Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-770 (不加限制或调节的资源分配) — Vulnerability Class 795

795 vulnerabilities classified as CWE-770 (不加限制或调节的资源分配). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-58582 Uncontrolled Resource Consumption via log file — Enterprise Analytics 5.3 Medium2025-10-06
CVE-2025-58578 Unlimited user creation by authorized users — Enterprise Analytics 3.8 Low2025-10-06
CVE-2025-11274 Open Asset Import Library Assimp Q3DLoader.cpp InternReadFile allocation of resources — Assimp 3.3 Low2025-10-05
CVE-2025-44012 Qsync Central — Qsync Central 5.8 -2025-10-03
CVE-2025-44007 Qsync Central — Qsync Central 5.8 -2025-10-03
CVE-2025-44006 Qsync Central — Qsync Central 5.8 -2025-10-03
CVE-2025-33040 Qsync Central — Qsync Central 5.8 -2025-10-03
CVE-2025-33039 Qsync Central — Qsync Central 5.8 -2025-10-03
CVE-2025-36099 IBM WebSphere Application Server denial of service — WebSphere Application Server 4.9 Medium2025-09-29
CVE-2025-8014 Allocation of Resources Without Limits or Throttling in GitLab — GitLab 7.5 High2025-09-27
CVE-2025-11042 Allocation of Resources Without Limits or Throttling in GitLab — GitLab 4.3 Medium2025-09-26
CVE-2025-10858 Allocation of Resources Without Limits or Throttling in GitLab — GitLab 7.5 High2025-09-26
CVE-2025-10867 Allocation of Resources Without Limits or Throttling in GitLab — GitLab 3.5 Low2025-09-26
CVE-2025-59418 BunnyPad Vulnerable to Buffer Overflow When Opening Files of Size 20MB or Greater — BunnyPad-SRC 5.5 Medium2025-09-22
CVE-2025-59421 Press vulnerable to email flooding to users due to lack of validation and rate limits — press--AI2025-09-18
CVE-2025-8396 Temporal OSS Server 安全漏洞 — OSS Server 7.5AIHighAI2025-09-15
CVE-2025-59375 Expat 安全漏洞 — libexpat 7.5 High2025-09-15
CVE-2025-36035 IBM PowerVM Hypervisor denial of service — PowerVM Hypervisor 6.7 Medium2025-09-14
CVE-2025-1250 Allocation of Resources Without Limits or Throttling in GitLab — GitLab 6.5 Medium2025-09-12
CVE-2025-7337 Allocation of Resources Without Limits or Throttling in GitLab — GitLab 6.5 Medium2025-09-12
CVE-2025-58754 Axios is vulnerable to DoS attack through lack of data size check — axios 7.5 High2025-09-12
CVE-2025-48041 SSH_FXP_OPENDIR may Lead to Exhaustion of File Handles — OTP 7.5AIHighAI2025-09-11
CVE-2025-48039 Unverified Paths can Cause Excessive Use of System Resources — OTP 7.5AIHighAI2025-09-11
CVE-2025-48038 Unverified File Handles can Cause Excessive Use of System Resources — OTP 7.5AIHighAI2025-09-11
CVE-2024-45669 IBM Security Verify Information Queue denial of service — Security Verify Information Queue 6.5 Medium2025-09-10
CVE-2025-59045 Stalwart vulnerable to Memory Exhaustion via CalDAV Event Expansion — stalwart 6.5AIMediumAI2025-09-10
CVE-2025-58446 xgrammar vulnerable to denial of service by huge enum grammar — xgrammar 7.5AIHighAI2025-09-06
CVE-2014-125127 Denial of Service (DoS) vulnerability in mikecao/flight — core 7.5 High2025-09-03
CVE-2025-9784 Undertow: undertow madeyoureset http/2 ddos vulnerability 7.5 High2025-09-02
CVE-2024-58259 Rancher affected by unauthenticated Denial of Service — rancher 8.2 High2025-09-02

Vulnerabilities classified as CWE-770 (不加限制或调节的资源分配) represent 795 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.