CWE-173 · 6 kayıt
Improper Handling of Alternate Encoding
Bu sınıftaki CVE’ler
6 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
34İzleyin | CVE-2026-10050İstismar yok | Digest authentication lossy encodingeclipse · jetty · CWE-173 | Yüksek8,7 | — | %0,6 | 4 Ağu 2026 |
29İzleyin | CVE-2026-19611İstismar yok | Wildfly-elytron: org.wildfly.security/wildfly-elytron-password-impl: wildfly-elytron: password keyspace reduction via nfkc fullwidth foldingred hat · red hat build of apache camel 4 for quarkus 3 · CWE-173 | Yüksek7,4 | — | %0,6 | 20 Ağu 2026 |
22İzleyin | CVE-2023-26302İstismar yok | markdown-it-py CLI crash on invalid UTF-8 charactersexecutablebooks · markdown-it-py · CWE-173 | Orta5,5 | — | %0,2 | 22 Şub 2023 |
22İzleyin | CVE-2023-26303İstismar yok | markdown-it-py crash on null assertionsexecutablebooks · markdown-it-py · CWE-173 | Orta5,5 | — | %0,2 | 22 Şub 2023 |
21İzleyin | CVE-2024-54158İstismar yok | In JetBrains YouTrack before 2024.3.52635 potential spoofing attack was possible via lack of Punycode encodingjetbrains · youtrack · CWE-173 | Orta5,3 | — | %0,3 | 4 Ara 2024 |
8İzleyin | CVE-2026-81638İstismar yok | Non-canonical ULID spellings are accepted and alias to the same record in ash_double_entryash-project · ash_double_entry · CWE-173 | Düşük2,1 | — | %0,2 | 7 Eyl 2026 |
- CVE-2026-1005034İzleyin
Digest authentication lossy encoding
YüksekCVSS 8,7İstismar yokEPSS %1eclipse · jetty4 Ağu 2026
- CVE-2026-1961129İzleyin
Wildfly-elytron: org.wildfly.security/wildfly-elytron-password-impl: wildfly-elytron: password keyspace reduction via nfkc fullwidth folding
YüksekCVSS 7,4İstismar yokEPSS %1red hat · red hat build of apache camel 4 for quarkus 320 Ağu 2026
- CVE-2023-2630222İzleyin
markdown-it-py CLI crash on invalid UTF-8 characters
OrtaCVSS 5,5İstismar yokEPSS %0executablebooks · markdown-it-py22 Şub 2023
- CVE-2023-2630322İzleyin
markdown-it-py crash on null assertions
OrtaCVSS 5,5İstismar yokEPSS %0executablebooks · markdown-it-py22 Şub 2023
- CVE-2024-5415821İzleyin
In JetBrains YouTrack before 2024.3.52635 potential spoofing attack was possible via lack of Punycode encoding
OrtaCVSS 5,3İstismar yokEPSS %0jetbrains · youtrack4 Ara 2024
- CVE-2026-816388İzleyin
Non-canonical ULID spellings are accepted and alias to the same record in ash_double_entry
DüşükCVSS 2,1İstismar yokEPSS %0ash-project · ash_double_entry7 Eyl 2026