İçeriğe atla
Noroxi

CWE-226 · 36 kayıt

Sensitive Information in Resource Not Removed Before Reuse

Bu sınıftaki CVE’ler

36 kayıt

  • CVE-2026-74791
    36İzleyin

    Scriban before 7.0.0 Authorization Bypass via Stale Include Cache

    KritikCVSS 9,2İstismar yokEPSS %0

    scriban · scriban16 Ağu 2026

  • CVE-2022-39393
    34İzleyin

    Wasmtime vulnerable to data leakage between instances in the pooling allocator

    YüksekCVSS 8,6İstismar yokEPSS %1

    bytecodealliance · wasmtime10 Kas 2022

  • CVE-2019-25560
    34İzleyin

    Lyric Video Creator 2.1 Denial of Service via MP3 File

    YüksekCVSS 8,7İstismar yokEPSS %0

    lyricvideocreator · lyric video creator21 Mar 2026

  • CVE-2024-21850
    33İzleyin

    Sensitive information in resource not removed before reuse in some Intel(R) TDX Seamldr module software before version 1.5.02.00 may allow a

    YüksekCVSS 8,3İstismar yokEPSS %0

    13 Kas 2024

  • CVE-2026-13585
    32İzleyin

    Allocation of Resources Without Limits and Throttling and Sensitive Information in Resource Not Removed Before Reuse in the ASUS System Cont

    YüksekCVSS 8,2Kavram kanıtıEPSS %0

    asus · system control interface v314 Tem 2026

  • CVE-2018-7166
    31İzleyin

    In all versions of Node.js 10 prior to 10.9.0, an argument processing flaw can cause `Buffer.alloc()` to return uninitialized memory.

    YüksekCVSS 7,5İstismar yokEPSS %3

    nodejs · node.js21 Ağu 2018

  • CVE-2025-0647
    31İzleyin

    In certain Arm CPUs, a CPP RCTX instruction executed on one Processing Element (PE) may inhibit TLB invalidation when a TLBI is issued to th

    YüksekCVSS 7,9İstismar yokEPSS %0

    arm · c1-ultra firmware14 Oca 2026

  • CVE-2024-38275
    30İzleyin

    moodle: HTTP authorization header is preserved between "emulated redirects"

    YüksekCVSS 7,5İstismar yokEPSS %0

    moodle · moodle18 Haz 2024

  • CVE-2025-13108
    30İzleyin

    Fixes to common vulnerabilities found in IBM Db2 Merge Backup for Linux, UNIX and Windows

    YüksekCVSS 7,5İstismar yokEPSS %0

    ibm · db2 merge backup17 Şub 2026

  • Duplicate Advisory: `#[zeroize(drop)]` doesn't implement `Drop` for `enum`s

    YüksekCVSS 7,5İstismar yok

    crates.io · zeroize_derive17 Haz 2022

  • CVE-2026-5795
    29İzleyin

    In Eclipse Jetty, the class JASPIAuthenticator initiates the authentication checks, which set two ThreadLocal variable.

    YüksekCVSS 7,4İstismar yokEPSS %1

    eclipse · jetty8 Nis 2026

  • Duplicate Advisory: Eclipse Jetty: Early return from the JASPIAuthenticator code can potentially no clear ThreadLocal variables

    YüksekCVSS 7,4İstismar yok

    Maven · org.eclipse.jetty.ee10:jetty-ee108 Nis 2026

  • CVE-2026-32960
    28İzleyin

    SD-330AC and AMC Manager provided by silex technology, Inc.

    YüksekCVSS 7,1İstismar yokEPSS %0

    silextechnology · sd-330ac firmware20 Nis 2026

  • CVE-2019-25657
    27İzleyin

    AnyBurn 4.3 x86 Denial of Service via Image Conversion

    OrtaCVSS 6,8İstismar yokEPSS %0

    anyburn · anyburn5 Nis 2026

  • CVE-2019-25563
    27İzleyin

    PCHelpWareV2 1.0.0.5 Denial of Service via SC Creation

    OrtaCVSS 6,9İstismar yokEPSS %0

    uvnc · pchelpwarev221 Mar 2026

  • CVE-2019-25571
    27İzleyin

    MediaMonkey 4.1.23 Denial of Service via Malformed URL

    OrtaCVSS 6,9İstismar yokEPSS %0

    ventismedia · mediamonkey21 Mar 2026

  • CVE-2019-25645
    27İzleyin

    WinAVI iPod 3GP MP4 PSP Converter 4.4.2 Denial of Service

    OrtaCVSS 6,9İstismar yokEPSS %0

    winavi · winavi ipod/3gp/mp4/psp converter24 Mar 2026

  • CVE-2019-25553
    27İzleyin

    CEWE PHOTO IMPORTER 6.4.3 Denial of Service via Malformed Image

    OrtaCVSS 6,9İstismar yokEPSS %0

    cewe · photo importer21 Mar 2026

  • CVE-2019-25617
    27İzleyin

    Ease Audio Converter 5.30 Denial of Service via Audio Cutter

    OrtaCVSS 6,9İstismar yokEPSS %0

    audiotool · ease audio converter22 Mar 2026

  • CVE-2024-32036
    26İzleyin

    SixLabors.ImageSharp vulnerable to data leakage

    OrtaCVSS 6,5İstismar yokEPSS %1

    sixlabors · imagesharp15 Nis 2024

  • CVE-2025-2522
    26İzleyin

    Lack of buffer clearing before reuse may result in incorrect system behavior.

    OrtaCVSS 6,5İstismar yokEPSS %0

    honeywell · c300 pcnt0210 Tem 2025

  • CVE-2023-41138
    26İzleyin

    The AppsAnywhere macOS client-privileged helper can be tricked into executing arbitrary commands with elevated permissions by a local user p

    OrtaCVSS 6,7İstismar yokEPSS %0

    appsanywhere · appsanywhere client9 Kas 2023

  • CVE-2025-11602
    25İzleyin

    Untargeted information leak in Bolt protocol handshake

    OrtaCVSS 6,3İstismar yokEPSS %0

    neo4j · enterprise edition31 Eki 2025

  • CVE-2026-74250
    25İzleyin

    In OpenStack Ironic before 38.0.1, the autodetect deploy interface may fail to run cleaning immediately after enrollment with, or changing t

    OrtaCVSS 6,3İstismar yokEPSS %0

    openstack · ironic14 Ağu 2026

  • CVE-2023-3006
    22İzleyin

    A known cache speculation vulnerability, known as Branch History Injection (BHI) or Spectre-BHB, becomes actual again for the new hw AmpereO

    OrtaCVSS 5,5İstismar yokEPSS %0

    linux · linux kernel31 May 2023

Tüm zafiyet sınıfları