CWE-837
CVEs classified under CWE-837, newest first.
2 CVEsRSS
CVE-2026-86198Medium· 4.2PocketMine-MP versions before 5.44.2 fail to properly validate multiple ResourcePackClientResponsePacket packets with STATUS_COMPLETED status during resource pack handling
PocketMine-MP versions before 5.44.2 fail to properly validate multiple ResourcePackClientResponsePacket packets with STATUS_COMPLETED status during resource pack handling. Malicious clients can send batches of these packets to repeatedl…
▾ Sunlitpmmp · PocketMine-MPEPSS 0.28%via NVD
CVE-2026-45734Medium· 5.3MyBB is free and open source forum software
MyBB is free and open source forum software. Prior to 1.8.40, the built-in CAPTCHA does not consistently enforce single-use semantics, allowing remote attackers to bypass CAPTCHA controls through challenge replay. The successful validati…
▾ SunlitEPSS 0.40%via NVD