Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-770 (不加限制或调节的资源分配) — Vulnerability Class 795

795 vulnerabilities classified as CWE-770 (不加限制或调节的资源分配). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-30261 Qsync Central — Qsync Central 5.8 -2025-08-29
CVE-2025-30260 Qsync Central — Qsync Central 5.8 -2025-08-29
CVE-2025-29900 File Station 5 — File Station 5 5.0 -2025-08-29
CVE-2025-29899 File Station 5 — File Station 5 5.0 -2025-08-29
CVE-2025-29890 File Station 5 — File Station 5 5.0 -2025-08-29
CVE-2025-58058 github.com/ulikunitz/xz leaks memory when decoding a corrupted multiple LZMA archives — xz 5.3 Medium2025-08-28
CVE-2025-6203 Vault unauthenticated denial of service through complex json payload — Vault 7.5 High2025-08-28
CVE-2025-3601 Allocation of Resources Without Limits or Throttling in GitLab — GitLab 6.5 Medium2025-08-27
CVE-2025-4225 Allocation of Resources Without Limits or Throttling in GitLab — GitLab 5.3 Medium2025-08-27
CVE-2025-43762 Liferay Portal和Liferay DXP 安全漏洞 — Portal 8.1AIHighAI2025-08-22
CVE-2025-43752 Liferay Portal和Liferay DXP 安全漏洞 — Portal 8.8AIHighAI2025-08-22
CVE-2025-4437 Cri-o: large /etc/passwd file may lead to denial of service — Red Hat OpenShift Container Platform 4 5.7 Medium2025-08-20
CVE-2025-36047 IBM WebSphere Application Server Liberty denial of service — WebSphere Application Server Liberty 5.3 Medium2025-08-14
CVE-2025-55199 Helm Charts with Specific JSON Schema Values Can Cause Memory Exhaustion — helm 6.5 Medium2025-08-13
CVE-2025-1477 Allocation of Resources Without Limits or Throttling in GitLab — GitLab 6.5 Medium2025-08-13
CVE-2025-2614 Allocation of Resources Without Limits or Throttling in GitLab — GitLab 6.5 Medium2025-08-13
CVE-2025-54500 HTTP/2 Vulnerability — BIG-IP 5.3 Medium2025-08-13
CVE-2025-55163 Netty MadeYouReset HTTP/2 DDoS Vulnerability — netty 7.5AIHighAI2025-08-13
CVE-2025-8916 Possible DOS in processing large name constraint structures in PKIXCertPathReveiwer — BC Java 7.5 -2025-08-13
CVE-2025-50172 DirectX Graphics Kernel Denial of Service Vulnerability — Windows 10 Version 1809 6.5 Medium2025-08-12
CVE-2025-40570 Siemens多款产品 安全漏洞 — SIPROTEC 5 6MD84 (CP300) 2.4 Low2025-08-12
CVE-2025-43736 Liferay Portal和Liferay DXP 安全漏洞 — Portal 7.5AIHighAI2025-08-12
CVE-2025-8885 Possible DOS in processing specially formed ASN.1 Object Identifiers — BC Java 7.5 -2025-08-12
CVE-2025-54879 Mastodon e‑mail throttle misconfiguration allows unlimited email confirmations against unconfirmed emails — mastodon 5.3 Medium2025-08-05
CVE-2025-54869 FPDI is Vulnerable to Memory Exhaustion (OOM) through its PDF Parser — FPDI 7.5AIHighAI2025-08-05
CVE-2025-8537 Axiomatic Bento4 mp4decrypt Mp4Decrypt.cpp SetDataSize allocation of resources — Bento4 3.7 Low2025-08-05
CVE-2025-48074 OpenEXR's Unbounded File Header Values can Lead to Out-Of-Memory Errors — openexr 6.5 -2025-08-01
CVE-2025-54939 Litespeed Technologie LiteSpeed QUIC 安全漏洞 — LSQUIC 5.3 Medium2025-08-01
CVE-2025-2813 HTTP Service DoS Vulnerability — AXL F BK PN TPS 7.5 High2025-07-31
CVE-2025-5253 DoS in Kron Technologies' Kron PAM — Kron PAM 6.5 Medium2025-07-25

Vulnerabilities classified as CWE-770 (不加限制或调节的资源分配) represent 795 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.