field names

multer vulnerable to Denial of Service via oversized array index in field names

▾ Twilightmulter · multerEPSS 0.49%via GHSA
CVE-2026-77037High· 7.5
2w ago

multer vulnerable to Denial of Service via file descriptor leak on aborted uploads

multer vulnerable to Denial of Service via file descriptor leak on aborted uploads

▾ Twilightmulter · multerEPSS 0.58%via GHSA
CWE-400 vulnerabilities (CVEs) — page 7 · VulnSea