VulnSea

CWE-407

CVEs classified under CWE-407, newest first.

105 CVEsRSS

CVE-2026-41850High· 7.5
3mo ago

Applications that evaluate user-supplied Spring Expression Language (SpEL) expressions are vulnerable to an Algorithmic Denial of Service (DoS)

Applications that evaluate user-supplied Spring Expression Language (SpEL) expressions are vulnerable to an Algorithmic Denial of Service (DoS). By providing a specially crafted expression, an attacker can trigger excessive resource cons…

▾ Twilightvmware · spring_frameworkEPSS 0.46%via NVD
CVE-2026-42504High· 7.5
3mo ago

Quadratic complexity in WordDecoder.DecodeHeader in mime

Quadratic complexity in WordDecoder.DecodeHeader in mime

▾ Twilightstdlib · stdlibEPSS 0.56%via OSV
CVE-2026-27145Medium· 6.5PoC
3mo ago

(*x509.Certificate).VerifyHostname previously called matchHostnames in a loop over all DNS Subject Alternative Name (SAN) entries

(*x509.Certificate).VerifyHostname previously called matchHostnames in a loop over all DNS Subject Alternative Name (SAN) entries. This caused strings.Split(host, ".") to execute repeatedly on the same input hostname. With a large DNS SA…

▾ TwilightGo standard library · crypto/x509EPSS 0.59%via NVD
CVE-2026-44390Medium· 5.3
4mo ago

NLnet Labs Unbound up to and including version 1.25.0 has a vulnerability when handling replies with very large RRsets that Unbound needs to perform name compression for

NLnet Labs Unbound up to and including version 1.25.0 has a vulnerability when handling replies with very large RRsets that Unbound needs to perform name compression for. Malicious upstream responses with very large RRsets with records t…

▾ Sunlitnlnetlabs · unboundEPSS 0.72%via NVD
CVE-2026-41292High· 7.5
4mo ago

NLnet Labs Unbound up to and including version 1.25.0 is vulnerable to a degradation of service attack related to parsing long lists of incoming EDNS options

NLnet Labs Unbound up to and including version 1.25.0 is vulnerable to a degradation of service attack related to parsing long lists of incoming EDNS options. An adversary sending queries with too many EDNS options can hold Unbound threa…

▾ Twilightnlnetlabs · unboundEPSS 0.83%via NVD
CVE-2026-45186Low· 2.9⚖ disputed
4mo ago

In libexpat before 2.8.1, the computational complexity of attribute name collision checks allows a denial of service via moderately sized crafted XML input.

In libexpat before 2.8.1, the computational complexity of attribute name collision checks allows a denial of service via moderately sized crafted XML input.

▾ Sunlitlibexpat_project · libexpatEPSS 0.56%via NVD
CVE-2026-42499High· 7.5
4mo ago

Pathological inputs could cause DoS through consumePhrase when parsing an email address according to RFC 5322.

Pathological inputs could cause DoS through consumePhrase when parsing an email address according to RFC 5322.

▾ Twilightgolang · goEPSS 0.80%via NVD
CVE-2026-39820High· 7.5
4mo ago

Well-crafted inputs reaching ParseAddress, ParseAddressList, and ParseDate were able to trigger excessive CPU exhaustion and memory allocations.

Well-crafted inputs reaching ParseAddress, ParseAddressList, and ParseDate were able to trigger excessive CPU exhaustion and memory allocations.

▾ Twilightgolang · goEPSS 0.87%via NVD
CVE-2026-40476High· 7.5
5mo ago

graphql-go is a Go implementation of GraphQL

graphql-go is a Go implementation of GraphQL. In versions 15.31.4 and below, the OverlappingFieldsCanBeMerged validation rule performs O(n²) pairwise comparisons of fields sharing the same response name. An attacker can send a query with…

▾ Twilightwebonyx · graphql-phpEPSS 0.73%via NVD
CVE-2026-40164High· 7.5
5mo ago

jq is a command-line JSON processor

jq is a command-line JSON processor. Before commit 0c7d133c3c7e37c00b6d46b658a02244fdd3c784, jq used MurmurHash3 with a hardcoded, publicly visible seed (0x432A9843) for all JSON object hash table operations, which allowed an attacker to…

▾ TwilightEPSS 0.59%via NVD
CVE-2026-34573High· 7.5
6mo ago

Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js

Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to versions 8.6.68 and 9.7.0-alpha.12, the GraphQL query complexity validator can be exploited to cause a denial-of-service by …

▾ Twilightparseplatform · parse-serverEPSS 0.86%via NVD
CVE-2025-14831Medium· 5.3
7mo ago

A flaw was found in GnuTLS

A flaw was found in GnuTLS. This vulnerability allows a denial of service (DoS) by excessive CPU (Central Processing Unit) and memory consumption via specially crafted malicious certificates containing a large number of name constraints …

▾ SunlitEPSS 0.63%via NVD
CVE-2024-12133Medium· 5.3
1y ago

A flaw in libtasn1 causes inefficient handling of specific certificate data

A flaw in libtasn1 causes inefficient handling of specific certificate data. When processing a large number of elements in a certificate, libtasn1 takes much longer than expected, which can slow down or even crash the system. This flaw a…

▾ SunlitEPSS 1.1%via NVD
CVE-2024-23684High· 7.5
2y ago

Inefficient algorithmic complexity in DecodeFromBytes function in com.upokecenter.cbor Java implementation of Concise Binary Object Representation (CBOR) versions 4.0.0 to 4.5.1 allows an attacker to cause a denial of service by passing …

Inefficient algorithmic complexity in DecodeFromBytes function in com.upokecenter.cbor Java implementation of Concise Binary Object Representation (CBOR) versions 4.0.0 to 4.5.1 allows an attacker to cause a denial of service by passing …

▾ Twilightpeteroupc · cborEPSS 0.92%via NVD
CVE-2024-21909High· 7.5
2y ago

PeterO.Cbor versions 4.0.0 through 4.5.0 are vulnerable to a denial of service vulnerability

PeterO.Cbor versions 4.0.0 through 4.5.0 are vulnerable to a denial of service vulnerability. An attacker may trigger the denial of service condition by providing crafted data to the DecodeFromBytes or other decoding mechanisms in Pet…

▾ Twilightpeteroupc · cborEPSS 1.1%via NVD
CWE-407 vulnerabilities (CVEs) — page 4 · VulnSea