İçeriğe atla
Noroxi

CWE-657 · 18 kayıt

Violation of Secure Design Principles

Bu sınıftaki CVE’ler

18 kayıt

  • CVE-2026-39888
    39İzleyin

    PraisonAIAgents has a sandbox escape via exception frame traversal in `execute_code` (subprocess mode)

    KritikCVSS 9,9İstismar yokEPSS %1

    praison · praisonai8 Nis 2026

  • CVE-2023-29320
    33İzleyin

    ZDI-CAN-20712: Adobe Acrobat Blacklist Bypass Design flaw

    YüksekCVSS 7,8İstismar yokEPSS %5

    adobe · acrobat dc10 Ağu 2023

  • fake-static allows converting any reference into a `'static` reference

    YüksekCVSS 8,0İstismar yok

    crates.io · fake-static25 Ağu 2021

  • CVE-2019-0061
    31İzleyin

    Junos OS: Insecure management daemon (MGD) configuration may allow local privilege escalation

    YüksekCVSS 7,8İstismar yokEPSS %0

    juniper · junos9 Eki 2019

  • CVE-2026-48399
    30İzleyin

    Adobe Campaign Classic (ACC) | Violation of Secure Design Principles (CWE-657)

    YüksekCVSS 7,5İstismar yokEPSS %1

    adobe · campaign3 Ağu 2026

  • CVE-2023-52714
    30İzleyin

    Vulnerability of defects introduced in the design process in the hwnff module.

    YüksekCVSS 7,5İstismar yokEPSS %0

    huawei · emui7 Nis 2024

  • CVE-2024-57957
    30İzleyin

    Vulnerability of improper log information control in the UI framework module Impact: Successful exploitation of this vulnerability may affec

    YüksekCVSS 7,5İstismar yokEPSS %0

    huawei · harmonyos6 Şub 2025

  • CVE-2022-28244
    26İzleyin

    Adobe Acrobat Reader DC CSP Bypass Leads To Privilege Escalation

    OrtaCVSS 6,3İstismar yokEPSS %4

    adobe · acrobat dc11 May 2022

  • CVE-2019-5478
    22İzleyin

    A weakness was found in Encrypt Only boot mode in Zynq UltraScale+ devices.

    OrtaCVSS 5,5İstismar yokEPSS %0

    amd · zu11eg firmware3 Eyl 2019

  • Passbolt Api Tabnabbing when opening URI with menu "Open URI in a new tab"

    OrtaCVSS 5,5İstismar yok

    Packagist · passbolt/passbolt_api20 May 2024

  • CVE-2017-6032
    21İzleyin

    A Violation of Secure Design Principles issue was discovered in Schneider Electric Modicon Modbus Protocol.

    OrtaCVSS 5,3İstismar yokEPSS %2

    schneider-electric · modbus firmware29 Haz 2017

  • CVE-2021-36061
    21İzleyin

    Adobe Connect Violation of Secure Design Principles Vulnerability Can Lead To Editing Or Deleting Recordings

    OrtaCVSS 5,4İstismar yokEPSS %2

    adobe · connect1 Eyl 2021

  • CVE-2022-30683
    21İzleyin

    AEM Violation of Secure Design Principles Security feature bypass

    OrtaCVSS 5,3İstismar yokEPSS %1

    adobe · experience manager16 Eyl 2022

  • CVE-2020-8133
    21İzleyin

    A wrong generation of the passphrase for the encrypted block in Nextcloud Server 19.0.1 allowed an attacker to overwrite blocks in a file.

    OrtaCVSS 5,3İstismar yokEPSS %1

    nextcloud · nextcloud server9 Kas 2020

  • CVE-2019-15611
    19İzleyin

    Violation of Secure Design Principles in the iOS App 2.23.0 causes the app to leak its login and token to other Nextcloud services when sear

    OrtaCVSS 4,9İstismar yokEPSS %1

    nextcloud · nextcloud4 Şub 2020

  • CVE-2021-28583
    17İzleyin

    Magento Commerce insecure storage of sensitive documentation

    OrtaCVSS 4,2İstismar yokEPSS %2

    magento · magento28 Haz 2021

  • CVE-2025-54255
    16İzleyin

    Acrobat Reader | Violation of Secure Design Principles (CWE-657)

    OrtaCVSS 4,0İstismar yokEPSS %0

    adobe · acrobat9 Eyl 2025

  • CVE-2021-44714
    14İzleyin

    Adobe Acrobat Reader Missing Custom Protocols in Warning Message Prompts

    DüşükCVSS 3,3İstismar yokEPSS %3

    adobe · acrobat dc14 Oca 2022

Tüm zafiyet sınıfları