İçeriğe atla
Noroxi

CWE-625 · 11 kayıt

Permissive Regular Expression

Bu sınıftaki CVE’ler

12 kayıt

  • CVE-2024-49400
    39İzleyin

    Tacquito prior to commit 07b49d1358e6ec0b5aa482fcd284f509191119e2 was not properly performing regex matches on authorized commands and argum

    KritikCVSS 9,8İstismar yokEPSS %0

    meta · tacquito17 Eki 2024

  • CVE-2018-8926
    36İzleyin

    Permissive regular expression vulnerability in synophoto_dsm_user in Synology Photo Station before 6.8.5-3471 and before 6.3-2975 allows rem

    YüksekCVSS 8,8İstismar yokEPSS %2

    synology · photo station8 Haz 2018

  • CVE-2026-32973
    35İzleyin

    OpenClaw < 2026.3.11 - Exec Allowlist Pattern Overmatch via POSIX Path Normalization

    YüksekCVSS 8,8İstismar yokEPSS %1

    openclaw · openclaw29 Mar 2026

  • CVE-2026-64940
    35İzleyin

    Tegalog -Fumy Otegaru Memo Logger- provided by Nishishi Factory contains a vulnerability due to a permissive regular expression, which may a

    YüksekCVSS 8,8İstismar yokEPSS %0

    nishishi factory · tegalog -fumy otegaru memo logger-10 Ağu 2026

  • CVE-2026-34830
    30İzleyin

    Rack: Rack::Sendfile regex injection via HTTP_X_ACCEL_MAPPING header allows arbitrary file reads through nginx

    YüksekCVSS 7,5İstismar yokEPSS %0

    rack · rack2 Nis 2026

  • CVE-2026-19278
    27İzleyin

    Stackrox: stackrox: privilege escalation via unanchored regular expressions in auth m2m role mappings

    OrtaCVSS 6,8İstismar yokEPSS %0

    red hat · red hat advanced cluster security 410 Ağu 2026

  • CVE-2026-23651
    26İzleyin

    Microsoft ACI Confidential Containers Elevation of Privilege Vulnerability

    OrtaCVSS 6,7İstismar yokEPSS %1

    microsoft · aci confidential containers5 Mar 2026

  • CVE-2020-8910
    26İzleyin

    Auth Bypass in Google's Closure-Library

    OrtaCVSS 6,5İstismar yokEPSS %1

    google · closure library26 Mar 2020

  • CVE-2026-102983
    25İzleyin

    Astro: Netlify Image CDN allowlist bypass enables SSRF

    OrtaCVSS 6,3İstismar yok

    withastro · astroBugün

  • CVE-2023-6544
    21İzleyin

    Keycloak: authorization bypass

    OrtaCVSS 5,4İstismar yokEPSS %1

    red hat · red hat build of keycloak 2225 Nis 2024

  • CVE-2026-79965
    21İzleyin

    Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an External Control

    OrtaCVSS 5,3İstismar yokEPSS %0

    dell · secure connect gateway9 Eyl 2026

  • CVE-2026-34763
    21İzleyin

    Rack: Rack::Directory info disclosure and DoS via unescaped regex interpolation

    OrtaCVSS 5,3İstismar yokEPSS %0

    rack · rack2 Nis 2026

Tüm zafiyet sınıfları