İçeriğe atla
Noroxi

CWE-115 · 30 kayıt

Misinterpretation of Input

Bu sınıftaki CVE’ler

30 kayıt

  • CVE-2020-27846
    40Planlayın

    A signature verification vulnerability exists in crewjam/saml.

    KritikCVSS 9,8İstismar yokEPSS %5

    grafana · grafana21 Ara 2020

  • CVE-2021-1587
    35İzleyin

    Cisco NX-OS Software VXLAN OAM (NGOAM) Denial of Service Vulnerability

    YüksekCVSS 8,6İstismar yokEPSS %2

    cisco · nx-os25 Ağu 2021

  • CVE-2025-5747
    32İzleyin

    WOLFBOX Level 2 EV Charger MCU Command Parsing Misinterpretation of Input Remote Code Execution Vulnerability

    YüksekCVSS 8,0İstismar yokEPSS %0

    wolfbox · level 2 ev charger firmware6 Haz 2025

  • CVE-2018-12116
    31İzleyin

    Node.js: All versions prior to Node.js 6.15.0 and 8.14.0: HTTP request splitting: If Node.js can be convinced to use unsanitized user-provid

    YüksekCVSS 7,5İstismar yokEPSS %5

    nodejs · node.js28 Kas 2018

  • CVE-2021-0207
    30İzleyin

    NFX250, NFX350, QFX5K Series, EX2300 Series, EX3400 Series, EX4300 Multigigabit, EX4600 Series: Certain genuine traffic received by the Junos OS device will be

    YüksekCVSS 7,5İstismar yokEPSS %1

    juniper · junos15 Oca 2021

  • CVE-2024-11169
    30İzleyin

    Unhandled Exception Leading to Server Crash in danny-avila/librechat

    YüksekCVSS 7,5İstismar yokEPSS %1

    librechat · librechat20 Mar 2025

  • CVE-2025-32908
    30İzleyin

    Libsoup: denial of service on libsoup through http/2 server

    YüksekCVSS 7,5İstismar yokEPSS %1

    red hat · red hat enterprise linux 1014 Nis 2025

  • CVE-2022-20915
    29İzleyin

    Cisco IOS XE Software IPv6 VPN over MPLS Denial of Service Vulnerability

    YüksekCVSS 7,4İstismar yokEPSS %0

    cisco · ios xe10 Eki 2022

  • CVE-2025-54584
    28İzleyin

    GitProxy is vulnerable to a packfile parsing exploit

    YüksekCVSS 7,0İstismar yokEPSS %1

    finos · gitproxy30 Tem 2025

  • CVE-2025-25069
    26İzleyin

    Apache Kvrocks: Cross-Protocol Scripting Vulnerability

    OrtaCVSS 6,5İstismar yokEPSS %1

    apache · kvrocks7 Şub 2025

  • CVE-2022-21672
    26İzleyin

    /etc/pki/tls and /etc/ssl/certs include distrusted certificates in make-ca

    OrtaCVSS 6,5İstismar yokEPSS %1

    linuxfromscratch · make-ca10 Oca 2022

  • CVE-2025-47906
    26İzleyin

    Unexpected paths returned from LookPath in os/exec

    OrtaCVSS 6,5İstismar yokEPSS %1

    golang · go18 Eyl 2025

  • CVE-2025-68113
    26İzleyin

    ALTCHA Proof-of-Work Vulnerable to Challenge Splicing and Replay

    OrtaCVSS 6,5İstismar yokEPSS %0

    altcha-org · altcha-lib15 Ara 2025

  • CVE-2023-32260
    26İzleyin

    A potential Misinterpretation of Input vulnerability has been identified in SMAX, AMX, and HCMX products.

    OrtaCVSS 6,5İstismar yokEPSS %0

    opentext™ · service management automation x (smax)19 Mar 2024

  • CVE-2025-5826
    25İzleyin

    Autel MaxiCharger AC Wallbox Commercial ble_process_esp32_msg Misinterpretation of Input Vulnerability

    OrtaCVSS 6,3İstismar yokEPSS %0

    autel · maxicharger ac elite business c50 firmware25 Haz 2025

  • CVE-2022-1233
    24İzleyin

    URL Confusion When Scheme Not Supplied in medialize/uri.js

    OrtaCVSS 6,1İstismar yokEPSS %1

    uri.js project · uri.js4 Nis 2022

  • CVE-2022-3224
    24İzleyin

    Misinterpretation of Input in ionicabizau/parse-url

    OrtaCVSS 6,1İstismar yokEPSS %1

    parse-url project · parse-url15 Eyl 2022

  • CVE-2020-29509
    23İzleyin

    The encoding/xml package in Go (all versions) does not correctly preserve the semantics of attribute namespace prefixes during tokenization

    OrtaCVSS 5,6İstismar yokEPSS %2

    golang · go14 Ara 2020

  • CVE-2020-29510
    23İzleyin

    The encoding/xml package in Go versions 1.15 and earlier does not correctly preserve the semantics of directives during tokenization round-t

    OrtaCVSS 5,6İstismar yokEPSS %2

    golang · go14 Ara 2020

  • CVE-2020-29511
    23İzleyin

    The encoding/xml package in Go (all versions) does not correctly preserve the semantics of element namespace prefixes during tokenization ro

    OrtaCVSS 5,6İstismar yokEPSS %2

    golang · go14 Ara 2020

  • CVE-2018-7159
    22İzleyin

    The HTTP parser in all current versions of Node.js ignores spaces in the `Content-Length` header, allowing input such as `Content-Length: 1

    OrtaCVSS 5,3İstismar yokEPSS %4

    nodejs · node.js17 May 2018

  • CVE-2026-12491
    19İzleyin

    Vllm: vllm: image exif rotation & png trns transparency not normalized, causing mismatch between model input and expectations

    OrtaCVSS 4,8İstismar yokEPSS %0

    vllm-project · vllm17 Haz 2026

  • Duplicate Advisory: image EXIF Rotation & PNG tRNS Transparency Not Normalized, Causing Mismatch Between Model Input and Expectations

    OrtaCVSS 4,8İstismar yok

    PyPI · vllm17 Haz 2026

  • CVE-2018-12123
    18İzleyin

    Node.js: All versions prior to Node.js 6.15.0, 8.14.0, 10.14.0 and 11.3.0: Hostname spoofing in URL parser for javascript protocol: If a Nod

    OrtaCVSS 4,3İstismar yokEPSS %4

    nodejs · node.js28 Kas 2018

  • CVE-2023-32228
    18İzleyin

    A firmware bug which may lead to misinterpretation of data in the AMC2-4WCF and AMC2-2WCF allowing an adversary to grant access to the last

    OrtaCVSS 4,6İstismar yokEPSS %0

    bosch · ams11 Nis 2024

Tüm zafiyet sınıfları