Skip to content
Noroxi

CWE-440 · 46 records

Expected Behavior Violation

CVEs in this class

46 records

  • CVE-2019-6569
    36Monitor

    The monitor barrier of the affected products insufficiently blocks data from being forwarded over the mirror port into the mirrored network.

    CriticalCVSS 9.1No exploitEPSS 1%

    siemens · scalance x-200 firmwareMar 26, 2019

  • Defect in query plan cache may cause incorrect operations to be executed in Apollo Router

    CriticalCVSS 9.0No exploitEPSS 1%

    apollographql · routerMay 2, 2024

  • CVE-2025-8850
    35Monitor

    Insecure API Design in danny-avila/librechat

    HighCVSS 8.8No exploitEPSS 0%

    librechat · librechatOct 30, 2025

  • CVE-2026-8806
    34Monitor

    Denial-of-service (DoS) vulnerability in MELSEC iQ-F Series FX5-ENET/IP Ethernet module

    HighCVSS 8.7No exploitEPSS 1%

    mitsubishi electric corporation · mitsubishi electric melsec iq-f series fx5-enet/ip ethernet module fx5-enet/ipJun 18, 2026

  • When Eclipse Mosquitto version 1.0 to 1.5.5 (inclusive) is configured to use an ACL file, and that ACL file is empty, or contains only comme

    HighCVSS 8.1No exploitEPSS 1%

    eclipse · mosquittoMar 27, 2019

  • uutils coreutils: cp/install/mv/ln --suffix alone does not enable backup mode (silent data loss vs GNU)

    HighCVSS 8.0No exploit

    crates.io · uucoreJul 7, 2026

  • CVE-2023-4807
    31Monitor

    POLY1305 MAC implementation corrupts XMM registers on Windows

    HighCVSS 7.8No exploitEPSS 1%

    openssl · opensslSep 8, 2023

  • CVE-2022-3281
    30Monitor

    WAGO: multiple products - Loss of MAC-Address-Filtering after reboot

    HighCVSS 7.5No exploitEPSS 1%

    wago · 750-8100 firmwareOct 17, 2022

  • Information leak in gRPC

    HighCVSS 7.5No exploitEPSS 0%

    grpc · grpcJun 9, 2023

  • CVE-2019-5108
    29Monitor

    An exploitable denial-of-service vulnerability exists in the Linux kernel prior to mainline 5.3.

    MediumCVSS 6.5No exploitEPSS 10%

    linux · linux kernelDec 23, 2019

  • Tuleap deleting or moving an artifact can delete values from unrelated artifacts

    HighCVSS 7.1No exploitEPSS 1%

    enalean · tuleapMar 29, 2024

  • Junos OS and Junos OS Evolved: An unauthenticated adjacent attacker sending a valid BGP UPDATE packet forces a BGP session reset

    HighCVSS 7.1No exploitEPSS 0%

    juniper · junosJul 11, 2025

  • BT122 plaintext pause encryption request causes DOS

    HighCVSS 7.1No exploitEPSS 0%

    silabs.com · bt122Aug 13, 2026

  • RS9116W/SiWx917 plaintext pause encryption request causes DOS

    HighCVSS 7.1No exploitEPSS 0%

    silabs.com · wisecnnectSep 8, 2026

  • CVE-2023-6129
    27Monitor

    POLY1305 MAC implementation corrupts vector registers on PowerPC

    MediumCVSS 6.5No exploitEPSS 2%

    openssl · opensslJan 9, 2024

  • Jostle logic bypass degrades resolution performance

    MediumCVSS 6.9No exploitEPSS 1%

    nlnetlabs · unboundMay 20, 2026

  • CVE-2026-3344
    27Monitor

    WatchGuard Firebox System Integrity Check Bypass

    MediumCVSS 6.9No exploitEPSS 0%

    watchguard · firewareMar 3, 2026

  • CVE-2023-2088
    26Monitor

    A flaw was found in OpenStack due to an inconsistency between Cinder and Nova.

    MediumCVSS 6.5No exploitEPSS 1%

    redhat · openstackMay 12, 2023

  • CVE-2019-5061
    26Monitor

    An exploitable denial-of-service vulnerability exists in the hostapd 2.6, where an attacker could trigger AP to send IAPP location updates f

    MediumCVSS 6.5No exploitEPSS 1%

    w1.fi · hostapdDec 12, 2019

  • CVE-2019-5062
    26Monitor

    An exploitable denial-of-service vulnerability exists in the 802.11w security state handling for hostapd 2.6 connected clients with valid 80

    MediumCVSS 6.5No exploitEPSS 1%

    w1.fi · hostapdDec 12, 2019

  • CVE-2025-6211
    26Monitor

    MD5 Hash Collision in run-llama/llama_index

    MediumCVSS 6.5No exploitEPSS 0%

    llamaindex · llamaindexJul 10, 2025

  • WordPress Stripe Payments plugin <= 2.0.98 - Bypass Vulnerability vulnerability

    MediumCVSS 6.5No exploitEPSS 0%

    mra13 / team tips and tricks hq · stripe paymentsJun 15, 2026

  • WatchGuard Firebox Boot Time System Integrity Check Bypass

    MediumCVSS 6.7No exploitEPSS 0%

    watchguard · firewareDec 4, 2025

  • CVE-2024-7246
    25Monitor

    HPACK table poisoning in gRPC C++, Python & Ruby

    MediumCVSS 6.3No exploitEPSS 0%

    grpc · grpcAug 6, 2024

  • Unexpected visibility of environment variable configurations in @backstage/plugin-app-backend

    MediumCVSS 5.8No exploitEPSS 0%

    backstage · backstageOct 3, 2024

All vulnerability classes