Перейти к содержимому
Noroxi

CWE-115 · 30 записей

Misinterpretation of Input

CVE этого класса

30 записей

  • CVE-2020-27846
    40В плане

    A signature verification vulnerability exists in crewjam/saml.

    КритическаяCVSS 9,8Эксплойта нетEPSS 5 %

    grafana · grafana21 дек. 2020 г.

  • CVE-2021-1587
    35Наблюдать

    Cisco NX-OS Software VXLAN OAM (NGOAM) Denial of Service Vulnerability

    ВысокаяCVSS 8,6Эксплойта нетEPSS 2 %

    cisco · nx-os25 авг. 2021 г.

  • CVE-2025-5747
    32Наблюдать

    WOLFBOX Level 2 EV Charger MCU Command Parsing Misinterpretation of Input Remote Code Execution Vulnerability

    ВысокаяCVSS 8,0Эксплойта нетEPSS 0 %

    wolfbox · level 2 ev charger firmware6 июн. 2025 г.

  • CVE-2018-12116
    31Наблюдать

    Node.js: All versions prior to Node.js 6.15.0 and 8.14.0: HTTP request splitting: If Node.js can be convinced to use unsanitized user-provid

    ВысокаяCVSS 7,5Эксплойта нетEPSS 5 %

    nodejs · node.js28 нояб. 2018 г.

  • CVE-2021-0207
    30Наблюдать

    NFX250, NFX350, QFX5K Series, EX2300 Series, EX3400 Series, EX4300 Multigigabit, EX4600 Series: Certain genuine traffic received by the Junos OS device will be

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    juniper · junos15 янв. 2021 г.

  • CVE-2024-11169
    30Наблюдать

    Unhandled Exception Leading to Server Crash in danny-avila/librechat

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    librechat · librechat20 мар. 2025 г.

  • CVE-2025-32908
    30Наблюдать

    Libsoup: denial of service on libsoup through http/2 server

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    red hat · red hat enterprise linux 1014 апр. 2025 г.

  • CVE-2022-20915
    29Наблюдать

    Cisco IOS XE Software IPv6 VPN over MPLS Denial of Service Vulnerability

    ВысокаяCVSS 7,4Эксплойта нетEPSS 0 %

    cisco · ios xe10 окт. 2022 г.

  • CVE-2025-54584
    28Наблюдать

    GitProxy is vulnerable to a packfile parsing exploit

    ВысокаяCVSS 7,0Эксплойта нетEPSS 1 %

    finos · gitproxy30 июл. 2025 г.

  • CVE-2025-25069
    26Наблюдать

    Apache Kvrocks: Cross-Protocol Scripting Vulnerability

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    apache · kvrocks7 февр. 2025 г.

  • CVE-2022-21672
    26Наблюдать

    /etc/pki/tls and /etc/ssl/certs include distrusted certificates in make-ca

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    linuxfromscratch · make-ca10 янв. 2022 г.

  • CVE-2025-47906
    26Наблюдать

    Unexpected paths returned from LookPath in os/exec

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    golang · go18 сент. 2025 г.

  • CVE-2025-68113
    26Наблюдать

    ALTCHA Proof-of-Work Vulnerable to Challenge Splicing and Replay

    СредняяCVSS 6,5Эксплойта нетEPSS 0 %

    altcha-org · altcha-lib15 дек. 2025 г.

  • CVE-2023-32260
    26Наблюдать

    A potential Misinterpretation of Input vulnerability has been identified in SMAX, AMX, and HCMX products.

    СредняяCVSS 6,5Эксплойта нетEPSS 0 %

    opentext™ · service management automation x (smax)19 мар. 2024 г.

  • CVE-2025-5826
    25Наблюдать

    Autel MaxiCharger AC Wallbox Commercial ble_process_esp32_msg Misinterpretation of Input Vulnerability

    СредняяCVSS 6,3Эксплойта нетEPSS 0 %

    autel · maxicharger ac elite business c50 firmware25 июн. 2025 г.

  • CVE-2022-1233
    24Наблюдать

    URL Confusion When Scheme Not Supplied in medialize/uri.js

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    uri.js project · uri.js4 апр. 2022 г.

  • CVE-2022-3224
    24Наблюдать

    Misinterpretation of Input in ionicabizau/parse-url

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    parse-url project · parse-url15 сент. 2022 г.

  • CVE-2020-29509
    23Наблюдать

    The encoding/xml package in Go (all versions) does not correctly preserve the semantics of attribute namespace prefixes during tokenization

    СредняяCVSS 5,6Эксплойта нетEPSS 2 %

    golang · go14 дек. 2020 г.

  • CVE-2020-29510
    23Наблюдать

    The encoding/xml package in Go versions 1.15 and earlier does not correctly preserve the semantics of directives during tokenization round-t

    СредняяCVSS 5,6Эксплойта нетEPSS 2 %

    golang · go14 дек. 2020 г.

  • CVE-2020-29511
    23Наблюдать

    The encoding/xml package in Go (all versions) does not correctly preserve the semantics of element namespace prefixes during tokenization ro

    СредняяCVSS 5,6Эксплойта нетEPSS 2 %

    golang · go14 дек. 2020 г.

  • CVE-2018-7159
    22Наблюдать

    The HTTP parser in all current versions of Node.js ignores spaces in the `Content-Length` header, allowing input such as `Content-Length: 1

    СредняяCVSS 5,3Эксплойта нетEPSS 4 %

    nodejs · node.js17 мая 2018 г.

  • CVE-2026-12491
    19Наблюдать

    Vllm: vllm: image exif rotation & png trns transparency not normalized, causing mismatch between model input and expectations

    СредняяCVSS 4,8Эксплойта нетEPSS 0 %

    vllm-project · vllm17 июн. 2026 г.

  • GHSA-x8xr-mj9x-6h7w
    19Наблюдать

    Duplicate Advisory: image EXIF Rotation & PNG tRNS Transparency Not Normalized, Causing Mismatch Between Model Input and Expectations

    СредняяCVSS 4,8Эксплойта нет

    PyPI · vllm17 июн. 2026 г.

  • CVE-2018-12123
    18Наблюдать

    Node.js: All versions prior to Node.js 6.15.0, 8.14.0, 10.14.0 and 11.3.0: Hostname spoofing in URL parser for javascript protocol: If a Nod

    СредняяCVSS 4,3Эксплойта нетEPSS 4 %

    nodejs · node.js28 нояб. 2018 г.

  • CVE-2023-32228
    18Наблюдать

    A firmware bug which may lead to misinterpretation of data in the AMC2-4WCF and AMC2-2WCF allowing an adversary to grant access to the last

    СредняяCVSS 4,6Эксплойта нетEPSS 0 %

    bosch · ams11 апр. 2024 г.

Все классы уязвимостей