VulnSea

CWE-459

CVEs classified under CWE-459, newest first.

30 CVEsRSS

CVE-2026-93159Medium· 5.5
5d ago

In the Linux kernel, the following vulnerability has been resolved: crypto: atmel-sha204a - fix heap info leak on I2C transfer failure The nonblocking RNG path allocates a work_data structure to track the state of an in-flight asynchro…

In the Linux kernel, the following vulnerability has been resolved: crypto: atmel-sha204a - fix heap info leak on I2C transfer failure The nonblocking RNG path allocates a work_data structure to track the state of an in-flight asynchro…

SunlitLinux · LinuxEPSS 0.21%via NVD
CVE-2026-91730Low· 3.1⚖ disputed
1w ago

Incomplete cleanup in GetUserMedia in Google Chrome prior to 153.0.8010.47 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to obtain cross-origin data via a crafted HTML page

Incomplete cleanup in GetUserMedia in Google Chrome prior to 153.0.8010.47 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to obtain cross-origin data via a crafted HTML page. (Chromium…

Sunlitgoogle · chromeEPSS 0.23%via NVD
CVE-2026-75943Low· 2.6
1w ago

A brief (milliseconds to seconds) traffic leak may occur when an authenticated supplicant is removed, either via the clear dot1x host all CLI command or due to a supplicant timeout

A brief (milliseconds to seconds) traffic leak may occur when an authenticated supplicant is removed, either via the clear dot1x host all CLI command or due to a supplicant timeout. During this window, the supplicant's traffic may pass w…

SunlitArista Networks · EOSEPSS 0.13%via NVD
CVE-2026-75944Low· 2.6
1w ago

A race condition during supplicant re-authentication may leave a stale ACL entry that persists in the system

A race condition during supplicant re-authentication may leave a stale ACL entry that persists in the system. If the AclAgent subsequently restarts, this stale entry may be applied to new supplicants, resulting in incorrect access contro…

SunlitArista Networks · EOSEPSS 0.15%via NVD
CVE-2026-75945Low· 2.6
1w ago

A race condition may cause a supplicant to remain in an authorized state after a clear dot1x host all command is issued.

A race condition may cause a supplicant to remain in an authorized state after a clear dot1x host all command is issued.

SunlitArista Networks · EOSEPSS 0.13%via NVD
CVE-2026-88932Medium· 5.3
1w ago

multer is a Node.js middleware for handling multipart/form-data uploads

multer is a Node.js middleware for handling multipart/form-data uploads. In versions 2.2.0 through 2.3.0, when a request using disk storage is aborted mid-upload, file writes that complete after multer has already run its abort cleanup a…

SunlitRed Hat · Red Hat Developer HubEPSS 0.31%via NVD
CVE-2023-32803High· 7.5
1w ago

The ca-certificates package before ca-certificates-2021.2.50-72 for Amazon Linux 2 (AL2) does not properly remove certain TrustCor root certificates from the root store

The ca-certificates package before ca-certificates-2021.2.50-72 for Amazon Linux 2 (AL2) does not properly remove certain TrustCor root certificates from the root store. NOTE: this issue exists because of an incorrect fix for CVE-2022-23…

TwilightAmazon · ca-certificatesEPSS 0.18%via NVD
CVE-2026-81015High· 7.0⚖ disputed
1w ago

kernel: platform/x86/amd/pmc: Fix LPS0 and debugfs leaks when STB init fails (CVE-2026-81015)

A flaw was found in the Linux kernel's AMD PMC (Power Management Controller) driver. When the `amd_stb_s2d_init()` function fails during the driver's initialization process, it can lead to unreleased resources, specifically the LPS0 s2idle…

TwilightRed Hat · Red Hat Enterprise Linux 9EPSS 0.16%via CSAF
CVE-2026-87776High· 7.5
1w ago

compression is a Node.js and Express compression middleware

compression is a Node.js and Express compression middleware. In versions before 1.8.2, when a client aborts the connection while a compressed response is still being sent, the zlib stream created to compress that response is never destro…

Twilightcompression · compressionEPSS 0.36%via NVD
CVE-2026-87446Medium· 6.5
1w ago

Incomplete cleanup in Extensions in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted Chrome extension

Incomplete cleanup in Extensions in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted Chrome extension. (Chromium security severity: Medium)

Sunlitgoogle · chromeEPSS 0.33%via NVD
CVE-2026-87436Medium· 6.5
1w ago

Incomplete cleanup in Browser in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass web origin policy via a crafted Chrome extension

Incomplete cleanup in Browser in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass web origin policy via a crafted Chrome extension. (Chromium security severity: Medium)

Sunlitgoogle · chromeEPSS 0.33%via NVD
CVE-2026-87549Medium· 6.5
1w ago

Incomplete cleanup in Downloads in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page

Incomplete cleanup in Downloads in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)

Sunlitgoogle · chromeEPSS 0.32%via NVD
CVE-2026-77037High· 7.5
2w ago

multer vulnerable to Denial of Service via file descriptor leak on aborted uploads

multer vulnerable to Denial of Service via file descriptor leak on aborted uploads

Twilightmulter · multerEPSS 0.35%via GHSA
CVE-2026-85043Critical· 9.1
2w ago

Incomplete cleanup in Network in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to bypass system access restrictions via crafted network traffic

Incomplete cleanup in Network in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to bypass system access restrictions via crafted network traffic. (Chromium security severity: High)

Midnightgoogle · chromeEPSS 0.33%via NVD
CVE-2026-78903Low· 3.1PoC
4w ago

Incomplete cleanup in SiteIsolation in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page

Incomplete cleanup in SiteIsolation in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)

TwilightGoogle · ChromeEPSS 0.27%via CVEORG
CVE-2026-72714Medium· 6.3
4w ago

Rocq Prover does not restore the universe graph's copy of the universe checking flag when a module that locally disabled the check is closed

Rocq Prover does not restore the universe graph's copy of the universe checking flag when a module that locally disabled the check is closed. Local Unset Universe Checking inside a module is expected to last only until the module ends, a…

SunlitEPSS 0.12%via NVD
CVE-2026-67442Low· 2.0
1mo ago

FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software

FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. Prior to 1.3.3, DELETE /api/roles removes role definitions through server/runtime/users/usrstorage.js but does not remove the deleted role identifier from each use…

SunlitEPSS 0.30%via NVD
CVE-2026-52736High
1mo ago

ZEBRA is a Zcash node written entirely in Rust

ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, a remote unauthenticated P2P peer can stall a Zebra node by racing an invalid block body against the valid canonical body for the same block header hash. ZIP-244 permits the…

Twilightzebra-state · zebra-stateEPSS 0.44%via NVD
CVE-2026-52733Medium· 6.5
1mo ago

ZEBRA is a Zcash node written entirely in Rust

ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, a natural or attacker-influenced chain fork can leave stale Sapling and Orchard note-commitment subtree roots in Zebra state. In zebra-state/src/service/non_finalized_state/…

Sunlitzebra-state · zebra-stateEPSS 0.34%via NVD
CVE-2026-19474High· 7.5
1mo ago

@fastify/multipart is a multipart form-data parser for Fastify

@fastify/multipart is a multipart form-data parser for Fastify. In versions from 3.0.0 up to but not including 10.1.1, request.saveRequestFiles() can leave completed temporary files on disk when a client disconnects while the parser is a…

TwilightEPSS 0.28%via NVD
CVE-2026-68809Medium· 5.5
1mo ago

Powerpoint Information Disclosure Vulnerability

Incomplete cleanup in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally.

SunlitMicrosoft · Microsoft 365 Apps for EnterpriseEPSS 0.28%via CVEORG
CVE-2026-67334Low· 3.8
1mo ago

better-auth versions before 1.6.11 fail to delete cached sessions when removing users via admin, anonymous, or SCIM endpoints when secondaryStorage is configured and storeSessionInDatabase is false

better-auth versions before 1.6.11 fail to delete cached sessions when removing users via admin, anonymous, or SCIM endpoints when secondaryStorage is configured and storeSessionInDatabase is false. Attackers can reuse deleted user sessi…

SunlitEPSS 0.20%via NVD
CVE-2026-7639None
2mo ago

Software installed and run as a non-privileged user may conduct a sequence of improper GPU system calls causing use after free, which helps in facilitating unprivileged memory access from a shader code. Triggering failure path in the …

Software installed and run as a non-privileged user may conduct a sequence of improper GPU system calls causing use after free, which helps in facilitating unprivileged memory access from a shader code. Triggering failure path in the …

SunlitEPSS 0.18%via NVD
GHSA-2vg6-77g8-24mpLow· 3.8
2mo ago

Better Auth: Stale sessions persist after user deletion across admin, anonymous, and SCIM flows

Better Auth: Stale sessions persist after user deletion across admin, anonymous, and SCIM flows

Sunlitbetter-auth · better-authvia GHSA
CVE-2026-35361Low· 3.4
2mo ago

mknod: Device nodes created mislabeled on SELinux, with broken cleanup (remove_dir on a node)

mknod: Device nodes created mislabeled on SELinux, with broken cleanup (remove_dir on a node)

Sunlituu_mknod · uu_mknodEPSS 0.14%via GHSA
CVE-2026-11576High· 7.5
3mo ago

The security fix for CVE-2025-0728 in eclipse-threadx NetX Duo refactors error handling in the HTTP server PUT process to use a shared cleanup label, but this unified cleanup path unconditionally calls fx_file_close() even when the file …

The security fix for CVE-2025-0728 in eclipse-threadx NetX Duo refactors error handling in the HTTP server PUT process to use a shared cleanup label, but this unified cleanup path unconditionally calls fx_file_close() even when the file …

Twilighteclipse · threadx_netx_duoEPSS 0.46%via NVD
CVE-2026-5038High· 7.5⚖ disputed
3mo ago

multer: Multer: Denial of Service via aborted or malformed multipart uploads (CVE-2026-5038)

A flaw was found in multer. This vulnerability allows a remote attacker to trigger a Denial of Service (DoS) by initiating and then aborting or sending malformed multipart uploads. This action leaves orphaned partial files on the disk, whi…

TwilightRed Hat · Red Hat Enterprise Linux 10EPSS 0.28%via CSAF
CVE-2025-6338None
11mo ago

There is an incomplete cleanup vulnerability in Qt Network's Schannel support on Windows which can lead to a Denial of Service over a long period. This issue affects Qt from 5.15.0 through 6.8.3, from 6.9.0 before 6.9.2.

There is an incomplete cleanup vulnerability in Qt Network's Schannel support on Windows which can lead to a Denial of Service over a long period. This issue affects Qt from 5.15.0 through 6.8.3, from 6.9.0 before 6.9.2.

SunlitEPSS 0.42%via NVD
CVE-2025-21924High· 7.8
1y ago

In the Linux kernel, the following vulnerability has been resolved: net: hns3: make sure ptp clock is unregister and freed if hclge_ptp_get_cycle returns an error During the initialization of ptp, hclge_ptp_get_cycle might return an er…

In the Linux kernel, the following vulnerability has been resolved: net: hns3: make sure ptp clock is unregister and freed if hclge_ptp_get_cycle returns an error During the initialization of ptp, hclge_ptp_get_cycle might return an er…

Twilightlinux · linux_kernelEPSS 0.21%via NVD
CVE-2020-12414Medium· 6.5
6y ago

IndexedDB should be cleared when leaving private browsing mode and it is not, the API for WKWebViewConfiguration was being used incorrectly and requires the private instance of this object be deleted when leaving private mode

IndexedDB should be cleared when leaving private browsing mode and it is not, the API for WKWebViewConfiguration was being used incorrectly and requires the private instance of this object be deleted when leaving private mode. This vulne…

Sunlitmozilla · firefox_mobileEPSS 0.67%via NVD
CWE-459 vulnerabilities (CVEs) · VulnSea