CWE-705 · 5 records
Incorrect Control Flow Scoping
CVEs in this class
5 records
| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
34Monitor | CVE-2025-53856No exploit | When a virtual server, network address translation (NAT) object, or secure network address translation (SNAT) object uses the embedded Packef5 · big-ip access policy manager · CWE-705 | High8.7 | — | 0.3% | Oct 15, 2025 |
26Monitor | CVE-2024-45433No exploit | OpenSynergy BlueSDK (aka Blue SDK) through 6.x has Incorrect Control Flow Scoping.opensynergy · blue sdk · CWE-705 | Medium6.5 | — | 0.6% | Sep 12, 2025 |
26Monitor | CVE-2026-45819No exploit | baseline-browser-mapping 2.x before 2.11.0 calls process.exit() instead of throwing on invalid or conflicting input parameters, and can trigweb-platform-dx · baseline-browser-mapping · CWE-705 | Medium6.6 | — | 0.5% | Aug 13, 2026 |
14Monitor | CVE-2026-40208No exploit | Denial of service via DoH3 queriespowerdns · dnsdist · CWE-705 | Low3.7 | — | 0.4% | Jun 25, 2026 |
7Monitor | CVE-2026-3449No exploit | Versions of the package @tootallnate/once before 3.0.1 are vulnerable to Incorrect Control Flow Scoping in promise resolving when AbortSignaCWE-705 | Low1.9 | — | 0.2% | Mar 3, 2026 |
- CVE-2025-5385634Monitor
When a virtual server, network address translation (NAT) object, or secure network address translation (SNAT) object uses the embedded Packe
HighCVSS 8.7No exploitEPSS 0%f5 · big-ip access policy managerOct 15, 2025
- CVE-2024-4543326Monitor
OpenSynergy BlueSDK (aka Blue SDK) through 6.x has Incorrect Control Flow Scoping.
MediumCVSS 6.5No exploitEPSS 1%opensynergy · blue sdkSep 12, 2025
- CVE-2026-4581926Monitor
baseline-browser-mapping 2.x before 2.11.0 calls process.exit() instead of throwing on invalid or conflicting input parameters, and can trig
MediumCVSS 6.6No exploitEPSS 1%web-platform-dx · baseline-browser-mappingAug 13, 2026
- CVE-2026-4020814Monitor
Denial of service via DoH3 queries
LowCVSS 3.7No exploitEPSS 0%powerdns · dnsdistJun 25, 2026
- CVE-2026-34497Monitor
Versions of the package @tootallnate/once before 3.0.1 are vulnerable to Incorrect Control Flow Scoping in promise resolving when AbortSigna
LowCVSS 1.9No exploitEPSS 0%Mar 3, 2026