Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-770 (不加限制或调节的资源分配) — Vulnerability Class 796

796 vulnerabilities classified as CWE-770 (不加限制或调节的资源分配). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-3734 Stage File Proxy - Moderately critical - Denial of Service - SA-CONTRIB-2025-035 — Stage File Proxy 7.5AIHighAI2025-04-16
CVE-2025-0122 Prisma SD-WAN: Denial of Service (DoS) Vulnerability Through Burst of Crafted Packets — Prisma SD-WAN 6.5AIMediumAI2025-04-11
CVE-2024-51461 IBM QRadar WinCollect Agent denial of service — QRadar WinCollect Agent 4.3 Medium2025-04-11
CVE-2025-29917 Suricata decode_base64: signature can do large memory allocation — suricata 6.2 Medium2025-04-10
CVE-2025-29916 Suricata datasets: ruleset declared settings can lead to resource starvation — suricata 6.2 Medium2025-04-10
CVE-2025-1677 Allocation of Resources Without Limits or Throttling in GitLab — GitLab 6.5 Medium2025-04-10
CVE-2025-26480 Dell PowerScale OneFS 安全漏洞 — PowerScale OneFS 5.3 Medium2025-04-10
CVE-2025-3475 WEB-T - Moderately critical - Access bypass, Denial of service - SA-CONTRIB-2025-030 — WEB-T 7.5AIHighAI2025-04-09
CVE-2025-32380 Apollo Router Query Validation Vulnerable to Excessive Resource Consumption via Named Fragment Processing — router 7.5 High2025-04-09
CVE-2025-32381 Denial of Service by abusing xgrammar unbounded cache in memory — xgrammar 6.5 Medium2025-04-09
CVE-2025-32374 Possible Denial of Service (DoS) in DNN.PLATFORM registration — Dnn.Platform 5.9 Medium2025-04-09
CVE-2025-26682 ASP.NET Core and Visual Studio Denial of Service Vulnerability — ASP.NET Core 8.0 7.5 High2025-04-08
CVE-2025-32025 bep/imagemeta allows a potentially large memory allocation in PNG and WebP parsing — imagemeta 7.5AIHighAI2025-04-08
CVE-2025-32024 bep/imagemeta allows excessively large EXIF data structures — imagemeta 7.5AIHighAI2025-04-08
CVE-2025-32034 Apollo Router Query Planner Vulnerable to Excessive Resource Consumption via Named Fragment Expansion — router 7.5 High2025-04-07
CVE-2025-32032 Apollo Router Query Planner Vulnerable to Excessive Resource Consumption via Optimization Bypass — router 7.5 High2025-04-07
CVE-2025-32031 Apollo Gateway Query Planner Vulnerable to Excessive Resource Consumption via Optimization Bypass — federation 7.5 High2025-04-07
CVE-2025-32030 Apollo Gateway Query Planner Vulnerable to Excessive Resource Consumption via Named Fragment Expansion — federation 7.5 High2025-04-07
CVE-2025-31496 apollo-compiler Named Fragment Processing Vulnerability — apollo-rs 7.5 High2025-04-07
CVE-2025-24317 JTEKT ELECTRONICS HMI ViewJet C-more 安全漏洞 — HMI ViewJet C-more series 7.5AIHighAI2025-04-04
CVE-2025-32049 Libsoup: denial of service attack to websocket server 7.5 High2025-04-03
CVE-2024-45700 DoS vulnerability due to uncontrolled resource exhaustion — Zabbix 7.5AIHighAI2025-04-02
CVE-2025-27556 Django 安全漏洞 — Django 5.8 Medium2025-04-02
CVE-2024-10307 Allocation of Resources Without Limits or Throttling in GitLab — GitLab 4.3 Medium2025-03-28
CVE-2025-30350 Directus's S3 assets become unavailable after a burst of HEAD requests — directus 5.3 Medium2025-03-26
CVE-2025-30225 Directus's S3 assets become unavailable after a burst of malformed transformations — directus 5.3 Medium2025-03-26
CVE-2025-2559 Org.keycloak/keycloak-services: jwt token cache exhaustion leading to denial of service (dos) in keycloak 4.9 Medium2025-03-25
CVE-2024-45484 Enabled ICMP redirection in B&R APROL — APROL 6.5AIMediumAI2025-03-25
CVE-2024-10650 Denial of Service (DoS) in gaizhenbiao/chuanhuchatgpt — gaizhenbiao/chuanhuchatgpt 7.5 -2025-03-20
CVE-2024-8966 Denial of Service in gradio-app/gradio — gradio-app/gradio 7.5 -2025-03-20

Vulnerabilities classified as CWE-770 (不加限制或调节的资源分配) represent 796 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.