Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-770 (不加限制或调节的资源分配) — Vulnerability Class 796

796 vulnerabilities classified as CWE-770 (不加限制或调节的资源分配). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-27513 OpenTelemetry .NET has a Denial of Service (DoS) Vulnerability in API Package — opentelemetry-dotnet 7.5 High2025-03-05
CVE-2025-27419 Denial of Service (DoS) in WeGIA due to Recursive Crawling of Dynamic URLs — WeGIA 7.5 -2025-03-03
CVE-2025-27219 Ruby 安全漏洞 — CGI 5.8 Medium2025-03-03
CVE-2025-26466 Openssh: denial-of-service in openssh 5.9 Medium2025-02-28
CVE-2025-22273 Lack of rate-limiting in password change mechanism in CyberArk Endpoint Privilege Manager — Endpoint Privilege Manager 9.8 -2025-02-28
CVE-2025-27157 Mastodon's rate-limits are missing on `/auth/setup` — mastodon 5.3 Medium2025-02-27
CVE-2025-27144 Go JOSE's Parsing Vulnerable to Denial of Service — go-jose 7.5 -2025-02-24
CVE-2024-49589 Foundry artifacts denial of service — com.palantir.artifacts:artifacts 6.5 Medium2025-02-18
CVE-2025-26819 Monero 安全漏洞 — Monero 8.6 High2025-02-14
CVE-2025-1059 Schneider Electric ASCO 5310 安全漏洞 — ASCO 5310 Single-Channel Remote Annunciator 7.5 High2025-02-13
CVE-2024-12379 Allocation of Resources Without Limits or Throttling in GitLab — GitLab 6.5 Medium2025-02-12
CVE-2025-1072 Allocation of Resources Without Limits or Throttling in GitLab — GitLab 6.5 Medium2025-02-07
CVE-2024-37358 Apache James: denial of service through the use of IMAP literals — Apache James server 8.6 High2025-02-06
CVE-2024-38316 IBM Aspera Shares Denial of Service — Aspera Shares 4.3 Medium2025-02-05
CVE-2025-24312 BIG-IP AFM vulnerability — BIG-IP 7.5 High2025-02-05
CVE-2024-2878 Allocation of Resources Without Limits or Throttling in GitLab — GitLab 7.5 High2025-02-05
CVE-2023-6386 Allocation of Resources Without Limits or Throttling in GitLab — GitLab 6.5 Medium2025-02-05
CVE-2024-12705 DNS-over-HTTPS implementation suffers from multiple issues under heavy query load — BIND 9 7.5 High2025-01-29
CVE-2025-0695 frozen 安全漏洞 — Frozen 5.3 Medium2025-01-27
CVE-2025-24033 @fastify/multipart vulnerable to unlimited consumption of resources — fastify-multipart 7.5 High2025-01-23
CVE-2025-0635 Denial of Service condition in M-Files Server — M-Files Server 7.5 -2025-01-23
CVE-2024-43708 Elastic Kibana 安全漏洞 — Kibana 6.5 Medium2025-01-23
CVE-2024-52972 Kibana allocation of resources without limits or throttling leads to crash — Kibana 6.5 Medium2025-01-23
CVE-2025-23028 DoS in Cilium agent DNS proxy from crafted DNS responses — cilium 5.3 Medium2025-01-22
CVE-2024-52973 Kibana allocation of resources without limits or throttling leads to crash — Kibana 6.5 Medium2025-01-21
CVE-2024-43709 Elasticsearch allocation of resources without limits or throttling leads to crash — Elasticsearch 6.5 Medium2025-01-21
CVE-2024-41742 IBM TXSeries for Multiplatforms denial of service — TXSeries for Multiplatforms 7.5 High2025-01-19
CVE-2024-41743 IBM TXSeries for Multiplatforms denial of service — TXSeries for Multiplatforms 7.5 High2025-01-19
CVE-2024-45662 IBM Safer Payments denial of service — Safer Payments 7.5 High2025-01-18
CVE-2024-36403 Denial of service/high operating costs through unauthenticated downloads in Matrix Media Repo — matrix-media-repo 5.3 Medium2025-01-16

Vulnerabilities classified as CWE-770 (不加限制或调节的资源分配) represent 796 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.