Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-770 (不加限制或调节的资源分配) — Vulnerability Class 795

795 vulnerabilities classified as CWE-770 (不加限制或调节的资源分配). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2023-25822 ReportPortal DoS vulnerability on creating a Launch with too many recursively nested elements — reportportal 6.3 Medium2023-10-09
CVE-2023-3967 DoS Vulnerability in Hitachi Ops Center Common Services — Hitachi Ops Center Common Services 5.3 Medium2023-10-03
CVE-2023-5289 Allocation of Resources Without Limits or Throttling in ikus060/rdiffweb — ikus060/rdiffweb 7.5 -2023-09-29
CVE-2023-20033 Cisco IOS XE Software 安全漏洞 — Cisco IOS XE Software 8.6 High2023-09-27
CVE-2023-43642 Missing upper bound check on chunk length in snappy-java — snappy-java 7.5 High2023-09-25
CVE-2023-37279 Faktory Web Dashboard can lead to denial of service(DOS) via malicious user input — faktory 7.5 High2023-09-20
CVE-2022-47562 Allocation of Resources Without Limits or Throttling in Ormazabal products — ekorCCP 7.5 High2023-09-20
CVE-2023-32186 RKE2 安全漏洞 — RKE2 7.5 High2023-09-19
CVE-2023-32187 SUSE Rancher K3s 安全漏洞 — k3s 7.5 High2023-09-18
CVE-2023-40019 FreeSWITCH allows authorized users to cause a denial of service attack by sending re-INVITE with SDP containing duplicate codec names — freeswitch 7.5 High2023-09-15
CVE-2023-41043 Discourse DoS via SvgSprite cache — discourse 6.5 Medium2023-09-15
CVE-2023-41042 Discourse DoS via remote theme assets — discourse 4.9 Medium2023-09-15
CVE-2023-40588 Discourse DoS via 2FA and Security Key Names — discourse 6.5 Medium2023-09-15
CVE-2023-38706 Discourse vulnerable to DoS via drafts — discourse 6.5 Medium2023-09-15
CVE-2023-38507 Strapi Improper Rate Limiting vulnerability — strapi 7.3 High2023-09-15
CVE-2023-34994 Open Automation Software OAS Platform 安全漏洞 — OAS Platform 3.1 Low2023-09-05
CVE-2023-4647 Allocation of Resources Without Limits or Throttling in GitLab — GitLab 5.3 Medium2023-09-01
CVE-2023-40710 OPTO 22 SNAP PAC S1 资源管理错误漏洞 — SNAP PAC S1 6.8 Medium2023-08-24
CVE-2023-40709 Uncontrolled Resource Consumption in OPTO 22 SNAP PAC S1 Built-In Web Server — SNAP PAC S1 6.8 Medium2023-08-24
CVE-2023-39533 libp2p nodes vulnerable to attack using large RSA keys — go-libp2p 7.5 High2023-08-08
CVE-2023-39269 Siemens RUGGEDCOM 安全漏洞 — RUGGEDCOM i800 7.5 High2023-08-08
CVE-2023-38532 Siemens Parasolid 安全漏洞 — Parasolid V34.1 3.3 Low2023-08-08
CVE-2023-4138 Allocation of Resources Without Limits or Throttling in ikus060/rdiffweb — ikus060/rdiffweb 7.5 -2023-08-03
CVE-2023-4011 Allocation of Resources Without Limits or Throttling in GitLab — GitLab 4.3 Medium2023-08-02
CVE-2023-38684 Discourse vulnerable to ossible DDoS due to unbounded limits in various controller actions — discourse 5.3 Medium2023-07-28
CVE-2023-37906 Discourse vulnerable to DoS via post edit reason — discourse 4.3 Medium2023-07-28
CVE-2023-38492 Kirby vulnerable to denial of service from unlimited password lengths — kirby 5.3 Medium2023-07-27
CVE-2023-3242 B&R Industrial Automation GmbH Runtime 安全漏洞 — B&R Automation Runtime 8.6 High2023-07-26
CVE-2023-32481 Dell Wyse Management Suite 安全漏洞 — Wyse Management Suite 4.9 Medium2023-07-20
CVE-2023-36521 Siemens SIMATIC 安全漏洞 — SIMATIC MV540 H 8.6 High2023-07-11

Vulnerabilities classified as CWE-770 (不加限制或调节的资源分配) represent 795 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.