Skip to content
Noroxi

CWE-491 · 4 records

Public cloneable() Method Without Final ('Object Hijack')

CVEs in this class

4 records

  • Quark Cloud Drive v3.23.2 has a DLL Hijacking vulnerability.

    CriticalCVSS 9.8No exploitEPSS 0%

    quark · quark cloud driveNov 20, 2025

  • Nagios Fusion v2024R1.2 and v2024R2 does not invalidate already existing session tokens when the two-factor authentication mechanism is enab

    HighCVSS 8.6Proof of conceptEPSS 1%

    nagios · fusionOct 27, 2025

  • An issue in ifood Order Manager v3.35.5 'Gestor de Peddios.exe' allows attackers to execute arbitrary code via a DLL hijacking attack.

    HighCVSS 7.8Proof of conceptEPSS 1%

    Jul 9, 2024

  • Reolink v4.54.0.4.20250526 was discovered to contain a task hijacking vulnerability due to inappropriate taskAffinity settings.

    MediumCVSS 6.5No exploitEPSS 0%

    reolink · reolinkAug 22, 2025

All vulnerability classes