İçeriğe atla
Noroxi

CWE-696 · 44 kayıt

Incorrect Behavior Order

Bu sınıftaki CVE’ler

45 kayıt

  • CVE-2026-44108
    37İzleyin

    Firewall bypass during shutdown

    KritikCVSS 9,3İstismar yokEPSS %1

    phoenix contact · charx sec-315030 Tem 2026

  • ibc-go: Potential Reentrancy using Timeout Callbacks in ibc-hooks

    KritikCVSS 9,1İstismar yok

    Go · github.com/cosmos/ibc-go/v45 Nis 2024

  • CVE-2026-45033
    34İzleyin

    GitHub Copilot CLI: Nested Bare Repository Can Execute Arbitrary Commands via core.fsmonitor

    YüksekCVSS 8,5Kavram kanıtıEPSS %0

    github · copilot-cli13 May 2026

  • CVE-2026-14169
    32İzleyin

    ads-tec Industrial IT: Account lockout via non-atomic user creation

    YüksekCVSS 8,1İstismar yokEPSS %1

    ads-tec industrial it · dvg-irf140128 Tem 2026

  • CVE-2026-35386
    32İzleyin

    In OpenSSH before 10.3, command execution can occur via shell metacharacters in a username within a command line.

    YüksekCVSS 8,1İstismar yokEPSS %0

    openbsd · openssh2 Nis 2026

  • CVE-2021-31379
    30İzleyin

    Junos OS: MX Series: MPC 7/8/9/10/11 cards with MAP-E: PFE halts when an attacker sends malformed IPv4 or IPv6 traffic inside the MAP-E tunnel.

    YüksekCVSS 7,5İstismar yokEPSS %1

    juniper · junos19 Eki 2021

  • CVE-2025-31485
    30İzleyin

    GraphQL grant on a property might be cached with different objects

    YüksekCVSS 7,5İstismar yokEPSS %1

    api-platform · core3 Nis 2025

  • CVE-2025-48965
    30İzleyin

    Mbed TLS before 3.6.4 has a NULL pointer dereference because mbedtls_asn1_store_named_data can trigger conflicting data with val.p of NULL b

    YüksekCVSS 7,5İstismar yokEPSS %1

    arm · mbed tls20 Tem 2025

  • CVE-2026-41254
    30İzleyin

    Little CMS (lcms2) through 2.18 has an integer overflow in CubeSize in cmslut.c because the overflow check is performed after the multiplica

    YüksekCVSS 7,5İstismar yokEPSS %0

    littlecms · little cms18 Nis 2026

  • CVE-2023-33224
    29İzleyin

    SolarWinds Platform Incorrect Behavior Order Vulnerability

    YüksekCVSS 7,2İstismar yokEPSS %3

    solarwinds · solarwinds platform26 Tem 2023

  • CVE-2024-24853
    29İzleyin

    Incorrect behavior order in transition between executive monitor and SMI transfer monitor (STM) in some Intel(R) Processor may allow a privi

    YüksekCVSS 7,3İstismar yokEPSS %0

    14 Ağu 2024

  • Duplicate Advisory: OpenClaw: Tlon cite expansion happens before channel and DM authorization is complete

    YüksekCVSS 7,3İstismar yok

    npm · openclaw10 Nis 2026

  • CVE-2026-35636
    28İzleyin

    OpenClaw 2026.3.11 < 2026.3.25 - Session Isolation Bypass via sessionId Resolution

    YüksekCVSS 7,1İstismar yokEPSS %0

    openclaw · openclaw9 Nis 2026

  • CVE-2026-73446
    28İzleyin

    Security Advisory 0160

    YüksekCVSS 7,0İstismar yokEPSS %0

    arista networks · eos15 Eyl 2026

  • CVE-2026-35640
    27İzleyin

    OpenClaw < 2026.3.25 - Denial of Service via Unauthenticated Webhook Request Parsing

    OrtaCVSS 6,9İstismar yokEPSS %1

    openclaw · openclaw9 Nis 2026

  • CVE-2026-35627
    27İzleyin

    OpenClaw < 2026.3.22 - Unauthenticated Cryptographic Work in Nostr Inbound DM Handling

    OrtaCVSS 6,9İstismar yokEPSS %1

    openclaw · openclaw9 Nis 2026

  • CVE-2026-35652
    27İzleyin

    OpenClaw < 2026.3.22 - Unauthorized Action Execution via Callback Dispatch

    OrtaCVSS 6,9İstismar yokEPSS %1

    openclaw · openclaw10 Nis 2026

  • CVE-2026-67217
    27İzleyin

    cJSON JSON Patch Non-Atomic Application Destroys Data Before Validation

    OrtaCVSS 6,9İstismar yokEPSS %0

    davegamble · cjson29 Tem 2026

  • CVE-2026-35637
    27İzleyin

    OpenClaw < 2026.3.22 - Premature Cite Expansion Before Authorization in Channel and DM

    OrtaCVSS 6,9İstismar yokEPSS %0

    openclaw · openclaw9 Nis 2026

  • CVE-2025-55114
    27İzleyin

    BMC Control-M/Agent improper IP address filtering order

    OrtaCVSS 6,9İstismar yokEPSS %0

    bmc · control-m/agent16 Eyl 2025

  • CVE-2025-9904
    27İzleyin

    Unallocated memory access vulnerability in print processing of Generic Plus PCL6 Printer Driver / Generic Plus UFR II Printer Driver / Gener

    OrtaCVSS 6,9İstismar yokEPSS %0

    canon inc. · generic plus pcl6 printer driver28 Eyl 2025

  • CVE-2024-30389
    27İzleyin

    Junos OS: EX4300 Series: Firewall filter not blocking egress traffic

    OrtaCVSS 6,9İstismar yokEPSS %0

    juniper · junos12 Nis 2024

  • CVE-2024-30410
    27İzleyin

    Junos OS: EX4300 Series: Loopback filter not blocking traffic despite having discard term.

    OrtaCVSS 6,9İstismar yokEPSS %0

    juniper · junos12 Nis 2024

  • CVE-2026-44919
    26İzleyin

    In OpenStack Ironic through 35.x before a3f6d73, during image handling, an infinite loop in checksum calculations can occur via the file:///

    OrtaCVSS 6,5İstismar yokEPSS %1

    openstack · ironic13 May 2026

  • CVE-2025-0150
    26İzleyin

    Zoom Workplace Apps for iOS - Incorrect Behavior Order

    OrtaCVSS 6,5İstismar yokEPSS %0

    zoom · meeting software development kit11 Mar 2025

Tüm zafiyet sınıfları