Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-400 (未加控制的资源消耗(资源穷尽)) — Vulnerability Class 1385

1385 vulnerabilities classified as CWE-400 (未加控制的资源消耗(资源穷尽)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2023-2990 Fortra Globalscape Administration Server Denial of Service — Globalscape EFT 7.5 -2023-06-22
CVE-2023-26434 Open-Xchange App Suite 安全漏洞 — OX App Suite 4.3 Medium2023-06-20
CVE-2023-26433 Open-Xchange OX App Suite 安全漏洞 — OX App Suite 4.3 Medium2023-06-20
CVE-2023-26432 Open-Xchange OX App Suite 安全漏洞 — OX App Suite 4.3 Medium2023-06-20
CVE-2023-2785 Specially crafted search query can cause large log entries in postgres — Mattermost 4.3 Medium2023-06-16
CVE-2023-2831 Denial of Service while unescaping a Markdown string — Mattermost 4.3 Medium2023-06-16
CVE-2023-2793 Stack exhaustion in PreparePostForClientWithEmbedsAndImages — Mattermost 6.5 Medium2023-06-16
CVE-2022-33168 IBM Security Directory Suite VA denial of service — Security Directory Suite VA 7.5 High2023-06-15
CVE-2023-29331 .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability — .NET 6.0 7.5 High2023-06-14
CVE-2023-32013 Windows Hyper-V Denial of Service Vulnerability — Windows 10 Version 1809 5.3 Medium2023-06-13
CVE-2023-2778 Rockwell Automation FactoryTalk Transaction Manager Vulnerable to Denial-Of-Service — FactoryTalk Transaction Manager 7.5 High2023-06-13
CVE-2023-35053 JetBrains YouTrack 资源管理错误漏洞 — YouTrack 7.5 High2023-06-12
CVE-2023-3163 y_project RuoYi filterKeyword resource consumption — RuoYi 3.5 Low2023-06-08
CVE-2023-34109 User input results in Unbounded resource consumption in @zxcvbn-ts/core — zxcvbn 6.5 Medium2023-06-07
CVE-2023-33958 Default `maxSignatureAttempts` in `notation verify` enables an endless data attack in notation — notation 5.4 Medium2023-06-06
CVE-2023-33957 Denial of service from high number of artifact signatures in notation — notation 2.6 Low2023-06-06
CVE-2023-34104 Regex Injection via Doctype Entities — fast-xml-parser 7.5 High2023-06-06
CVE-2022-33303 Uncontrolled resource consumption in Linux kernel — Snapdragon 5.5 Medium2023-06-06
CVE-2022-39374 Synapse Denial of service due to incorrect application of event authorization rules during state resolution — synapse 5.3 -2023-05-26
CVE-2023-20883 Spring Framework 资源管理错误漏洞 — Spring Boot 7.5 -2023-05-26
CVE-2023-20882 Cloud Foundry 安全漏洞 — Cloud Foundry Routing release 5.9 -2023-05-26
CVE-2023-1981 Avahi 资源管理错误漏洞 — avahi 6.5 -2023-05-26
CVE-2023-28320 libcurl 资源管理错误漏洞 — https://github.com/curl/curl 5.9 -2023-05-26
CVE-2023-32067 0-byte UDP payload DoS in c-ares — c-ares 7.5 High2023-05-25
CVE-2023-2798 Denial of service in HtmlUnit 7.5 High2023-05-25
CVE-2022-36326 Resource Exhaustion Vulnerability in Western Digital devices — My Cloud Home and My Cloud Home Duo 4.4 Medium2023-05-18
CVE-2023-26044 ReactPHP's HTTP server continues parsing unused multipart parts after reaching limits — http 5.3 Medium2023-05-17
CVE-2023-2295 Libreswan 安全漏洞 — libreswan 7.5 -2023-05-17
CVE-2023-31409 SICK FTMg 资源管理错误漏洞 — SICK FTMG-ESD15AXX AIR FLOW SENSOR 5.3 Medium2023-05-15
CVE-2023-23447 SICK FTMg 资源管理错误漏洞 — SICK FTMG-ESD15AXX AIR FLOW SENSOR 7.5 High2023-05-15

Vulnerabilities classified as CWE-400 (未加控制的资源消耗(资源穷尽)) represent 1385 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.