CWE-253 · 24 kayıt
Incorrect Check of Function Return Value
Bu sınıftaki CVE’ler
24 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2017-7474İstismar yok | It was found that the Keycloak Node.js adapter 2.5 - 3.0 did not handle invalid tokens correctly.keycloak · keycloak-nodejs-auth-utils · CWE-253 | Kritik9,8 | — | %2,5 | 12 May 2017 |
39İzleyin | CVE-2023-4501İstismar yok | Authentication bypass in OpenText (Micro Focus) Enterprise Servermicrofocus · cobol server · CWE-253 | Kritik9,8 | — | %0,8 | 12 Eyl 2023 |
33İzleyin | CVE-2023-49286İstismar yok | Denial of Service in Helper Process managementsquid-cache · squid · CWE-253 | Yüksek7,5 | — | %10,4 | 4 Ara 2023 |
32İzleyin | CVE-2026-35091İstismar yok | Corosync: corosync: denial of service and information disclosure via crafted udp packetcorosync · corosync · CWE-253 | Yüksek8,2 | — | %1,1 | 1 Nis 2026 |
31İzleyin | CVE-2024-43521İstismar yok | Windows Hyper-V Denial of Service Vulnerabilitymicrosoft · windows server 2012 · CWE-253 | Yüksek7,5 | — | %2,4 | 8 Eki 2024 |
31İzleyin | CVE-2026-53090İstismar yok | bpf: Fix ld_{abs,ind} failure path analysis in subprogslinux · linux kernel · CWE-253 | Yüksek7,8 | — | %0,2 | 24 Haz 2026 |
30İzleyin | CVE-2023-24487İstismar yok | Arbitrary file read in Citrix ADC and Citrix Gateway citrix · application delivery controller · CWE-253 | Yüksek7,5 | — | %1,1 | 10 Tem 2023 |
30İzleyin | CVE-2024-1622İstismar yok | Routinator terminates when RTR connection is reset too quickly after openingnlnetlabs · routinator · CWE-253 | Yüksek7,5 | — | %1,0 | 26 Şub 2024 |
30İzleyin | CVE-2024-32475İstismar yok | Envoy RELEASE_ASSERT using auto_sni with :authority header > 255 bytesenvoyproxy · envoy · CWE-253 | Yüksek7,5 | — | %0,7 | 18 Nis 2024 |
30İzleyin | CVE-2026-59847İstismar yok | Libssh: libssh: integrity downgrade via openssl aes-gcm tag verificationlibssh · libssh · CWE-253 | Yüksek7,5 | — | %0,6 | 21 Tem 2026 |
30İzleyin | CVE-2026-46419İstismar yok | Yubico webauthn-server-core (aka java-webauthn-server) 2.8.0 before 2.8.2 incorrectly checks a function's return value in the second factor yubico · webauthn-server-core · CWE-253 | Yüksek7,5 | — | %0,4 | 13 May 2026 |
30İzleyin | CVE-2025-57767İstismar yok | Asterisk can crash from a specifically malformed Authorization header in an incoming SIP requestsangoma · asterisk · CWE-253 | Yüksek7,5 | — | %0,4 | 28 Ağu 2025 |
28İzleyin | CVE-2026-15686İstismar yok | Adminer multi_query Incorrect Check of Function Return Value Remote Code Execution Vulnerabilityadminer · adminer · CWE-253 | Yüksek7,2 | — | %0,7 | 20 Ağu 2026 |
28İzleyin | CVE-2026-5818İstismar yok | MCU Firmware Update Authentication Bypass on Caliptra Corecaliptra · core runtime firmware · CWE-253 | Yüksek7,2 | — | %0,2 | 23 Haz 2026 |
25İzleyin | CVE-2025-54090İstismar yok | Apache HTTP Server: 'RewriteCond expr' always evaluates to true in 2.4.64apache · http server · CWE-253 | Orta6,3 | — | %0,8 | 23 Tem 2025 |
25İzleyin | CVE-2026-0648İstismar yok | The vulnerability stems from an incorrect error-checking logic in the CreateCounter() function (in threadx/utility/rtos_compatibility_layerseclipse · threadx · CWE-253 | Orta6,3 | — | %0,1 | 27 Oca 2026 |
22İzleyin | CVE-2020-6107İstismar yok | An exploitable information disclosure vulnerability exists in the dev_read functionality of F2fs-Tools F2fs.Fsck 1.13.f2fs-tools project · f2fs-tools · CWE-253 | Orta5,5 | — | %1,5 | 15 Eki 2020 |
22İzleyin | CVE-2026-35340İstismar yok | uutils coreutils chown and chgrp False Success Exit Code in Recursive Modeuutils · coreutils · CWE-253 | Orta5,5 | — | %0,2 | 22 Nis 2026 |
22İzleyin | CVE-2026-35339İstismar yok | uutils coreutils chmod False Success Exit Code in Recursive Modeuutils · coreutils · CWE-253 | Orta5,5 | — | %0,2 | 22 Nis 2026 |
22İzleyin | GHSA-88ch-q68x-36v7İstismar yok | Duplicate Advisory: uutils coreutils has an Incorrect Check of Function Return Valuecrates.io · coreutils · CWE-253 | Orta5,5 | — | — | 22 Nis 2026 |
22İzleyin | GHSA-vp6q-mv9j-j428İstismar yok | Duplicate Advisory: uutils coreutils incorrectly handles exit codes when processing multiple filescrates.io · coreutils · CWE-253 | Orta5,5 | — | — | 22 Nis 2026 |
21İzleyin | CVE-2022-24880İstismar yok | Potential Captcha Validate Bypass in flask-session-captchaflask-session-captcha project · flask-session-captcha · CWE-253 | Orta5,3 | — | %1,2 | 25 Nis 2022 |
21İzleyin | CVE-2023-34449İstismar yok | ink! vulnerable to incorrect decoding of storage value when using `DelegateCall`parity · ink\! · CWE-253 | Orta5,3 | — | %1,0 | 14 Haz 2023 |
14İzleyin | CVE-2026-43863İstismar yok | mutt before 2.3.2 has an infinite loop in data_object_to_stream in crypt-gpgme.c.mutt · mutt · CWE-253 | Düşük3,7 | — | %0,3 | 4 May 2026 |
- CVE-2017-747440Planlayın
It was found that the Keycloak Node.js adapter 2.5 - 3.0 did not handle invalid tokens correctly.
KritikCVSS 9,8İstismar yokEPSS %3keycloak · keycloak-nodejs-auth-utils12 May 2017
- CVE-2023-450139İzleyin
Authentication bypass in OpenText (Micro Focus) Enterprise Server
KritikCVSS 9,8İstismar yokEPSS %1microfocus · cobol server12 Eyl 2023
- CVE-2023-4928633İzleyin
Denial of Service in Helper Process management
YüksekCVSS 7,5İstismar yokEPSS %10squid-cache · squid4 Ara 2023
- CVE-2026-3509132İzleyin
Corosync: corosync: denial of service and information disclosure via crafted udp packet
YüksekCVSS 8,2İstismar yokEPSS %1corosync · corosync1 Nis 2026
- CVE-2024-4352131İzleyin
Windows Hyper-V Denial of Service Vulnerability
YüksekCVSS 7,5İstismar yokEPSS %2microsoft · windows server 20128 Eki 2024
- CVE-2026-5309031İzleyin
bpf: Fix ld_{abs,ind} failure path analysis in subprogs
YüksekCVSS 7,8İstismar yokEPSS %0linux · linux kernel24 Haz 2026
- CVE-2023-2448730İzleyin
Arbitrary file read in Citrix ADC and Citrix Gateway
YüksekCVSS 7,5İstismar yokEPSS %1citrix · application delivery controller10 Tem 2023
- CVE-2024-162230İzleyin
Routinator terminates when RTR connection is reset too quickly after opening
YüksekCVSS 7,5İstismar yokEPSS %1nlnetlabs · routinator26 Şub 2024
- CVE-2024-3247530İzleyin
Envoy RELEASE_ASSERT using auto_sni with :authority header > 255 bytes
YüksekCVSS 7,5İstismar yokEPSS %1envoyproxy · envoy18 Nis 2024
- CVE-2026-5984730İzleyin
Libssh: libssh: integrity downgrade via openssl aes-gcm tag verification
YüksekCVSS 7,5İstismar yokEPSS %1libssh · libssh21 Tem 2026
- CVE-2026-4641930İzleyin
Yubico webauthn-server-core (aka java-webauthn-server) 2.8.0 before 2.8.2 incorrectly checks a function's return value in the second factor
YüksekCVSS 7,5İstismar yokEPSS %0yubico · webauthn-server-core13 May 2026
- CVE-2025-5776730İzleyin
Asterisk can crash from a specifically malformed Authorization header in an incoming SIP request
YüksekCVSS 7,5İstismar yokEPSS %0sangoma · asterisk28 Ağu 2025
- CVE-2026-1568628İzleyin
Adminer multi_query Incorrect Check of Function Return Value Remote Code Execution Vulnerability
YüksekCVSS 7,2İstismar yokEPSS %1adminer · adminer20 Ağu 2026
- CVE-2026-581828İzleyin
MCU Firmware Update Authentication Bypass on Caliptra Core
YüksekCVSS 7,2İstismar yokEPSS %0caliptra · core runtime firmware23 Haz 2026
- CVE-2025-5409025İzleyin
Apache HTTP Server: 'RewriteCond expr' always evaluates to true in 2.4.64
OrtaCVSS 6,3İstismar yokEPSS %1apache · http server23 Tem 2025
- CVE-2026-064825İzleyin
The vulnerability stems from an incorrect error-checking logic in the CreateCounter() function (in threadx/utility/rtos_compatibility_layers
OrtaCVSS 6,3İstismar yokEPSS %0eclipse · threadx27 Oca 2026
- CVE-2020-610722İzleyin
An exploitable information disclosure vulnerability exists in the dev_read functionality of F2fs-Tools F2fs.Fsck 1.13.
OrtaCVSS 5,5İstismar yokEPSS %2f2fs-tools project · f2fs-tools15 Eki 2020
- CVE-2026-3534022İzleyin
uutils coreutils chown and chgrp False Success Exit Code in Recursive Mode
OrtaCVSS 5,5İstismar yokEPSS %0uutils · coreutils22 Nis 2026
- CVE-2026-3533922İzleyin
uutils coreutils chmod False Success Exit Code in Recursive Mode
OrtaCVSS 5,5İstismar yokEPSS %0uutils · coreutils22 Nis 2026
- GHSA-88ch-q68x-36v722İzleyin
Duplicate Advisory: uutils coreutils has an Incorrect Check of Function Return Value
OrtaCVSS 5,5İstismar yokcrates.io · coreutils22 Nis 2026
- GHSA-vp6q-mv9j-j42822İzleyin
Duplicate Advisory: uutils coreutils incorrectly handles exit codes when processing multiple files
OrtaCVSS 5,5İstismar yokcrates.io · coreutils22 Nis 2026
- CVE-2022-2488021İzleyin
Potential Captcha Validate Bypass in flask-session-captcha
OrtaCVSS 5,3İstismar yokEPSS %1flask-session-captcha project · flask-session-captcha25 Nis 2022
- CVE-2023-3444921İzleyin
ink! vulnerable to incorrect decoding of storage value when using `DelegateCall`
OrtaCVSS 5,3İstismar yokEPSS %1parity · ink\!14 Haz 2023
- CVE-2026-4386314İzleyin
mutt before 2.3.2 has an infinite loop in data_object_to_stream in crypt-gpgme.c.
DüşükCVSS 3,7İstismar yokEPSS %0mutt · mutt4 May 2026