Перейти к содержимому
Noroxi

CWE-696 · 44 записей

Incorrect Behavior Order

CVE этого класса

45 записей

  • CVE-2026-44108
    37Наблюдать

    Firewall bypass during shutdown

    КритическаяCVSS 9,3Эксплойта нетEPSS 1 %

    phoenix contact · charx sec-315030 июл. 2026 г.

  • GHSA-j496-crgh-34mx
    36Наблюдать

    ibc-go: Potential Reentrancy using Timeout Callbacks in ibc-hooks

    КритическаяCVSS 9,1Эксплойта нет

    Go · github.com/cosmos/ibc-go/v45 апр. 2024 г.

  • CVE-2026-45033
    34Наблюдать

    GitHub Copilot CLI: Nested Bare Repository Can Execute Arbitrary Commands via core.fsmonitor

    ВысокаяCVSS 8,5Proof of conceptEPSS 0 %

    github · copilot-cli13 мая 2026 г.

  • CVE-2026-14169
    32Наблюдать

    ads-tec Industrial IT: Account lockout via non-atomic user creation

    ВысокаяCVSS 8,1Эксплойта нетEPSS 1 %

    ads-tec industrial it · dvg-irf140128 июл. 2026 г.

  • CVE-2026-35386
    32Наблюдать

    In OpenSSH before 10.3, command execution can occur via shell metacharacters in a username within a command line.

    ВысокаяCVSS 8,1Эксплойта нетEPSS 0 %

    openbsd · openssh2 апр. 2026 г.

  • CVE-2021-31379
    30Наблюдать

    Junos OS: MX Series: MPC 7/8/9/10/11 cards with MAP-E: PFE halts when an attacker sends malformed IPv4 or IPv6 traffic inside the MAP-E tunnel.

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    juniper · junos19 окт. 2021 г.

  • CVE-2025-31485
    30Наблюдать

    GraphQL grant on a property might be cached with different objects

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    api-platform · core3 апр. 2025 г.

  • CVE-2025-48965
    30Наблюдать

    Mbed TLS before 3.6.4 has a NULL pointer dereference because mbedtls_asn1_store_named_data can trigger conflicting data with val.p of NULL b

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    arm · mbed tls20 июл. 2025 г.

  • CVE-2026-41254
    30Наблюдать

    Little CMS (lcms2) through 2.18 has an integer overflow in CubeSize in cmslut.c because the overflow check is performed after the multiplica

    ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %

    littlecms · little cms18 апр. 2026 г.

  • CVE-2023-33224
    29Наблюдать

    SolarWinds Platform Incorrect Behavior Order Vulnerability

    ВысокаяCVSS 7,2Эксплойта нетEPSS 3 %

    solarwinds · solarwinds platform26 июл. 2023 г.

  • CVE-2024-24853
    29Наблюдать

    Incorrect behavior order in transition between executive monitor and SMI transfer monitor (STM) in some Intel(R) Processor may allow a privi

    ВысокаяCVSS 7,3Эксплойта нетEPSS 0 %

    14 авг. 2024 г.

  • GHSA-p6j4-wvmc-vx2h
    29Наблюдать

    Duplicate Advisory: OpenClaw: Tlon cite expansion happens before channel and DM authorization is complete

    ВысокаяCVSS 7,3Эксплойта нет

    npm · openclaw10 апр. 2026 г.

  • CVE-2026-35636
    28Наблюдать

    OpenClaw 2026.3.11 < 2026.3.25 - Session Isolation Bypass via sessionId Resolution

    ВысокаяCVSS 7,1Эксплойта нетEPSS 0 %

    openclaw · openclaw9 апр. 2026 г.

  • CVE-2026-73446
    28Наблюдать

    Security Advisory 0160

    ВысокаяCVSS 7,0Эксплойта нетEPSS 0 %

    arista networks · eos15 сент. 2026 г.

  • CVE-2026-35640
    27Наблюдать

    OpenClaw < 2026.3.25 - Denial of Service via Unauthenticated Webhook Request Parsing

    СредняяCVSS 6,9Эксплойта нетEPSS 1 %

    openclaw · openclaw9 апр. 2026 г.

  • CVE-2026-35627
    27Наблюдать

    OpenClaw < 2026.3.22 - Unauthenticated Cryptographic Work in Nostr Inbound DM Handling

    СредняяCVSS 6,9Эксплойта нетEPSS 1 %

    openclaw · openclaw9 апр. 2026 г.

  • CVE-2026-35652
    27Наблюдать

    OpenClaw < 2026.3.22 - Unauthorized Action Execution via Callback Dispatch

    СредняяCVSS 6,9Эксплойта нетEPSS 1 %

    openclaw · openclaw10 апр. 2026 г.

  • CVE-2026-67217
    27Наблюдать

    cJSON JSON Patch Non-Atomic Application Destroys Data Before Validation

    СредняяCVSS 6,9Эксплойта нетEPSS 0 %

    davegamble · cjson29 июл. 2026 г.

  • CVE-2026-35637
    27Наблюдать

    OpenClaw < 2026.3.22 - Premature Cite Expansion Before Authorization in Channel and DM

    СредняяCVSS 6,9Эксплойта нетEPSS 0 %

    openclaw · openclaw9 апр. 2026 г.

  • CVE-2025-55114
    27Наблюдать

    BMC Control-M/Agent improper IP address filtering order

    СредняяCVSS 6,9Эксплойта нетEPSS 0 %

    bmc · control-m/agent16 сент. 2025 г.

  • CVE-2025-9904
    27Наблюдать

    Unallocated memory access vulnerability in print processing of Generic Plus PCL6 Printer Driver / Generic Plus UFR II Printer Driver / Gener

    СредняяCVSS 6,9Эксплойта нетEPSS 0 %

    canon inc. · generic plus pcl6 printer driver28 сент. 2025 г.

  • CVE-2024-30389
    27Наблюдать

    Junos OS: EX4300 Series: Firewall filter not blocking egress traffic

    СредняяCVSS 6,9Эксплойта нетEPSS 0 %

    juniper · junos12 апр. 2024 г.

  • CVE-2024-30410
    27Наблюдать

    Junos OS: EX4300 Series: Loopback filter not blocking traffic despite having discard term.

    СредняяCVSS 6,9Эксплойта нетEPSS 0 %

    juniper · junos12 апр. 2024 г.

  • CVE-2026-44919
    26Наблюдать

    In OpenStack Ironic through 35.x before a3f6d73, during image handling, an infinite loop in checksum calculations can occur via the file:///

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    openstack · ironic13 мая 2026 г.

  • CVE-2025-0150
    26Наблюдать

    Zoom Workplace Apps for iOS - Incorrect Behavior Order

    СредняяCVSS 6,5Эксплойта нетEPSS 0 %

    zoom · meeting software development kit11 мар. 2025 г.

Все классы уязвимостей