Skip to content
Noroxi

CWE-758 · 19 records

Reliance on Undefined, Unspecified, or Implementation-Defined Behavior

CVEs in this class

19 records

  • CVE-2026-4705
    39Monitor

    Undefined behavior in the WebRTC: Signaling component

    CriticalCVSS 9.8No exploitEPSS 1%

    mozilla · firefoxMar 24, 2026

  • Cap'n Proto has Undefined Behavior in constant::Reader and StructSchema

    CriticalCVSS 9.5No exploit

    crates.io · capnpJan 28, 2026

  • CVE-2026-4724
    36Monitor

    Undefined behavior in the Audio/Video component

    CriticalCVSS 9.1No exploitEPSS 0%

    mozilla · firefoxMar 24, 2026

  • Wasmtime has Undefined Behavior in Rust runtime functions

    HighCVSS 8.8No exploitEPSS 0%

    bytecodealliance · wasmtimeApr 27, 2023

  • CVE-2026-4718
    32Monitor

    Undefined behavior in the WebRTC: Signaling component

    HighCVSS 8.1No exploitEPSS 0%

    mozilla · firefoxMar 24, 2026

  • LibYML: `libyml::string::yaml_string_extend` is unsound and unmaintained

    HighCVSS 8.0No exploit

    crates.io · libymlSep 15, 2025

  • Eclipse OpenJ9 : Method resolution default method precedence failure

    MediumCVSS 6.9No exploitEPSS 1%

    eclipse · openj9Jul 21, 2026

  • CVE-2024-4774
    26Monitor

    The `ShmemCharMapHashEntry()` code was susceptible to potentially undefined behavior by bypassing the move semantics for one of its data mem

    MediumCVSS 6.5No exploitEPSS 0%

    mozilla · firefoxMay 14, 2024

  • OpenPLC_V3 has a vulnerability in the enipThread function that occurs due to the lack of a return value.

    MediumCVSS 6.1No exploitEPSS 0%

    openplc_v3 · openplc_v3Oct 1, 2025

  • iccDEV: UB in CIccCalculatorFunc::ApplySequence()

    MediumCVSS 5.5No exploitEPSS 0%

    color · iccdevMar 31, 2026

  • iccDEV: UB in CIccOpDefEnvVar::Exec()

    MediumCVSS 5.5No exploitEPSS 0%

    color · iccdevMar 31, 2026

  • iccDEV: UB at IccUtil.cpp

    MediumCVSS 5.5No exploitEPSS 0%

    color · iccdevMar 31, 2026

  • iccDEV: UB at IccUtil.cpp

    MediumCVSS 5.5No exploitEPSS 0%

    color · iccdevMar 31, 2026

  • OpenSlide: openslide_read_region() returns uninitialized memory with libtiff 4.7.1

    MediumCVSS 5.3No exploitEPSS 1%

    openslide · openslideSep 17, 2026

  • ImageMagick Undefined Behavior (function-type-mismatch) in CloneSplayTree

    MediumCVSS 5.3No exploitEPSS 0%

    imagemagick · imagemagickAug 13, 2025

  • BACnet Stack: Undefined-behavior signed left shift in `decode_signed32()`

    LowCVSS 3.7No exploitEPSS 0%

    bacnetstack · bacnet stackApr 21, 2026

  • Unsoundness in opt-in ARMv8 assembly backend for `keccak`

    LowCVSS 2.5No exploit

    crates.io · keccakFeb 19, 2026

  • RustCrypto Cmov/CmovEq on aarch64 can produce wrong results if high-bits of registers are set

    LowCVSS 2.0No exploitEPSS 0%

    rustcrypto · cmovJul 17, 2026

  • Ghidra < 11.2 - Use After Free in Sleigh Backend via Static Initialization Order

    LowCVSS 2.1No exploitEPSS 0%

    nsa · ghidraJun 10, 2026

All vulnerability classes