CWE-403 · 7 записей
Exposure of File Descriptor to Unintended Control Sphere ('File Descriptor Leak')
CVE этого класса
7 записей
| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2024-21626Готовый эксплойт | runc container breakout through process.cwd trickery and leaked fdslinuxfoundation · runc · CWE-403 | Высокая8,6 | — | 18,9 % | 31 янв. 2024 г. |
37Наблюдать | CVE-2026-40042Эксплойта нет | Pachno 1.0.6 Wiki TextParser XML External Entity Injectionpachno · pachno · CWE-403 | Критическая9,3 | — | 0,6 % | 13 апр. 2026 г. |
37Наблюдать | CVE-2025-15114Эксплойта нет | Ksenia Security lares Home Automation 1.6 PIN Exposure Vulnerabilitykseniasecurity · lares firmware · CWE-403 | Критическая9,3 | — | 0,5 % | 30 дек. 2025 г. |
35Наблюдать | CVE-2026-16526Эксплойта нет | Pcp: pcp: privilege escalation to root via linux_sockets pmda vulnerabilityred hat · red hat enterprise linux 10 · CWE-403 | Высокая8,8 | — | 0,6 % | 30 июл. 2026 г. |
34Наблюдать | CVE-2024-58280Эксплойта нет | CMSimple 5.15 Remote Command Execution via Extensions Configurationcmsimple · cmsimple · CWE-403 | Высокая8,6 | — | 0,9 % | 10 дек. 2025 г. |
29Наблюдать | CVE-2025-3032Эксплойта нет | Leaking file descriptors from the fork servermozilla · firefox · CWE-403 | Высокая7,4 | — | 0,4 % | 1 апр. 2025 г. |
17Наблюдать | CVE-2026-33263Эксплойта нет | When mail_max_userip_connections is set (default 10) and reached, submission-login can crash with epoll() panic caused by file descriptor haopen-xchange gmbh · ox dovecot pro · CWE-403 | Средняя4,3 | — | 0,6 % | 28 авг. 2026 г. |
- CVE-2024-2162640В плане
runc container breakout through process.cwd trickery and leaked fds
ВысокаяCVSS 8,6Готовый эксплойтEPSS 19 %linuxfoundation · runc31 янв. 2024 г.
- CVE-2026-4004237Наблюдать
Pachno 1.0.6 Wiki TextParser XML External Entity Injection
КритическаяCVSS 9,3Эксплойта нетEPSS 1 %pachno · pachno13 апр. 2026 г.
- CVE-2025-1511437Наблюдать
Ksenia Security lares Home Automation 1.6 PIN Exposure Vulnerability
КритическаяCVSS 9,3Эксплойта нетEPSS 1 %kseniasecurity · lares firmware30 дек. 2025 г.
- CVE-2026-1652635Наблюдать
Pcp: pcp: privilege escalation to root via linux_sockets pmda vulnerability
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %red hat · red hat enterprise linux 1030 июл. 2026 г.
- CVE-2024-5828034Наблюдать
CMSimple 5.15 Remote Command Execution via Extensions Configuration
ВысокаяCVSS 8,6Эксплойта нетEPSS 1 %cmsimple · cmsimple10 дек. 2025 г.
- CVE-2025-303229Наблюдать
Leaking file descriptors from the fork server
ВысокаяCVSS 7,4Эксплойта нетEPSS 0 %mozilla · firefox1 апр. 2025 г.
- CVE-2026-3326317Наблюдать
When mail_max_userip_connections is set (default 10) and reached, submission-login can crash with epoll() panic caused by file descriptor ha
СредняяCVSS 4,3Эксплойта нетEPSS 1 %open-xchange gmbh · ox dovecot pro28 авг. 2026 г.