CWE-754 · 559 kayıt
Improper Check for Unusual or Exceptional Conditions
Bu sınıftaki CVE’ler
561 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
73Bu hafta | CVE-2024-3393Silahlaştırılmış | PAN-OS: Firewall Denial of Service (DoS) in DNS Security Using a Specially Crafted Packetpaloaltonetworks · pan-os · CWE-754 | Yüksek8,7 | KEV | %28,4 | 27 Ara 2024 |
72Bu hafta | CVE-2023-41993Silahlaştırılmış | The issue was addressed with improved checks.apple · ipados · CWE-754 | Yüksek8,8 | KEV | %24,3 | 21 Eyl 2023 |
70Bu hafta | CVE-2025-39682Silahlaştırılmış | tls: fix handling of zero-length records on the rx_listlinux · linux kernel · CWE-754 | Kritik9,8 | KEV | %2,9 | 5 Eyl 2025 |
64Bu hafta | CVE-2023-41992Silahlaştırılmış | The issue was addressed with improved checks.apple · ipados · CWE-754 | Yüksek7,8 | KEV | %9,5 | 21 Eyl 2023 |
56Planlayın | CVE-2024-4367Kavram kanıtı | A type check was missing when handling fonts in PDF.js, which would allow arbitrary JavaScript execution in the PDF.js context.mozilla · firefox · CWE-754 | Yüksek8,8 | — | %70,7 | 14 May 2024 |
48Planlayın | CVE-2022-39288İstismar yok | Denial of service in Fastify via Content-Type headerfastify · fastify · CWE-754 | Yüksek7,5 | — | %59,2 | 10 Eki 2022 |
44Planlayın | CVE-2024-43044Kavram kanıtı | Jenkins 2.470 and earlier, LTS 2.452.3 and earlier allows agent processes to read arbitrary files from the Jenkins controller file system byjenkins · jenkins · CWE-754 | Yüksek8,8 | — | %28,8 | 7 Ağu 2024 |
42Planlayın | CVE-2022-20130Kavram kanıtı | In transportDec_OutOfBandConfig of tpdec_lib.cpp, there is a possible out of bounds write due to a heap buffer overflow.google · android · CWE-754 | Kritik9,8 | — | %8,5 | 15 Haz 2022 |
41Planlayın | CVE-2020-28037İstismar yok | is_blog_installed in wp-includes/functions.php in WordPress before 5.5.2 improperly determines whether WordPress is already installed, whichwordpress · wordpress · CWE-754 | Kritik9,8 | — | %8,1 | 2 Kas 2020 |
41Planlayın | CVE-2019-19646İstismar yok | pragma.c in SQLite through 3.30.1 mishandles NOT NULL in an integrity_check PRAGMA command in certain cases of generated columns.sqlite · sqlite · CWE-754 | Kritik9,8 | — | %5,4 | 9 Ara 2019 |
40Planlayın | CVE-2020-10571İstismar yok | An issue was discovered in psd-tools before 1.9.4.psd-tools project · psd-tools · CWE-754 | Kritik9,8 | — | %1,8 | 14 Mar 2020 |
40Planlayın | CVE-2021-0211İstismar yok | Junos OS and Junos OS Evolved: Upon receipt of a specific BGP FlowSpec message network traffic may be disrupted.juniper · junos · CWE-754 | Kritik10,0 | — | %1,3 | 15 Oca 2021 |
40Planlayın | CVE-2025-11925İstismar yok | Incorrect Content-Type Headerazure-access · blu-ic2 firmware · CWE-754 | Kritik10,0 | — | %0,3 | 17 Eki 2025 |
39İzleyin | CVE-2020-8986İstismar yok | lib/NSSDropbox.php in ZendTo prior to 5.22-2 Beta failed to properly check for equality when validating the session cookie, allowing an attazend · zendto · CWE-754 | Kritik9,8 | — | %1,5 | 24 Mar 2020 |
39İzleyin | CVE-2017-20166İstismar yok | Ecto 2.2.0 lacks a certain protection mechanism associated with the interaction between is_nil and raise.ecto project · ecto · CWE-754 | Kritik9,8 | — | %1,3 | 10 Oca 2023 |
39İzleyin | CVE-2021-33622İstismar yok | Sylabs Singularity 3.5.x and 3.6.x, and SingularityPRO before 3.5-8, has an Incorrect Check of a Function's Return Value.sylabs · singularity · CWE-754 | Kritik9,8 | — | %1,3 | 15 Haz 2021 |
39İzleyin | CVE-2022-45788İstismar yok | A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists that could cause arbitrary code execution, denial of seschneider-electric · ecostruxure control expert · CWE-754 | Kritik9,8 | — | %1,2 | 30 Oca 2023 |
39İzleyin | CVE-2023-37303İstismar yok | An issue was discovered in the CheckUser extension for MediaWiki through 1.39.3.mediawiki · mediawiki · CWE-754 | Kritik9,8 | — | %1,0 | 30 Haz 2023 |
39İzleyin | CVE-2023-48696İstismar yok | Azure RTOS USBX Remote Code Execution Vulnerabilityeclipse · threadx usbx · CWE-754 | Kritik9,8 | — | %0,9 | 4 Ara 2023 |
39İzleyin | CVE-2023-48698İstismar yok | Azure RTOS USBX Remote Code Execution Vulnerabilityeclipse · threadx usbx · CWE-754 | Kritik9,8 | — | %0,9 | 4 Ara 2023 |
39İzleyin | CVE-2026-8091İstismar yok | Incorrect boundary conditions in the Audio/Video: Playback componentmozilla · firefox · CWE-754 | Kritik9,8 | — | %0,6 | 7 May 2026 |
39İzleyin | CVE-2025-13392İstismar yok | Improper check for unusual or exceptional conditions vulnerability in SSO in Synology DiskStation Manager (DSM) before 7.2.2-72806-5 and 7.3synology · diskstation manager · CWE-754 | Kritik9,8 | — | %0,5 | 27 May 2026 |
39İzleyin | CVE-2024-7826İstismar yok | Unhandled exception vulnerability that can cause the WRSA.exe service to crash and generate a crash dumpwebroot · secureanywhere web shield · CWE-754 | Kritik9,8 | — | %0,4 | 3 Eki 2024 |
38İzleyin | CVE-2026-77411İstismar yok | RabbitMQ amqp091-go: Protocol Desynchronization and Frame Injection via Integer Overflow in readLongstrrabbitmq · amqp091-go · CWE-754 | Kritik9,5 | — | %0,5 | 16 Eyl 2026 |
37İzleyin | CVE-2026-0667İstismar yok | CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability that could cause arbitrary code execution, denial of service andschneider electric · scadapack 47x · CWE-754 | Kritik9,3 | — | %0,5 | 29 Tem 2026 |
- CVE-2024-339373Bu hafta
PAN-OS: Firewall Denial of Service (DoS) in DNS Security Using a Specially Crafted Packet
YüksekCVSS 8,7KEVSilahlaştırılmışEPSS %28paloaltonetworks · pan-os27 Ara 2024
- CVE-2023-4199372Bu hafta
The issue was addressed with improved checks.
YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %24apple · ipados21 Eyl 2023
- CVE-2025-3968270Bu hafta
tls: fix handling of zero-length records on the rx_list
KritikCVSS 9,8KEVSilahlaştırılmışEPSS %3linux · linux kernel5 Eyl 2025
- CVE-2023-4199264Bu hafta
The issue was addressed with improved checks.
YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %10apple · ipados21 Eyl 2023
- CVE-2024-436756Planlayın
A type check was missing when handling fonts in PDF.js, which would allow arbitrary JavaScript execution in the PDF.js context.
YüksekCVSS 8,8Kavram kanıtıEPSS %71mozilla · firefox14 May 2024
- CVE-2022-3928848Planlayın
Denial of service in Fastify via Content-Type header
YüksekCVSS 7,5İstismar yokEPSS %59fastify · fastify10 Eki 2022
- CVE-2024-4304444Planlayın
Jenkins 2.470 and earlier, LTS 2.452.3 and earlier allows agent processes to read arbitrary files from the Jenkins controller file system by
YüksekCVSS 8,8Kavram kanıtıEPSS %29jenkins · jenkins7 Ağu 2024
- CVE-2022-2013042Planlayın
In transportDec_OutOfBandConfig of tpdec_lib.cpp, there is a possible out of bounds write due to a heap buffer overflow.
KritikCVSS 9,8Kavram kanıtıEPSS %9google · android15 Haz 2022
- CVE-2020-2803741Planlayın
is_blog_installed in wp-includes/functions.php in WordPress before 5.5.2 improperly determines whether WordPress is already installed, which
KritikCVSS 9,8İstismar yokEPSS %8wordpress · wordpress2 Kas 2020
- CVE-2019-1964641Planlayın
pragma.c in SQLite through 3.30.1 mishandles NOT NULL in an integrity_check PRAGMA command in certain cases of generated columns.
KritikCVSS 9,8İstismar yokEPSS %5sqlite · sqlite9 Ara 2019
- CVE-2020-1057140Planlayın
An issue was discovered in psd-tools before 1.9.4.
KritikCVSS 9,8İstismar yokEPSS %2psd-tools project · psd-tools14 Mar 2020
- CVE-2021-021140Planlayın
Junos OS and Junos OS Evolved: Upon receipt of a specific BGP FlowSpec message network traffic may be disrupted.
KritikCVSS 10,0İstismar yokEPSS %1juniper · junos15 Oca 2021
- CVE-2025-1192540Planlayın
Incorrect Content-Type Header
KritikCVSS 10,0İstismar yokEPSS %0azure-access · blu-ic2 firmware17 Eki 2025
- CVE-2020-898639İzleyin
lib/NSSDropbox.php in ZendTo prior to 5.22-2 Beta failed to properly check for equality when validating the session cookie, allowing an atta
KritikCVSS 9,8İstismar yokEPSS %2zend · zendto24 Mar 2020
- CVE-2017-2016639İzleyin
Ecto 2.2.0 lacks a certain protection mechanism associated with the interaction between is_nil and raise.
KritikCVSS 9,8İstismar yokEPSS %1ecto project · ecto10 Oca 2023
- CVE-2021-3362239İzleyin
Sylabs Singularity 3.5.x and 3.6.x, and SingularityPRO before 3.5-8, has an Incorrect Check of a Function's Return Value.
KritikCVSS 9,8İstismar yokEPSS %1sylabs · singularity15 Haz 2021
- CVE-2022-4578839İzleyin
A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists that could cause arbitrary code execution, denial of se
KritikCVSS 9,8İstismar yokEPSS %1schneider-electric · ecostruxure control expert30 Oca 2023
- CVE-2023-3730339İzleyin
An issue was discovered in the CheckUser extension for MediaWiki through 1.39.3.
KritikCVSS 9,8İstismar yokEPSS %1mediawiki · mediawiki30 Haz 2023
- CVE-2023-4869639İzleyin
Azure RTOS USBX Remote Code Execution Vulnerability
KritikCVSS 9,8İstismar yokEPSS %1eclipse · threadx usbx4 Ara 2023
- CVE-2023-4869839İzleyin
Azure RTOS USBX Remote Code Execution Vulnerability
KritikCVSS 9,8İstismar yokEPSS %1eclipse · threadx usbx4 Ara 2023
- CVE-2026-809139İzleyin
Incorrect boundary conditions in the Audio/Video: Playback component
KritikCVSS 9,8İstismar yokEPSS %1mozilla · firefox7 May 2026
- CVE-2025-1339239İzleyin
Improper check for unusual or exceptional conditions vulnerability in SSO in Synology DiskStation Manager (DSM) before 7.2.2-72806-5 and 7.3
KritikCVSS 9,8İstismar yokEPSS %1synology · diskstation manager27 May 2026
- CVE-2024-782639İzleyin
Unhandled exception vulnerability that can cause the WRSA.exe service to crash and generate a crash dump
KritikCVSS 9,8İstismar yokEPSS %0webroot · secureanywhere web shield3 Eki 2024
- CVE-2026-7741138İzleyin
RabbitMQ amqp091-go: Protocol Desynchronization and Frame Injection via Integer Overflow in readLongstr
KritikCVSS 9,5İstismar yokEPSS %1rabbitmq · amqp091-go16 Eyl 2026
- CVE-2026-066737İzleyin
CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability that could cause arbitrary code execution, denial of service and
KritikCVSS 9,3İstismar yokEPSS %1schneider electric · scadapack 47x29 Tem 2026