VulnSea

CWE-770

CVEs classified under CWE-770, newest first.

588 CVEsRSS

CVE-2026-73493High· 7.5
1mo ago

Http4s (http4s-blaze-server) is a minimal, idiomatic Scala interface for HTTP services

Http4s (http4s-blaze-server) is a minimal, idiomatic Scala interface for HTTP services. Prior to 0.23.18 and 1.0.0-M42, http4s-blaze-server aggregates fragments of an incoming WebSocket message with no limit on total size or fragment cou…

▾ TwilightEPSS 0.63%via NVD
CVE-2026-71408Medium· 5.3
1mo ago

A allocation of resources without limits or throttling vulnerability in Fortinet FortiOS 7.6.0 through 7.6.6, FortiOS 7.4 all versions, FortiOS 7.2 all versions may allow attacker to denial of service via <insert attack vector here>

A allocation of resources without limits or throttling vulnerability in Fortinet FortiOS 7.6.0 through 7.6.6, FortiOS 7.4 all versions, FortiOS 7.2 all versions may allow attacker to denial of service via <insert attack vector here>

▾ Sunlitfortinet · fortiosEPSS 0.40%via NVD
CVE-2026-73500High· 7.5
1mo ago

etcd is a distributed key-value store for the data of a distributed system

etcd is a distributed key-value store for the data of a distributed system. Prior to versions 3.5.33, 3.6.14, and 3.7.1, a network attacker who can reach an etcd TLS listener can open many TCP connections and never send a ClientHello. In…

▾ TwilightRed Hat · Red Hat Trusted Artifact SignerEPSS 0.70%via NVD
CVE-2026-19517Medium· 6.5
1mo ago

Improper Validation of Specified Quantity in Input and Allocation of Resources Without Limits or Throttling vulnerability in Samsung Open Source rlottie allows Excessive Allocation.

Improper Validation of Specified Quantity in Input and Allocation of Resources Without Limits or Throttling vulnerability in Samsung Open Source rlottie allows Excessive Allocation.

▾ Sunlitsamsung · rlottieEPSS 0.36%via NVD
CVE-2026-15561High· 7.5
1mo ago

A flaw was found in EAP's undertow http/1.1 chunked-transfer decoder

A flaw was found in EAP's undertow http/1.1 chunked-transfer decoder. missing limits on size and count would allow an attacker to use an unauthenticated connection to drive the JVM to an OutOfMemory error, stopping all deployments on the…

▾ TwilightRed Hat · io.undertow/undertow-coreEPSS 0.46%via NVD
CVE-2026-63133Medium· 6.5
1mo ago

Malcolm is a network traffic analysis tool suite

Malcolm is a network traffic analysis tool suite. Prior to version 26.07.0, `safe-extract.py` extracts uploaded archives with no limit on entry count, directory depth, total entries, or output size. A small malicious archive containing a…

▾ SunlitEPSS 0.44%via NVD
CVE-2026-73214None
1mo ago

Coturn is a free open source implementation of TURN and STUN Server

Coturn is a free open source implementation of TURN and STUN Server. Prior to 4.16.0, dtls_server_input_handler() and create_new_connected_udp_socket() in src/apps/relay/dtls_listener.c retain OpenSSL dtls1_reassemble_fragment() state fo…

▾ SunlitEPSS 0.58%via NVD
CVE-2026-66761Medium· 4.3
1mo ago

SAP Approuter does not enforce sufficient flow control in certain functionality

SAP Approuter does not enforce sufficient flow control in certain functionality. An attacker with low privileges could send high volumes of data without consuming responses, causing unbounded memory growth. This results in a low impact o…

▾ Sunlitsap · approuterEPSS 0.38%via NVD
CVE-2026-58238Medium· 5.9
1mo ago

SAP Approuter does not sufficiently handle certain requests under specific conditions

SAP Approuter does not sufficiently handle certain requests under specific conditions. An unauthenticated attacker could send specially crafted input that causes the component to crash and restart. Successful exploitation requires specif…

▾ Sunlitsap · approuterEPSS 0.43%via NVD
CVE-2026-73228Medium· 5.3
1mo ago

Django REST framework is a toolkit for building Web APIs

Django REST framework is a toolkit for building Web APIs. Prior to 3.17.2, Django REST Framework's request.data parsing in rest_framework/request.py Request._parse() passes the underlying HttpRequest stream to JSONParser and FormParser f…

▾ Sunlitdjangorestframework · djangorestframeworkEPSS 0.56%via NVD
CVE-2026-73089High· 7.5
1mo ago

Browserslist is a configuration tool for sharing target browsers and Node.js versions between front-end tools

Browserslist is a configuration tool for sharing target browsers and Node.js versions between front-end tools. Prior to 4.28.7, index.js retains every distinct `(queries, context)` result in cache and every parseQueries() AST in parseCac…

▾ TwilightRed Hat · Red Hat Enterprise Linux 8EPSS 0.66%via NVD
CVE-2026-54113High· 7.5
1mo ago

Allocation of resources without limits or throttling in Windows Kernel allows an unauthorized attacker to deny service over a network.

Allocation of resources without limits or throttling in Windows Kernel allows an unauthorized attacker to deny service over a network.

▾ Twilightmicrosoft · windows_10_1607EPSS 1.2%via NVD
CVE-2026-48809High· 7.5
1mo ago

python-engineio is a Python implementation of the Engine.IO realtime client and server

python-engineio is a Python implementation of the Engine.IO realtime client and server. Versions prior to 4.13.2 have two specific configurations of the python-engineio server in which the size of incoming messages is not checked before …

▾ Twilightpython-engineio · python-engineioEPSS 0.49%via NVD
CVE-2026-48802High· 7.5
1mo ago

python-engineio is a Python implementation of the Engine.IO realtime client and server

python-engineio is a Python implementation of the Engine.IO realtime client and server. Prior to version 4.13.2, an attacker can cause the creation of unnecessary background threads in the python-engineio server by exploiting the heartbe…

▾ Twilightpython-engineio · python-engineioEPSS 0.57%via NVD
CVE-2026-48804High· 7.5
1mo ago

python-socketio is a Python implementation of the Socket.IO realtime client and server

python-socketio is a Python implementation of the Socket.IO realtime client and server. The python-socketio server stores binary `EVENT` and `ACK` messages in memory while it waits to receive their binary attachments. Once all the attach…

▾ Twilightpython-socketio · python-socketioEPSS 0.49%via NVD
CVE-2026-18618High· 7.5
1mo ago

A flaw was found in ml-metadata

A flaw was found in ml-metadata. The statically-linked gRPC stack in ml-metadata is outdated, making it vulnerable to known HTTP/2 denial of service (DoS) issues. An in-cluster attacker, with network access to the MLMD pod, could exploit…

▾ TwilightRed Hat · rhoai/odh-mlmd-grpc-server-rhel9EPSS 0.83%via NVD
CVE-2026-72914High· 7.5
1mo ago

Mastodon is a free, open-source social network server based on ActivityPub

Mastodon is a free, open-source social network server based on ActivityPub. Prior to 4.4.21, 4.5.14, 4.6.4, and 4.7.0-beta.1, the administrative statistics endpoints handled by Api::V1::Admin::MeasuresController and Api::V1::Admin::Reten…

▾ TwilightEPSS 0.83%via NVD
CVE-2026-12570Medium· 5.5
1mo ago

A vulnerability in keras-team/keras versions <= 3.15.0 allows for a denial of service (DoS) attack when loading malicious .keras model files via the keras.models.load_model() function

A vulnerability in keras-team/keras versions <= 3.15.0 allows for a denial of service (DoS) attack when loading malicious .keras model files via the keras.models.load_model() function. The H5IOStore.__getitem__ method in keras/src/saving…

▾ Sunlitkeras · kerasEPSS 0.13%via NVD
CVE-2026-52880High· 7.5
1mo ago

Klever-Go is the Go implementation of the Klever blockchain protocol

Klever-Go is the Go implementation of the Klever blockchain protocol. Versions from 1.7.14 through 1.7.17 are vulnerable to a remotely triggerable denial of service. Both REST APIs are started with the Gin Engine.Run convenience method, …

▾ TwilightEPSS 0.49%via NVD
CVE-2026-52879High· 7.5
1mo ago

Klever-Go is the Go implementation of the Klever blockchain protocol

Klever-Go is the Go implementation of the Klever blockchain protocol. In versions 1.7.14 through 1.7.17, the direct-message ingress handler spawns a new goroutine for every incoming direct message before the processor-level antiflood lay…

▾ TwilightEPSS 0.49%via NVD
CVE-2026-62296High· 7.5
1mo ago

HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java

HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java. Prior to 6.9.11, XhtmlParser.java imposes no maximum element nesting depth, so a deeply nested text.div narrative triggers unbounded…

▾ TwilightRed Hat · Red Hat build of Apache Camel 4 for Quarkus 3EPSS 0.49%via NVD
CVE-2025-71411Medium· 5.3
1mo ago

Broadcast control frames can disconnect multiple aircraft simultaneously leading to delayed clearances and air traffic controller overload

Broadcast control frames can disconnect multiple aircraft simultaneously leading to delayed clearances and air traffic controller overload. This type of attack can be carried out remotely over radio frequency.

▾ SunlitEPSS 0.33%via NVD
CVE-2025-71410Medium· 5.3
1mo ago

Unnumbered Disconnect (U DISC) and malformed Aviation Very High Frequency Link Control frames can terminate sessions and lead to a loss of CPDLC functions requiring a reversion to voice communication and increased controller workload

Unnumbered Disconnect (U DISC) and malformed Aviation Very High Frequency Link Control frames can terminate sessions and lead to a loss of CPDLC functions requiring a reversion to voice communication and increased controller workload. Th…

▾ SunlitEPSS 0.33%via NVD
CVE-2026-46405Medium· 5.3
1mo ago

OpenBao is an open source identity-based secrets management system

OpenBao is an open source identity-based secrets management system. Prior to version 2.5.4, in OpenBao's Kerberos auth method on the `GET` handler, or when an `Authorization: Negotiate` header is supplied, the response is includes a `log…

▾ Sunlitopenbao · github.com/openbao/openbaoEPSS 0.62%via NVD
CVE-2026-18649High· 7.5PoC
1mo ago

A flaw was found in the GStreamer gst-plugins-good package

A flaw was found in the GStreamer gst-plugins-good package. The rtph264depay and rtph265depay RTP depayloader elements do not enforce a maximum size limit on the reassembly buffer used during fragmented RTP packet processing. A remote, u…

▾ MidnightRed Hat · gstreamer1-plugins-goodEPSS 0.96%via NVD
CVE-2026-48082Low· 3.7
1mo ago

OpenReception's appointment booking software provides an end-to-end encrypted appointment booking platform

OpenReception's appointment booking software provides an end-to-end encrypted appointment booking platform. Prior to version 1.0.6, the bootstrap challenge endpoint at `/api/tenants/{id}/appointments/bootstrap-challenge` issues a SHA-256…

▾ SunlitEPSS 0.39%via NVD
CVE-2026-16100Medium· 6.5
1mo ago

A flaw was found in the user-event metrics recording of Keycloak

A flaw was found in the user-event metrics recording of Keycloak. When metrics are enabled, the system records raw error messages from failed account operations as Prometheus metric labels. Because these error messages can include user-s…

▾ Sunlitredhat · build_of_keycloakEPSS 0.55%via NVD
CVE-2026-66274High· 7.5
1mo ago

A pre-authentication attacker could leverage type nesting to cause a StackOverflowError potentially leading to denial of service. This issue affects Apache Qpid Proton-J: through 0.34.1. Users are recommended to upgrade to version 0.35…

A pre-authentication attacker could leverage type nesting to cause a StackOverflowError potentially leading to denial of service. This issue affects Apache Qpid Proton-J: through 0.34.1. Users are recommended to upgrade to version 0.35…

▾ Twilightapache · qpid_proton-jEPSS 0.77%via NVD
CVE-2026-68060High· 7.5
1mo ago

A pre-authentication attacker could leverage type size/count handling to cause excessive allocation leading to potential denial of service. This issue affects Apache Qpid Broker-J: through 10.0.1. Users are recommended to upgrade to ve…

A pre-authentication attacker could leverage type size/count handling to cause excessive allocation leading to potential denial of service. This issue affects Apache Qpid Broker-J: through 10.0.1. Users are recommended to upgrade to ve…

▾ Twilightapache · qpid_broker-jEPSS 0.77%via NVD
CVE-2026-67589High· 7.5
1mo ago

A pre-authentication attacker could leverage type size/count handling to cause excessive allocation leading to potential denial of service. This issue affects Apache Qpid ProtonJ2: through 1.1.0. Users are recommended to upgrade to ver…

A pre-authentication attacker could leverage type size/count handling to cause excessive allocation leading to potential denial of service. This issue affects Apache Qpid ProtonJ2: through 1.1.0. Users are recommended to upgrade to ver…

▾ Twilightapache · qpid_protonj2EPSS 0.77%via NVD
CWE-770 vulnerabilities (CVEs) — page 10 · VulnSea