CWE-668 · 493 records
Exposure of Resource to Wrong Sphere
CVEs in this class
493 records
| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
49Plan | CVE-2022-25236Proof of concept | xmlparse.c in Expat (aka libexpat) before 2.4.5 allows attackers to insert namespace-separator characters into namespace URIs.libexpat project · libexpat · CWE-668 | Critical9.8 | — | 34.2% | Feb 15, 2022 |
48Plan | CVE-2018-7846Proof of concept | A CWE-501: Trust Boundary Violation vulnerability on connection to the Controller exists in all versions of the Modicon M580, Modicon M340, schneider-electric · modicon m580 firmware · CWE-668 | Critical9.8 | — | 29.6% | May 22, 2019 |
41Plan | CVE-2024-38368No exploit | Trunk's 'Claim your pod' could be used to obtain un-used podscocoapods · trunk.cocoapods.org · CWE-668 | Critical9.3 | — | 14.9% | Jul 1, 2024 |
41Plan | CVE-2012-1846No exploit | Google Chrome 17.0.963.66 and earlier allows remote attackers to bypass the sandbox protection mechanism by leveraging access to a sandboxedgoogle · chrome · CWE-668 | Critical10.0 | — | 4.2% | Mar 22, 2012 |
41Plan | CVE-2025-2857No exploit | Incorrect handle could lead to sandbox escapesmozilla · firefox · CWE-668 | Critical10.0 | — | 1.9% | Mar 27, 2025 |
40Plan | CVE-2017-5648No exploit | While investigating bug 60718, it was noticed that some calls to application listeners in Apache Tomcat 9.0.0.M1 to 9.0.0.M17, 8.5.0 to 8.5.apache · tomcat · CWE-668 | Critical9.1 | — | 13.2% | Apr 17, 2017 |
40Plan | CVE-2019-9186No exploit | In several JetBrains IntelliJ IDEA versions, a Spring Boot run configuration with the default setting allowed remote attackers to execute cojetbrains · intellij idea · CWE-668 | Critical9.8 | — | 4.5% | Jul 3, 2019 |
40Plan | CVE-2018-18068No exploit | The ARM-based hardware debugging feature on Raspberry Pi 3 module B+ and possibly other devices allows non-secure EL1 code to read/write anyraspberrypi · raspberry pi 3 model b\+ firmware · CWE-668 | Critical9.8 | — | 3.3% | Apr 4, 2019 |
40Plan | CVE-2019-19015No exploit | An issue was discovered in TitanHQ WebTitan before 5.18.titanhq · webtitan · CWE-668 | Critical9.8 | — | 3.3% | Dec 2, 2019 |
40Plan | CVE-2018-7072No exploit | A remote bypass of security restrictions vulnerability was identified in HPE Moonshot Provisioning Manager prior to v1.24.hp · moonshot provisioning manager · CWE-668 | Critical9.8 | — | 3.1% | Aug 6, 2018 |
40Plan | CVE-2019-20853No exploit | An issue was discovered in Mattermost Packages before 5.16.3.mattermost · mattermost packages · CWE-668 | Critical9.8 | — | 2.2% | Jun 19, 2020 |
40Plan | CVE-2020-10867No exploit | An issue was discovered in Avast Antivirus before 20.avast · antivirus · CWE-668 | Critical9.8 | — | 2.2% | Apr 1, 2020 |
40Plan | CVE-2021-27236No exploit | An issue was discovered in Mutare Voice (EVM) 3.x before 3.3.8.mutare · voice · CWE-668 | Critical9.8 | — | 2.1% | Feb 16, 2021 |
40Plan | CVE-2022-25643No exploit | seatd-launch in seatd 0.6.x before 0.6.4 allows removing files with escalated privileges when installed setuid root.seatd project · seatd · CWE-668 | Critical9.8 | — | 2.1% | Feb 24, 2022 |
40Plan | CVE-2020-10271No exploit | RVD#2555: MiR ROS computational graph is exposed to all network interfaces, including poorly secured wireless networks and open wired onesaliasrobotics · mir100 firmware · CWE-668 | Critical9.8 | — | 1.8% | Jun 24, 2020 |
40Plan | CVE-2019-16541No exploit | Jenkins JIRA Plugin 3.0.10 and earlier does not declare the correct (folder) scope for per-folder Jira site definitions, allowing users to sjenkins · jira · CWE-668 | Critical9.9 | — | 1.7% | Nov 21, 2019 |
40Plan | CVE-2019-8779No exploit | A logic issue applied the incorrect restrictions.apple · ipados · CWE-668 | Critical10.0 | — | 1.5% | Dec 18, 2019 |
40Plan | CVE-2026-92940No exploit | vm2 3.11.3 through 3.11.6 HTTPS Credential Exposure via globalAgentpatriksimek · vm2 · CWE-668 | Critical10.0 | — | 0.5% | Sep 17, 2026 |
39Monitor | CVE-2021-44524No exploit | A vulnerability has been identified in SiPass integrated V2.76 (All versions), SiPass integrated V2.80 (All versions), SiPass integrated V2.siemens · sipass integrated · CWE-668 | Critical9.8 | — | 1.6% | Dec 14, 2021 |
39Monitor | CVE-2008-7291No exploit | gri before 2.12.18 generates temporary files in an insecure way.gri project · gri · CWE-668 | Critical9.8 | — | 1.4% | Nov 7, 2019 |
39Monitor | CVE-2019-10781No exploit | In schema-inspector before 1.6.9, a maliciously crafted JavaScript object can bypass the `sanitize()` and the `validate()` function used witschema-inspector project · schema-inspector · CWE-668 | Critical9.8 | — | 1.4% | Jan 22, 2020 |
39Monitor | CVE-2017-18129No exploit | In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Automobile and Snapdragon Mobile MDM9206, MDM9607, SD 845, MSM8996,qualcomm · mdm9206 firmware · CWE-668 | Critical9.8 | — | 1.3% | Apr 11, 2018 |
39Monitor | CVE-2021-22869No exploit | Improper access control in GitHub Enterprise Server allows self-hosted runners to execute outside their control groupgithub · enterprise server · CWE-668 | Critical9.8 | — | 1.2% | Sep 24, 2021 |
39Monitor | CVE-2022-48198No exploit | The ntpd_driver component before 1.3.0 and 2.x before 2.2.0 for Robot Operating System (ROS) allows attackers, who control the source code ontpd driver project · ntpd driver · CWE-668 | Critical9.8 | — | 1.1% | Jan 1, 2023 |
39Monitor | CVE-2022-24074No exploit | Whale Bridge, a default extension in Whale browser before 3.12.129.18, allowed to receive any SendMessage request from the content script itnavercorp · whale · CWE-668 | Critical9.8 | — | 1.1% | Mar 17, 2022 |
- CVE-2022-2523649Plan
xmlparse.c in Expat (aka libexpat) before 2.4.5 allows attackers to insert namespace-separator characters into namespace URIs.
CriticalCVSS 9.8Proof of conceptEPSS 34%libexpat project · libexpatFeb 15, 2022
- CVE-2018-784648Plan
A CWE-501: Trust Boundary Violation vulnerability on connection to the Controller exists in all versions of the Modicon M580, Modicon M340,
CriticalCVSS 9.8Proof of conceptEPSS 30%schneider-electric · modicon m580 firmwareMay 22, 2019
- CVE-2024-3836841Plan
Trunk's 'Claim your pod' could be used to obtain un-used pods
CriticalCVSS 9.3No exploitEPSS 15%cocoapods · trunk.cocoapods.orgJul 1, 2024
- CVE-2012-184641Plan
Google Chrome 17.0.963.66 and earlier allows remote attackers to bypass the sandbox protection mechanism by leveraging access to a sandboxed
CriticalCVSS 10.0No exploitEPSS 4%google · chromeMar 22, 2012
- CVE-2025-285741Plan
Incorrect handle could lead to sandbox escapes
CriticalCVSS 10.0No exploitEPSS 2%mozilla · firefoxMar 27, 2025
- CVE-2017-564840Plan
While investigating bug 60718, it was noticed that some calls to application listeners in Apache Tomcat 9.0.0.M1 to 9.0.0.M17, 8.5.0 to 8.5.
CriticalCVSS 9.1No exploitEPSS 13%apache · tomcatApr 17, 2017
- CVE-2019-918640Plan
In several JetBrains IntelliJ IDEA versions, a Spring Boot run configuration with the default setting allowed remote attackers to execute co
CriticalCVSS 9.8No exploitEPSS 5%jetbrains · intellij ideaJul 3, 2019
- CVE-2018-1806840Plan
The ARM-based hardware debugging feature on Raspberry Pi 3 module B+ and possibly other devices allows non-secure EL1 code to read/write any
CriticalCVSS 9.8No exploitEPSS 3%raspberrypi · raspberry pi 3 model b\+ firmwareApr 4, 2019
- CVE-2019-1901540Plan
An issue was discovered in TitanHQ WebTitan before 5.18.
CriticalCVSS 9.8No exploitEPSS 3%titanhq · webtitanDec 2, 2019
- CVE-2018-707240Plan
A remote bypass of security restrictions vulnerability was identified in HPE Moonshot Provisioning Manager prior to v1.24.
CriticalCVSS 9.8No exploitEPSS 3%hp · moonshot provisioning managerAug 6, 2018
- CVE-2019-2085340Plan
An issue was discovered in Mattermost Packages before 5.16.3.
CriticalCVSS 9.8No exploitEPSS 2%mattermost · mattermost packagesJun 19, 2020
- CVE-2020-1086740Plan
An issue was discovered in Avast Antivirus before 20.
CriticalCVSS 9.8No exploitEPSS 2%avast · antivirusApr 1, 2020
- CVE-2021-2723640Plan
An issue was discovered in Mutare Voice (EVM) 3.x before 3.3.8.
CriticalCVSS 9.8No exploitEPSS 2%mutare · voiceFeb 16, 2021
- CVE-2022-2564340Plan
seatd-launch in seatd 0.6.x before 0.6.4 allows removing files with escalated privileges when installed setuid root.
CriticalCVSS 9.8No exploitEPSS 2%seatd project · seatdFeb 24, 2022
- CVE-2020-1027140Plan
RVD#2555: MiR ROS computational graph is exposed to all network interfaces, including poorly secured wireless networks and open wired ones
CriticalCVSS 9.8No exploitEPSS 2%aliasrobotics · mir100 firmwareJun 24, 2020
- CVE-2019-1654140Plan
Jenkins JIRA Plugin 3.0.10 and earlier does not declare the correct (folder) scope for per-folder Jira site definitions, allowing users to s
CriticalCVSS 9.9No exploitEPSS 2%jenkins · jiraNov 21, 2019
- CVE-2019-877940Plan
A logic issue applied the incorrect restrictions.
CriticalCVSS 10.0No exploitEPSS 1%apple · ipadosDec 18, 2019
- CVE-2026-9294040Plan
vm2 3.11.3 through 3.11.6 HTTPS Credential Exposure via globalAgent
CriticalCVSS 10.0No exploitEPSS 0%patriksimek · vm2Sep 17, 2026
- CVE-2021-4452439Monitor
A vulnerability has been identified in SiPass integrated V2.76 (All versions), SiPass integrated V2.80 (All versions), SiPass integrated V2.
CriticalCVSS 9.8No exploitEPSS 2%siemens · sipass integratedDec 14, 2021
- CVE-2008-729139Monitor
gri before 2.12.18 generates temporary files in an insecure way.
CriticalCVSS 9.8No exploitEPSS 1%gri project · griNov 7, 2019
- CVE-2019-1078139Monitor
In schema-inspector before 1.6.9, a maliciously crafted JavaScript object can bypass the `sanitize()` and the `validate()` function used wit
CriticalCVSS 9.8No exploitEPSS 1%schema-inspector project · schema-inspectorJan 22, 2020
- CVE-2017-1812939Monitor
In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Automobile and Snapdragon Mobile MDM9206, MDM9607, SD 845, MSM8996,
CriticalCVSS 9.8No exploitEPSS 1%qualcomm · mdm9206 firmwareApr 11, 2018
- CVE-2021-2286939Monitor
Improper access control in GitHub Enterprise Server allows self-hosted runners to execute outside their control group
CriticalCVSS 9.8No exploitEPSS 1%github · enterprise serverSep 24, 2021
- CVE-2022-4819839Monitor
The ntpd_driver component before 1.3.0 and 2.x before 2.2.0 for Robot Operating System (ROS) allows attackers, who control the source code o
CriticalCVSS 9.8No exploitEPSS 1%ntpd driver project · ntpd driverJan 1, 2023
- CVE-2022-2407439Monitor
Whale Bridge, a default extension in Whale browser before 3.12.129.18, allowed to receive any SendMessage request from the content script it
CriticalCVSS 9.8No exploitEPSS 1%navercorp · whaleMar 17, 2022