Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-674 (未经控制的递归) — Vulnerability Class 135

135 vulnerabilities classified as CWE-674 (未经控制的递归). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-58264 serde-json-wasm crate 安全漏洞 — serde-json-wasm 3.2 Low2025-07-27
CVE-2025-48924 Apache Commons Lang, Apache Commons Lang: ClassUtils.getClass(...) can throw a StackOverflowError on very long inputs — Apache Commons Lang 7.5AIHighAI2025-07-11
CVE-2025-53864 Connect2id Nimbus JOSE + JWT 安全漏洞 — Nimbus JOSE+JWT 5.8 Medium2025-07-11
CVE-2025-5472 Denial of Service via Uncontrolled Recursive JSON Parsing in JSONReader in run-llama/llama_index — run-llama/llama_index 7.5 -2025-07-07
CVE-2025-53605 protobuf crate 安全漏洞 — protobuf 5.9 Medium2025-07-05
CVE-2025-6710 Pre-authentication Denial of Service Stack Overflow Vulnerability in JSON Parsing via Excessive Recursion in MongoDB — MongoDB Server 7.5 High2025-06-26
CVE-2025-4565 Unbounded recursion in Python Protobuf — Python-Protobuf 7.5 -2025-06-16
CVE-2025-20678 MediaTek Chipsets 安全漏洞 — MT6739, MT6761, MT6762, MT6762D, MT6762M, MT6763, MT6765, MT6765T, MT6767, MT6768, MT6769, MT6769K, MT6769S, MT6769T, MT6769Z, MT6771, MT6779, MT6781, MT6783, MT6785, MT6785T, MT6785U, MT6789, MT6813, MT6833, MT6833P, MT6835, MT6835T, MT6853, MT6853T, MT6855, MT6855T, MT6873, MT6875, MT6875T, MT6877, MT6877T, MT6877TT, MT6878, MT6878M, MT6879, MT6880, MT6883, MT6885, MT6886, MT6889, MT6890, MT6891, MT6893, MT6895, MT6895TT, MT6896, MT6897, MT6899, MT6980, MT6983, MT6983T, MT6985, MT6985T, MT6989, MT6989T, MT6990, MT6991, MT8666, MT8667, MT8673, MT8675, MT8676, MT8678, MT8765, MT8766, MT8766R, MT8768, MT8771, MT8781, MT8786, MT8788, MT8788E, MT8789, MT8791, MT8791T, MT8795T, MT8797, MT8798, MT8863, MT8873, MT8883, MT8893 7.5AIHighAI2025-06-02
CVE-2025-30193 Denial of service via crafted TCP exchange — DNSdist 7.5 High2025-05-20
CVE-2025-1752 Denial of Service in run-llama/llama_index — run-llama/llama_index 7.5AIHighAI2025-05-10
CVE-2025-43708 VisiCut 安全漏洞 — VisiCut 3.3 Low2025-04-17
CVE-2024-12910 Denial of Service in run-llama/llama_index — run-llama/llama_index 7.5 -2025-03-20
CVE-2024-58103 Square Wire 安全漏洞 — Wire 5.8 Medium2025-03-16
CVE-2024-8176 Libexpat: expat: improper restriction of xml entity expansion depth in libexpat 7.5 High2025-03-14
CVE-2024-58102 Datalust Seq 安全漏洞 — Seq 5.7 Medium2025-03-11
CVE-2025-1492 Uncontrolled Recursion in Wireshark — Wireshark 7.8 High2025-02-20
CVE-2024-57257 DENX Software Engineering Das U-Boot 安全漏洞 — U-Boot 2.0 Low2025-02-18
CVE-2024-54731 CPDF 安全漏洞 — CPDF 4.0 Medium2025-01-08
CVE-2023-29001 Uncontrolled recursion due to insufficient validation of the IPv6 source routing header in Contiki-NG — contiki-ng 7.5AIHighAI2024-11-27
CVE-2024-47831 Next.js image optimization has Denial of Service condition — next.js 5.9 Medium2024-10-14
CVE-2024-31228 Denial-of-service due to unbounded pattern matching in Redis — redis 5.5 Medium2024-10-07
CVE-2024-43414 Apollo Query Planner and Apollo Gateway may infinitely loop on sufficiently complex queries — federation 7.5 High2024-08-27
CVE-2024-42369 A room with itself as a its predecessor will freeze matrix-js-sdk — matrix-js-sdk 4.1 Medium2024-08-20
CVE-2024-7866 Stack overflow in Xpdf 4.05 due to object loop in PDF pattern — Xpdf 5.5AIMediumAI2024-08-15
CVE-2024-37973 Secure Boot Security Feature Bypass Vulnerability — Windows 10 Version 1809 8.8 High2024-07-09
CVE-2024-5971 Undertow: response write hangs in case of java 17 tlsv1.3 newsessionticket 7.5 High2024-07-08
CVE-2024-2965 Denial-of-Service in LangChain SitemapLoader in langchain-ai/langchain — langchain-ai/langchain 7.5AIHighAI2024-06-06
CVE-2024-4568 Stack overflow in Xpdf 4.05 due to object loop in PDF resources — Xpdf 2.9 Low2024-05-06
CVE-2024-4340 Passing a heavily nested list to sqlparse.parse() leads to a Denial of Service due to RecursionError. 7.5 High2024-04-30
CVE-2024-3248 Stack overflow in Xpdf 4.05 due to object loop in attachments — Xpdf 2.9 Low2024-04-02

Vulnerabilities classified as CWE-674 (未经控制的递归) represent 135 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.