Перейти к содержимому
Noroxi

CWE-625 · 12 записей

Permissive Regular Expression

CVE этого класса

12 записей

  • CVE-2024-49400
    39Наблюдать

    Tacquito prior to commit 07b49d1358e6ec0b5aa482fcd284f509191119e2 was not properly performing regex matches on authorized commands and argum

    КритическаяCVSS 9,8Эксплойта нетEPSS 0 %

    meta · tacquito17 окт. 2024 г.

  • CVE-2018-8926
    36Наблюдать

    Permissive regular expression vulnerability in synophoto_dsm_user in Synology Photo Station before 6.8.5-3471 and before 6.3-2975 allows rem

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    synology · photo station8 июн. 2018 г.

  • CVE-2026-32973
    35Наблюдать

    OpenClaw < 2026.3.11 - Exec Allowlist Pattern Overmatch via POSIX Path Normalization

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    openclaw · openclaw29 мар. 2026 г.

  • CVE-2026-64940
    35Наблюдать

    Tegalog -Fumy Otegaru Memo Logger- provided by Nishishi Factory contains a vulnerability due to a permissive regular expression, which may a

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    nishishi factory · tegalog -fumy otegaru memo logger-10 авг. 2026 г.

  • CVE-2026-34830
    30Наблюдать

    Rack: Rack::Sendfile regex injection via HTTP_X_ACCEL_MAPPING header allows arbitrary file reads through nginx

    ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %

    rack · rack2 апр. 2026 г.

  • CVE-2026-19278
    27Наблюдать

    Stackrox: stackrox: privilege escalation via unanchored regular expressions in auth m2m role mappings

    СредняяCVSS 6,8Эксплойта нетEPSS 0 %

    red hat · red hat advanced cluster security 410 авг. 2026 г.

  • CVE-2026-23651
    26Наблюдать

    Microsoft ACI Confidential Containers Elevation of Privilege Vulnerability

    СредняяCVSS 6,7Эксплойта нетEPSS 1 %

    microsoft · aci confidential containers5 мар. 2026 г.

  • CVE-2020-8910
    26Наблюдать

    Auth Bypass in Google's Closure-Library

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    google · closure library26 мар. 2020 г.

  • CVE-2026-102983
    25Наблюдать

    Astro: Netlify Image CDN allowlist bypass enables SSRF

    СредняяCVSS 6,3Эксплойта нетEPSS 0 %

    withastro · astro30 сент. 2026 г.

  • CVE-2023-6544
    21Наблюдать

    Keycloak: authorization bypass

    СредняяCVSS 5,4Эксплойта нетEPSS 1 %

    red hat · red hat build of keycloak 2225 апр. 2024 г.

  • CVE-2026-79965
    21Наблюдать

    Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an External Control

    СредняяCVSS 5,3Эксплойта нетEPSS 0 %

    dell · secure connect gateway9 сент. 2026 г.

  • CVE-2026-34763
    21Наблюдать

    Rack: Rack::Directory info disclosure and DoS via unescaped regex interpolation

    СредняяCVSS 5,3Эксплойта нетEPSS 0 %

    rack · rack2 апр. 2026 г.

Все классы уязвимостей