CWE-460 · 25 записей
Improper Cleanup on Thrown Exception
CVE этого класса
25 записей
| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
36Наблюдать | CVE-2022-22150Эксплойта нет | A memory corruption vulnerability exists in the JavaScript engine of Foxit Software’s PDF Reader, version 11.1.0.52543.foxit · pdf reader · CWE-460 | Высокая8,8 | — | 1,8 % | 4 февр. 2022 г. |
35Наблюдать | CVE-2026-40583Эксплойта нет | UltraDAG: SmartOp Vote Path Triggers Fatal Supply Invariant Haltultradag · ultradag · CWE-460 | Высокая8,8 | — | 0,6 % | 21 апр. 2026 г. |
31Наблюдать | CVE-2022-4744Эксплойта нет | A double-free flaw was found in the Linux kernel’s TUN/TAP device driver functionality in how a user registers the device when the register_linux · linux kernel · CWE-460 | Высокая7,8 | — | 0,5 % | 30 мар. 2023 г. |
30Наблюдать | CVE-2026-93710Эксплойта нет | Dancer2 versions from 2.0.0 before 2.2.0 for Perl dispatch a route that a dying hook refused when the exception handler halts the response in compile_hooksCWE-460 | Высокая7,5 | — | 0,6 % | 21 сент. 2026 г. |
30Наблюдать | CVE-2023-46393Эксплойта нет | gougucms v4.08.18 was discovered to contain a password reset poisoning vulnerability which allows attackers to arbitrarily reset users' passgougucms · gougucms · CWE-460 | Высокая7,5 | — | 0,4 % | 27 окт. 2023 г. |
30Наблюдать | CVE-2025-30157Эксплойта нет | Envoy crashes when HTTP ext_proc processes local repliesenvoyproxy · envoy · CWE-460 | Высокая7,5 | — | 0,4 % | 21 мар. 2025 г. |
30Наблюдать | CVE-2024-0316Эксплойта нет | Improper cleanup vulnerability in FireEye Endpoint Securityfireeye · endpoint security · CWE-460 | Высокая7,5 | — | 0,3 % | 15 янв. 2024 г. |
29Наблюдать | CVE-2021-34716Эксплойта нет | Cisco Expressway Series and TelePresence Video Communication Server Remote Code Execution Vulnerabilitycisco · expressway · CWE-460 | Высокая7,2 | — | 2,4 % | 18 авг. 2021 г. |
29Наблюдать | CVE-2024-20354Эксплойта нет | A vulnerability in the handling of encrypted wireless frames of Cisco Aironet Access Point (AP) Software could allow an unauthenticated, adjcisco · wireless lan controller software · CWE-460 | Высокая7,4 | — | 0,3 % | 27 мар. 2024 г. |
27Наблюдать | CVE-2026-86748Эксплойта нет | Snipe-IT before 8.7.0 Database Wipe via Invalid Backup Archivesnipeitapp · snipe-it · CWE-460 | Средняя6,9 | — | 0,4 % | 9 сент. 2026 г. |
27Наблюдать | CVE-2026-20118Эксплойта нет | Cisco IOS-XR NCS 5500 and NCS 5700 Egress Packet Network Interfaces Aligner Interrupt Denial of Service Vulnerabilitycisco · cisco ios xr software · CWE-460 | Средняя6,8 | — | 0,3 % | 11 мар. 2026 г. |
27Наблюдать | CVE-2026-96273Эксплойта нет | Ghidra before 12.1.4 Denial of Service via Unreleased Lock in OptionsDBnationalsecurityagency · ghidra · CWE-460 | Средняя6,8 | — | 0,1 % | 23 сент. 2026 г. |
26Наблюдать | CVE-2017-9657Эксплойта нет | Under specific 802.11 network conditions, a partial re-association of the Philips IntelliVue MX40 Version B.06.18 WLAN monitor to the centraphilips · intellivue mx40 firmware · CWE-460 | Средняя6,5 | — | 0,8 % | 30 апр. 2018 г. |
26Наблюдать | CVE-2025-32439Эксплойта нет | pleezer allows resource exhaustion through uncollected hook script processesroderickvd · pleezer · CWE-460 | Средняя6,5 | — | 0,4 % | 15 апр. 2025 г. |
24Наблюдать | CVE-2025-69652Эксплойта нет | GNU Binutils thru 2.46 readelf contains a vulnerability that leads to an abort (SIGABRT) when processing a crafted ELF binary with malformedgnu · binutils · CWE-460 | Средняя6,2 | — | 0,2 % | 6 мар. 2026 г. |
23Наблюдать | CVE-2024-12289Эксплойта нет | Boundary Controller Incorrectly Handles HTTP Requests On Initialization Which May Lead to a Denial of Servicehashicorp · boundary · CWE-460 | Средняя5,9 | — | 0,4 % | 12 дек. 2024 г. |
22Наблюдать | CVE-2017-15127Эксплойта нет | A flaw was found in the hugetlb_mcopy_atomic_pte function in mm/hugetlb.c in the Linux kernel before 4.13.linux · linux kernel · CWE-460 | Средняя5,5 | — | 0,4 % | 14 янв. 2018 г. |
22Наблюдать | CVE-2022-3707Эксплойта нет | A double-free memory flaw was found in the Linux kernel.linux · linux kernel · CWE-460 | Средняя5,5 | — | 0,2 % | 6 мар. 2023 г. |
21Наблюдать | CVE-2026-33481Эксплойта нет | Syft improper temporary file cleanupanchore · syft · CWE-460 | Средняя5,3 | — | 0,5 % | 26 мар. 2026 г. |
20Наблюдать | CVE-2019-14891Эксплойта нет | A flaw was found in cri-o, as a result of all pod-related processes being placed in the same memory cgroup.kubernetes · cri-o · CWE-460 | Средняя5,0 | — | 0,8 % | 25 нояб. 2019 г. |
17Наблюдать | CVE-2016-9592Эксплойта нет | openshift before versions 3.3.1.11, 3.2.1.23, 3.4 is vulnerable to a flaw when a volume fails to detach, which causes the delete operation tredhat · openshift · CWE-460 | Средняя4,3 | — | 1,2 % | 16 апр. 2018 г. |
17Наблюдать | CVE-2020-14304Эксплойта нет | A memory disclosure flaw was found in the Linux kernel's ethernet drivers, in the way it read data from the EEPROM of the device.linux · linux kernel · CWE-460 | Средняя4,4 | — | 0,4 % | 15 сент. 2020 г. |
14Наблюдать | CVE-2026-48524Эксплойта нет | PyJWT: PyJWKClient unbounded JWKS endpoint requests via attacker-controlled kid values (DoS)pyjwt project · pyjwt · CWE-460 | Низкая3,7 | — | 0,3 % | 28 мая 2026 г. |
12Наблюдать | CVE-2025-59399Эксплойта нет | libocpp before 0.28.0 allows a denial of service (EVerest crash) because a secondary exception is thrown during error message generation.everest · libocpp · CWE-460 | Низкая3,1 | — | 0,2 % | 15 сент. 2025 г. |
9Наблюдать | CVE-2022-3301Эксплойта нет | Improper Cleanup on Thrown Exception in ikus060/rdiffwebikus-soft · rdiffweb · CWE-460 | Низкая2,4 | — | 0,7 % | 26 сент. 2022 г. |
- CVE-2022-2215036Наблюдать
A memory corruption vulnerability exists in the JavaScript engine of Foxit Software’s PDF Reader, version 11.1.0.52543.
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %foxit · pdf reader4 февр. 2022 г.
- CVE-2026-4058335Наблюдать
UltraDAG: SmartOp Vote Path Triggers Fatal Supply Invariant Halt
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %ultradag · ultradag21 апр. 2026 г.
- CVE-2022-474431Наблюдать
A double-free flaw was found in the Linux kernel’s TUN/TAP device driver functionality in how a user registers the device when the register_
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %linux · linux kernel30 мар. 2023 г.
- CVE-2026-9371030Наблюдать
Dancer2 versions from 2.0.0 before 2.2.0 for Perl dispatch a route that a dying hook refused when the exception handler halts the response in compile_hooks
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %21 сент. 2026 г.
- CVE-2023-4639330Наблюдать
gougucms v4.08.18 was discovered to contain a password reset poisoning vulnerability which allows attackers to arbitrarily reset users' pass
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %gougucms · gougucms27 окт. 2023 г.
- CVE-2025-3015730Наблюдать
Envoy crashes when HTTP ext_proc processes local replies
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %envoyproxy · envoy21 мар. 2025 г.
- CVE-2024-031630Наблюдать
Improper cleanup vulnerability in FireEye Endpoint Security
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %fireeye · endpoint security15 янв. 2024 г.
- CVE-2021-3471629Наблюдать
Cisco Expressway Series and TelePresence Video Communication Server Remote Code Execution Vulnerability
ВысокаяCVSS 7,2Эксплойта нетEPSS 2 %cisco · expressway18 авг. 2021 г.
- CVE-2024-2035429Наблюдать
A vulnerability in the handling of encrypted wireless frames of Cisco Aironet Access Point (AP) Software could allow an unauthenticated, adj
ВысокаяCVSS 7,4Эксплойта нетEPSS 0 %cisco · wireless lan controller software27 мар. 2024 г.
- CVE-2026-8674827Наблюдать
Snipe-IT before 8.7.0 Database Wipe via Invalid Backup Archive
СредняяCVSS 6,9Эксплойта нетEPSS 0 %snipeitapp · snipe-it9 сент. 2026 г.
- CVE-2026-2011827Наблюдать
Cisco IOS-XR NCS 5500 and NCS 5700 Egress Packet Network Interfaces Aligner Interrupt Denial of Service Vulnerability
СредняяCVSS 6,8Эксплойта нетEPSS 0 %cisco · cisco ios xr software11 мар. 2026 г.
- CVE-2026-9627327Наблюдать
Ghidra before 12.1.4 Denial of Service via Unreleased Lock in OptionsDB
СредняяCVSS 6,8Эксплойта нетEPSS 0 %nationalsecurityagency · ghidra23 сент. 2026 г.
- CVE-2017-965726Наблюдать
Under specific 802.11 network conditions, a partial re-association of the Philips IntelliVue MX40 Version B.06.18 WLAN monitor to the centra
СредняяCVSS 6,5Эксплойта нетEPSS 1 %philips · intellivue mx40 firmware30 апр. 2018 г.
- CVE-2025-3243926Наблюдать
pleezer allows resource exhaustion through uncollected hook script processes
СредняяCVSS 6,5Эксплойта нетEPSS 0 %roderickvd · pleezer15 апр. 2025 г.
- CVE-2025-6965224Наблюдать
GNU Binutils thru 2.46 readelf contains a vulnerability that leads to an abort (SIGABRT) when processing a crafted ELF binary with malformed
СредняяCVSS 6,2Эксплойта нетEPSS 0 %gnu · binutils6 мар. 2026 г.
- CVE-2024-1228923Наблюдать
Boundary Controller Incorrectly Handles HTTP Requests On Initialization Which May Lead to a Denial of Service
СредняяCVSS 5,9Эксплойта нетEPSS 0 %hashicorp · boundary12 дек. 2024 г.
- CVE-2017-1512722Наблюдать
A flaw was found in the hugetlb_mcopy_atomic_pte function in mm/hugetlb.c in the Linux kernel before 4.13.
СредняяCVSS 5,5Эксплойта нетEPSS 0 %linux · linux kernel14 янв. 2018 г.
- CVE-2022-370722Наблюдать
A double-free memory flaw was found in the Linux kernel.
СредняяCVSS 5,5Эксплойта нетEPSS 0 %linux · linux kernel6 мар. 2023 г.
- CVE-2026-3348121Наблюдать
Syft improper temporary file cleanup
СредняяCVSS 5,3Эксплойта нетEPSS 1 %anchore · syft26 мар. 2026 г.
- CVE-2019-1489120Наблюдать
A flaw was found in cri-o, as a result of all pod-related processes being placed in the same memory cgroup.
СредняяCVSS 5,0Эксплойта нетEPSS 1 %kubernetes · cri-o25 нояб. 2019 г.
- CVE-2016-959217Наблюдать
openshift before versions 3.3.1.11, 3.2.1.23, 3.4 is vulnerable to a flaw when a volume fails to detach, which causes the delete operation t
СредняяCVSS 4,3Эксплойта нетEPSS 1 %redhat · openshift16 апр. 2018 г.
- CVE-2020-1430417Наблюдать
A memory disclosure flaw was found in the Linux kernel's ethernet drivers, in the way it read data from the EEPROM of the device.
СредняяCVSS 4,4Эксплойта нетEPSS 0 %linux · linux kernel15 сент. 2020 г.
- CVE-2026-4852414Наблюдать
PyJWT: PyJWKClient unbounded JWKS endpoint requests via attacker-controlled kid values (DoS)
НизкаяCVSS 3,7Эксплойта нетEPSS 0 %pyjwt project · pyjwt28 мая 2026 г.
- CVE-2025-5939912Наблюдать
libocpp before 0.28.0 allows a denial of service (EVerest crash) because a secondary exception is thrown during error message generation.
НизкаяCVSS 3,1Эксплойта нетEPSS 0 %everest · libocpp15 сент. 2025 г.
- CVE-2022-33019Наблюдать
Improper Cleanup on Thrown Exception in ikus060/rdiffweb
НизкаяCVSS 2,4Эксплойта нетEPSS 1 %ikus-soft · rdiffweb26 сент. 2022 г.