VulnSea

CWE-404

CVEs classified under CWE-404, newest first.

82 CVEsRSS

CVE-2026-94137Low· 3.3
today

A vulnerability was identified in Hangzhou Shunwang Technology shzh 10.7.2.693

A vulnerability was identified in Hangzhou Shunwang Technology shzh 10.7.2.693. This affects the function sub_180004AC0 of the file shdrv_x64.sys of the component IRP_MJ_DEVICE_CONTROL Handler. The manipulation of the argument PID leads …

SunlitHangzhou Shunwang Technology · shzhEPSS 0.11%via NVD
CVE-2026-94094Medium· 4.3
yesterday

A flaw has been found in OpenClaw up to 2026.9.5

A flaw has been found in OpenClaw up to 2026.9.5. Affected is the function createCanvasHostHandler of the file extensions/canvas/src/host/server.ts of the component Canvas Host Route. Executing a manipulation can lead to denial of servic…

SunlitEPSS 0.27%via NVD
CVE-2026-93312Medium· 4.3
3d ago

A flaw has been found in Freedesktop Poppler 26.07.0

A flaw has been found in Freedesktop Poppler 26.07.0. Impacted is the function JBIG2Stream::rewind of the file poppler/JBIG2Stream.cc. This manipulation causes null pointer dereference. It is possible to initiate the attack remotely. The…

SunlitFreedesktop · PopplerEPSS 0.34%via NVD
CVE-2026-92881Medium· 4.3
4d ago

A security vulnerability has been detected in vgmstream

A security vulnerability has been detected in vgmstream. The affected element is the function init_vgmstream_awb_memory of the file src/meta/awb.c of the component AWB parser. Such manipulation leads to divide by zero. The attack can be …

SunlitEPSS 0.34%via NVD
CVE-2026-92879Medium· 4.3
4d ago

A security flaw has been discovered in vgmstream up to r2117

A security flaw has been discovered in vgmstream up to r2117. This issue affects the function parse_mus of the file src/meta/mus_acm.c. The manipulation results in resource consumption. The attack may be launched remotely. The patch is i…

SunlitEPSS 0.43%via NVD
CVE-2026-92417Medium· 6.5
5d ago

A vulnerability was found in Open5GS up to 2.8.0

A vulnerability was found in Open5GS up to 2.8.0. This affects the function ogs_pfcp_parse_volume_measurement in the library lib/pfcp/types.c of the component PFCP Handler. The manipulation results in null pointer dereference. The attack…

SunlitEPSS 0.64%via NVD
CVE-2026-92413Medium· 4.3PoC
5d ago

A flaw has been found in Artifex MuPDF up to b6d17493700c621c0e70036980a6ebd06d2202c9

A flaw has been found in Artifex MuPDF up to b6d17493700c621c0e70036980a6ebd06d2202c9. Affected by this vulnerability is the function pdf_open_filter of the file pdf-stream.c of the component PDF Xref Loading. Executing a manipulation ca…

TwilightArtifex · MuPDFEPSS 0.43%via NVD
CVE-2026-92365Medium· 4.3⚖ disputed
5d ago

A vulnerability was found in vllm-project vllm up to 0.29.0

A vulnerability was found in vllm-project vllm up to 0.29.0. Affected by this issue is some unknown functionality of the file vllm/v1/sample/thinking_budget_state.py. The manipulation results in inefficient algorithmic complexity. It is …

Sunlitvllm-project · vllmEPSS 0.39%via NVD
CVE-2026-92362High· 7.3
5d ago

A vulnerability was detected in ag-ui-protocol ag-ui 1.0

A vulnerability was detected in ag-ui-protocol ag-ui 1.0. This impacts an unknown function of the file crates/ag-ui-client/src/sse.rs of the component SSE Frame Parser. Performing a manipulation results in resource consumption. The attac…

Twilightag-ui-protocol · ag-uiEPSS 0.51%via NVD
CVE-2026-92363Medium· 4.3
5d ago

A flaw has been found in ag-ui-protocol ag-ui 1.0

A flaw has been found in ag-ui-protocol ag-ui 1.0. Affected is an unknown function of the file src/stream/sse_parser.cpp of the component JSON Parser. Executing a manipulation can lead to resource consumption. The attack may be performed…

Sunlitag-ui-protocol · ag-uiEPSS 0.52%via NVD
CVE-2026-92361Medium· 4.3
5d ago

A security vulnerability has been detected in ag-ui-protocol ag-ui 1.0

A security vulnerability has been detected in ag-ui-protocol ag-ui 1.0. This affects an unknown function of the file sdks/community/go/pkg/client/sse/client.go of the component SSE Client. Such manipulation leads to resource consumption.…

Sunlitag-ui-protocol · ag-uiEPSS 0.51%via NVD
CVE-2026-92356Medium· 4.3
5d ago

A vulnerability was determined in a2ui-project a2ui 0.9/0.9.1

A vulnerability was determined in a2ui-project a2ui 0.9/0.9.1. This issue affects the function updateComponents of the file basic_functions.ts of the component Update Components. Executing a manipulation can lead to resource consumption.…

Sunlita2ui-project · a2uiEPSS 0.39%via NVD
CVE-2026-92220Medium· 5.3⚖ disputed
5d ago

A vulnerability was found in vllm-project vLLM 0.26.0/0.27.0

A vulnerability was found in vllm-project vLLM 0.26.0/0.27.0. Affected is the function MoRIIOConnectorScheduler.request_finished/MoRIIOConnectorWorker.get_finished/MoRIIOWrapper._handle_release_message of the file vllm/distributed/kv_tra…

Sunlitvllm-project · vLLMEPSS 0.52%via NVD
CVE-2026-91855Medium· 5.3PoC
6d ago

A security flaw has been discovered in Open5GS up to 2.7.7

A security flaw has been discovered in Open5GS up to 2.7.7. Affected by this vulnerability is an unknown functionality of the file lib/pfcp/handler.c of the component PFCP Message Handler. Performing a manipulation results in denial of s…

TwilightEPSS 0.42%via NVD
CVE-2026-91782Low· 3.3
6d ago

A vulnerability was detected in GNU Binutils 2.47

A vulnerability was detected in GNU Binutils 2.47. Affected by this vulnerability is the function elf_x86_allocate_dynrelocs of the file bfd/elfxx-x86.c of the component Dynamic Relocation Allocation. The manipulation results in null poi…

Sunlitgnu · binutilsEPSS 0.13%via NVD
CVE-2026-91781Low· 3.3PoC
6d ago

A security vulnerability has been detected in GNU Binutils 2.47

A security vulnerability has been detected in GNU Binutils 2.47. Affected is the function elf_x86_64_common_section_index of the file bfd/elf64-x86-64.c of the component ELF Section Handler. The manipulation leads to null pointer derefer…

Twilightgnu · binutilsEPSS 0.13%via NVD
CVE-2026-91780Low· 3.3PoC
6d ago

A weakness has been identified in GNU Binutils 2.47

A weakness has been identified in GNU Binutils 2.47. This impacts the function elf_link_add_object_symbols of the file bfd/elflink.c. Executing a manipulation can lead to null pointer dereference. The attack needs to be launched locally.…

Twilightgnu · binutilsEPSS 0.12%via NVD
CVE-2026-91779Low· 3.3PoC
6d ago

A security flaw has been discovered in GNU Binutils 2.47

A security flaw has been discovered in GNU Binutils 2.47. This affects the function _bfd_elf_eh_frame_section_offset of the file bfd/elf-eh-frame.c of the component Eh Frame Handler. Performing a manipulation results in null pointer dere…

Twilightgnu · binutilsEPSS 0.12%via NVD
CVE-2026-90878Medium· 4.3PoC
6d ago

A vulnerability was determined in vllm-project vLLM up to 0.27.1

A vulnerability was determined in vllm-project vLLM up to 0.27.1. This affects an unknown part of the file /v1/chat/completions of the component Jinja Template Rendering. This manipulation of the argument chat_template causes resource co…

Twilightvllm-project · vLLMEPSS 0.30%via NVD
CVE-2026-90829Medium· 5.3PoC
1w ago

A weakness has been identified in GNU Binutils 2.47

A weakness has been identified in GNU Binutils 2.47. This issue affects the function bfd_elf_set_group_contents of the file bfd/elf.c of the component SHT_GROUP Section Handler. Executing a manipulation can lead to null pointer dereferen…

Twilightgnu · binutilsEPSS 0.17%via NVD
CVE-2026-90830Medium· 5.3PoC
1w ago

A security vulnerability has been detected in GNU Binutils 2.47

A security vulnerability has been detected in GNU Binutils 2.47. Impacted is the function _bfd_write_merged_section of the file bfd/merge.c of the component Section Merge. The manipulation leads to null pointer dereference. The attack ne…

Twilightgnu · binutilsEPSS 0.16%via NVD
CVE-2026-90828Medium· 5.3PoC
1w ago

A security flaw has been discovered in GNU Binutils 2.47

A security flaw has been discovered in GNU Binutils 2.47. This vulnerability affects the function elf_orphan_compatible of the file ld/ldelf.c of the component ELF Orphan Section Handler. Performing a manipulation results in null pointer…

Twilightgnu · binutilsEPSS 0.15%via NVD
CVE-2026-90816Medium· 4.3PoC
1w ago

A vulnerability was found in FFmpeg 8.0.x

A vulnerability was found in FFmpeg 8.0.x. This affects the function parse_playlist of the file libavformat/hlsproto.c of the component Duration Parser. Performing a manipulation of the argument duration/target_duration results in denial…

TwilightRed Hat · FFmpegEPSS 0.35%via NVD
CVE-2026-90802Medium· 4.4PoC
1w ago

A weakness has been identified in GNU Binutils 2.47

A weakness has been identified in GNU Binutils 2.47. Affected is the function bfd_putl64 of the file bfd/libbfd.c of the component ld. This manipulation causes null pointer dereference. The attack requires local access. The exploit has b…

Twilightgnu · binutilsEPSS 0.13%via NVD
CVE-2026-90622Low· 3.3PoC
1w ago

A security flaw has been discovered in GNU libredwg 0.13.4

A security flaw has been discovered in GNU libredwg 0.13.4. This impacts the function DWG_TABLE of the file src/dwg.spec of the component Layer Encoding. Performing a manipulation results in null pointer dereference. The attack needs to …

TwilightGNU · libredwgEPSS 0.16%via NVD
CVE-2026-90713Low· 3.3PoC
1w ago

A security flaw has been discovered in vllm-project vLLM up to 0.29.0

A security flaw has been discovered in vllm-project vLLM up to 0.29.0. The affected element is the function TiktokenTokenizer::new of the file rust/src/text/src/backend/hf/mod.rs of the component tiktoken vocab File Handler. The manipula…

Twilightvllm-project · vLLMEPSS 0.15%via NVD
CVE-2026-90792Medium· 4.3PoC
1w ago

A flaw has been found in GPAC up to f1219cde

A flaw has been found in GPAC up to f1219cde. This issue affects the function gf_node_list_get_child of the file scenegraph/base_scenegraph.c of the component MP4Box. This manipulation of the argument Target causes null pointer dereferen…

TwilightEPSS 0.39%via NVD
CVE-2026-90609Low· 3.3PoC
1w ago

A vulnerability has been found in GPAC up to f1219cde

A vulnerability has been found in GPAC up to f1219cde. The impacted element is an unknown function of the file scenegraph/vrml_tools.c of the component MP4Box. Such manipulation leads to null pointer dereference. The attack can only be p…

TwilightEPSS 0.12%via NVD
CVE-2026-90784Medium· 5.3PoC
1w ago

A vulnerability has been found in Dvidelabs flatcc up to 0.6.3

A vulnerability has been found in Dvidelabs flatcc up to 0.6.3. The impacted element is the function fb_clear_parser of the file src/Compiler/semantics.c. The manipulation leads to memory leak. It is possible to initiate the attack remot…

TwilightDvidelabs · flatccEPSS 0.42%via NVD
CVE-2026-90712Medium· 4.3PoC
1w ago

A vulnerability was identified in Gitlawb openclaude up to 0.30.0

A vulnerability was identified in Gitlawb openclaude up to 0.30.0. Impacted is the function waitForCallback of the file src/services/api/xaiOAuthCallback.ts of the component xAI OAuth Callback Handler. The manipulation of the argument Er…

TwilightGitlawb · openclaudeEPSS 0.32%via NVD
CWE-404 vulnerabilities (CVEs) · VulnSea