Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-908 (对未经初始化资源的使用) — Vulnerability Class 128

128 vulnerabilities classified as CWE-908 (对未经初始化资源的使用). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2026-26175 Windows Boot Manager Security Feature Bypass Vulnerability — Windows 10 Version 1607 4.6 Medium2026-04-14
CVE-2026-34543 OpenEXR: Heap information disclosure in PXR24 decompression via unchecked decompressed size (undo_pxr24_impl) — openexr 5.5AIMediumAI2026-04-01
CVE-2026-27496 n8n has In-Process Memory Disclosure in its Task Runner — n8n 6.5 -2026-03-25
CVE-2025-12736 multimedia_audio_standard has an insecure storage of sensitive information vulnerability — OpenHarmony 6.5 Medium2026-03-16
CVE-2026-3497 OpenSSH 安全漏洞 — openssh 9.1AICriticalAI2026-03-12
CVE-2026-2044 GIMP PGM File Parsing Uninitialized Memory Remote Code Execution Vulnerability — GIMP 7.8AIHighAI2026-02-20
CVE-2025-12474 libjxl: Uninitialized memory read in decoder due to incorrect optimization in patch handling — libjxl 4.3 -2026-02-11
CVE-2025-15281 wordexp with WRDE_REUSE and WRDE_APPEND may return uninitialized memory — glibc 7.5AIHighAI2026-01-20
CVE-2026-0915 getnetbyaddr and getnetbyaddr_r leak stack contents to DNS resovler — glibc 7.5AIHighAI2026-01-15
CVE-2026-20962 Dynamic Root of Trust for Measurement (DRTM) Information Disclosure Vulnerability — Windows 10 Version 1809 4.4 Medium2026-01-13
CVE-2025-40829 Siemens Simcenter Femap 安全漏洞 — Simcenter Femap 7.8 High2025-12-12
CVE-2025-62472 Windows Remote Access Connection Manager Elevation of Privilege Vulnerability — Windows 10 Version 1607 7.8 High2025-12-09
CVE-2025-31649 Dell ControlVault3 ControlVault WBDI Driver hard-coded password vulnerability — BCM5820X 8.7 High2025-11-17
CVE-2025-31361 Dell ControlVault3 ControlVault WBDI Driver Broadcom Storage Adapter privilege escalation vulnerability — BCM5820X 8.7 High2025-11-17
CVE-2025-9640 Samba: vfs_streams_xattr uninitialized memory write possible 4.3 Medium2025-10-15
CVE-2025-59194 Windows Kernel Elevation of Privilege Vulnerability — Windows 11 version 22H2 7.0 High2025-10-14
CVE-2025-59204 Windows Management Services Information Disclosure Vulnerability — Windows 10 Version 1809 5.5 Medium2025-10-14
CVE-2025-59964 Junos OS: SRX4700: When forwarding-options sampling is enabled any traffic destined to the RE will cause the forwarding line card to crash and restart — Junos OS 7.5 High2025-10-09
CVE-2025-53799 Windows Imaging Component Information Disclosure Vulnerability — Microsoft Office for Android 5.5 Medium2025-09-09
CVE-2025-55198 Helm May Panic Due To Incorrect YAML Content — helm 6.5 Medium2025-08-13
CVE-2025-50157 Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability — Windows Server 2008 R2 Service Pack 1 5.7 Medium2025-08-12
CVE-2025-53719 Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability — Windows Server 2008 R2 Service Pack 1 5.7 Medium2025-08-12
CVE-2025-53153 Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability — Windows Server 2008 R2 Service Pack 1 5.7 Medium2025-08-12
CVE-2025-53148 Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability — Windows Server 2008 R2 Service Pack 1 5.7 Medium2025-08-12
CVE-2025-53138 Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability — Windows Server 2008 R2 Service Pack 1 5.7 Medium2025-08-12
CVE-2025-50156 Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability — Windows Server 2008 R2 Service Pack 1 5.7 Medium2025-08-12
CVE-2025-53759 Microsoft Excel Remote Code Execution Vulnerability — Microsoft 365 Apps for Enterprise 7.8 High2025-08-12
CVE-2025-2329 High traffic causes corrupt SPI packets in OpenThread leading to denial of service — OpenThread 7.5 -2025-07-25
CVE-2025-41239 vSockets information-disclosure vulnerability — ESXi 7.1 High2025-07-15
CVE-2025-49718 Microsoft SQL Server Information Disclosure Vulnerability — Microsoft SQL Server 2019 (CU 32) 7.5 High2025-07-08

Vulnerabilities classified as CWE-908 (对未经初始化资源的使用) represent 128 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.