VulnSea

CWE-440

CVEs classified under CWE-440, newest first.

8 CVEsRSS

CVE-2026-16769High· 7.1
2w ago

An unencrypted 'pause encryption request' message causes a denial of service in the in the RS9116W/SiWx917

An unencrypted 'pause encryption request' message causes a denial of service in the in the RS9116W/SiWx917. See vulnerability B-E10 in the related paper below.

Twilightsilabs.com · WiseCnnectEPSS 0.10%via NVD
CVE-2026-65934None
1mo ago

An unencrypted 'pause encryption request' message causes a denial of service in the BT122 module.  See vulnerability B-E10 in the related paper below.

An unencrypted 'pause encryption request' message causes a denial of service in the BT122 module.  See vulnerability B-E10 in the related paper below.

SunlitEPSS 0.10%via NVD
CVE-2026-65932None
1mo ago

The BT122 module stops advertising after receiving a plaintext 'pause enceryption response' message resulting in a denial of service

The BT122 module stops advertising after receiving a plaintext 'pause enceryption response' message resulting in a denial of service. See vulnerability B-E2 in the related paper below.

SunlitEPSS 0.18%via NVD
GHSA-fqf6-gxhh-2xhwHigh
2mo ago

uutils coreutils: cp/install/mv/ln --suffix alone does not enable backup mode (silent data loss vs GNU)

uutils coreutils: cp/install/mv/ln --suffix alone does not enable backup mode (silent data loss vs GNU)

Twilightuucore · uucorevia GHSA
CVE-2026-42534Medium· 5.3
4mo ago

NLnet Labs Unbound up to and including version 1.25.0 has a vulnerability in the jostle logic that could defeat its purpose and degrade resolution performance

NLnet Labs Unbound up to and including version 1.25.0 has a vulnerability in the jostle logic that could defeat its purpose and degrade resolution performance. Retransmits of the same query could renew the age of slow running queries and…

Sunlitnlnetlabs · unboundEPSS 0.58%via NVD
CVE-2026-3344Medium· 4.9
6mo ago

A vulnerability in WatchGuard Fireware OS may allow an attacker to bypass the Fireware OS filesystem integrity check and maintain limited persistence via a maliciously-crafted firmware update package.

A vulnerability in WatchGuard Fireware OS may allow an attacker to bypass the Fireware OS filesystem integrity check and maintain limited persistence via a maliciously-crafted firmware update package.

Sunlitwatchguard · firewareEPSS 0.28%via NVD
CVE-2025-59420High· 7.5
1y ago

authlib: Authlib RFC violation (CVE-2025-59420)

Authlib’s JWS verification accepts tokens that declare unknown critical header parameters (crit), violating RFC 7515 “must‑understand” semantics. An attacker can craft a signed token with a critical header (for example, bork or cnf) that s…

TwilightRed Hat · Red Hat Quay 3.10EPSS 0.26%via CSAF
CVE-2025-47906Medium· 6.5
1y ago

os/exec: Unexpected paths returned from LookPath in os/exec (CVE-2025-47906)

A path handling flaw has been discovered in the os/exec go package. If the PATH environment variable contains paths which are executables (rather than just directories), passing certain strings to LookPath ("", ".", and ".."), can result i…

SunlitRed Hat · Red Hat OpenShift Container Platform 4EPSS 0.55%via CSAF
CWE-440 vulnerabilities (CVEs) · VulnSea