3 vulnerabilities classified as CWE-1280. AI Chinese analysis included.
module foo_bar(data_out, usr_id, data_in, clk, rst_n); output reg [7:0] data_out; input wire [2:0] usr_id; input wire [7:0] data_in; input wire clk, rst_n; wire grant_access; always @ (posedge clk or negedge rst_n) begin if (!rst_n) data_out = 0; else data_out = (grant_access) ? data_in : data_out; assign grant_access = (usr_id == 3'h4) ? 1'b1 : 1'b0; end endmodule
always @ (posedge clk or negedge rst_n) begin if (!rst_n) data_out = 0; else assign grant_access = (usr_id == 3'h4) ? 1'b1 : 1'b0; data_out = (grant_access) ? data_in : data_out; end endmodule
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-86341 | Access Control Check Implemented After Asset is Accessed in GitLab — GitLab | 4.4 | Medium | 2026-09-16 |
| CVE-2026-7487 | Access Control Check Implemented After Asset is Accessed in GitLab — GitLab | 3.5 | Low | 2026-08-26 |
| CVE-2026-3607 | Access Control Check Implemented After Asset is Accessed in GitLab — GitLab | 4.3 | Medium | 2026-05-14 |
Vulnerabilities classified as CWE-1280 represent 3 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.