CWE-837 · 17 kayıt
Improper Enforcement of a Single, Unique Action
Bu sınıftaki CVE’ler
17 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
30İzleyin | CVE-2023-6759İstismar yok | Thecosy IceCMS Love resource improper enforcement of a single, unique actionthecosy · icecms · CWE-837 | Yüksek7,5 | — | %1,0 | 13 Ara 2023 |
30İzleyin | CVE-2026-44601İstismar yok | Tor before 0.4.9.7, when circuit queue memory pressure exists, can experience a client crash because of a double close of a circuit, aka TROtorproject · tor · CWE-837 | Yüksek7,5 | — | %0,6 | 7 May 2026 |
28İzleyin | CVE-2025-54315İstismar yok | The Matrix specification before 1.16 (i.e., with a room version before 12) lacks create event uniqueness.matrix · matrix specification · CWE-837 | Yüksek7,1 | — | %0,3 | 2 Eki 2025 |
26İzleyin | CVE-2024-4629İstismar yok | Keycloak: potential bypass of brute force protectionredhat · keycloak · CWE-837 | Orta6,5 | — | %0,8 | 3 Eyl 2024 |
26İzleyin | CVE-2024-11301İstismar yok | Improper Enforcement of Unique Constraint in lunary-ai/lunarylunary · lunary · CWE-837 | Orta6,5 | — | %0,6 | 20 Mar 2025 |
26İzleyin | CVE-2025-58135İstismar yok | Zoom Workplace Clients for Windows - Improper Action Enforcementzoom · meeting software development kit · CWE-837 | Orta6,5 | — | %0,3 | 9 Eyl 2025 |
26İzleyin | GHSA-8wm9-24qg-m5qjİstismar yok | Duplicate Advisory: Keycloak has a brute force login protection bypassMaven · org.keycloak:keycloak-services · CWE-837 | Orta6,5 | — | — | 3 Eyl 2024 |
25İzleyin | CVE-2024-11717İstismar yok | Tokens in CTFd used for account activation and password resetting can be used interchangeably for these operations.ctfd · ctfd · CWE-837 | Orta6,3 | — | %0,7 | 2 Oca 2025 |
24İzleyin | CVE-2024-11716İstismar yok | While assignment of a user to a team (bracket) in CTFd should be possible only once, at the registration, a flaw in logic implementation alctfd · ctfd · CWE-837 | Orta5,3 | — | %11,7 | 2 Oca 2025 |
23İzleyin | CVE-2025-62782İstismar yok | InventoryGUI vulnerable to item duplication via Bundle items when using GuiStorageElementphoenix616 · inventorygui · CWE-837 | Orta5,9 | — | %0,3 | 27 Eki 2025 |
21İzleyin | CVE-2023-6438İstismar yok | Thecosy IceCMS Like improper enforcement of a single, unique actionthecosy · icecms · CWE-837 | Orta5,3 | — | %0,7 | 30 Kas 2023 |
21İzleyin | CVE-2026-45734İstismar yok | MyBB: Default CAPTCHA missing invalidationmybb · mybb · CWE-837 | Orta5,3 | — | %0,6 | 18 Ağu 2026 |
21İzleyin | CVE-2025-62784İstismar yok | InventoryGui allows item duplication in GUIs which use GuiStorageElementphoenix616 · inventorygui · CWE-837 | Orta5,3 | — | %0,2 | 27 Eki 2025 |
17İzleyin | CVE-2025-62783İstismar yok | InventoryGui affected by item duplication in GUIs which use GuiStorageElementphoenix616 · inventorygui · CWE-837 | Orta4,3 | — | %0,3 | 27 Eki 2025 |
14İzleyin | CVE-2023-6467İstismar yok | Thecosy IceCMS Comment Like improper enforcement of a single, unique actionthecosy · icecms · CWE-837 | Düşük3,7 | — | %0,6 | 2 Ara 2023 |
14İzleyin | CVE-2023-5313İstismar yok | phpkobo Ajax Poll Script ajax-poll.php improper enforcement of a single, unique actionphpkobo · ajax poll script · CWE-837 | Düşük3,7 | — | %0,5 | 30 Eyl 2023 |
9İzleyin | CVE-2026-86198İstismar yok | PocketMine-MP before 5.44.2 Denial of Service via ResourcePackClientResponsePacketpmmp · pocketmine-mp · CWE-837 | Düşük2,3 | — | %0,4 | 9 Eyl 2026 |
- CVE-2023-675930İzleyin
Thecosy IceCMS Love resource improper enforcement of a single, unique action
YüksekCVSS 7,5İstismar yokEPSS %1thecosy · icecms13 Ara 2023
- CVE-2026-4460130İzleyin
Tor before 0.4.9.7, when circuit queue memory pressure exists, can experience a client crash because of a double close of a circuit, aka TRO
YüksekCVSS 7,5İstismar yokEPSS %1torproject · tor7 May 2026
- CVE-2025-5431528İzleyin
The Matrix specification before 1.16 (i.e., with a room version before 12) lacks create event uniqueness.
YüksekCVSS 7,1İstismar yokEPSS %0matrix · matrix specification2 Eki 2025
- CVE-2024-462926İzleyin
Keycloak: potential bypass of brute force protection
OrtaCVSS 6,5İstismar yokEPSS %1redhat · keycloak3 Eyl 2024
- CVE-2024-1130126İzleyin
Improper Enforcement of Unique Constraint in lunary-ai/lunary
OrtaCVSS 6,5İstismar yokEPSS %1lunary · lunary20 Mar 2025
- CVE-2025-5813526İzleyin
Zoom Workplace Clients for Windows - Improper Action Enforcement
OrtaCVSS 6,5İstismar yokEPSS %0zoom · meeting software development kit9 Eyl 2025
- GHSA-8wm9-24qg-m5qj26İzleyin
Duplicate Advisory: Keycloak has a brute force login protection bypass
OrtaCVSS 6,5İstismar yokMaven · org.keycloak:keycloak-services3 Eyl 2024
- CVE-2024-1171725İzleyin
Tokens in CTFd used for account activation and password resetting can be used interchangeably for these operations.
OrtaCVSS 6,3İstismar yokEPSS %1ctfd · ctfd2 Oca 2025
- CVE-2024-1171624İzleyin
While assignment of a user to a team (bracket) in CTFd should be possible only once, at the registration, a flaw in logic implementation al
OrtaCVSS 5,3İstismar yokEPSS %12ctfd · ctfd2 Oca 2025
- CVE-2025-6278223İzleyin
InventoryGUI vulnerable to item duplication via Bundle items when using GuiStorageElement
OrtaCVSS 5,9İstismar yokEPSS %0phoenix616 · inventorygui27 Eki 2025
- CVE-2023-643821İzleyin
Thecosy IceCMS Like improper enforcement of a single, unique action
OrtaCVSS 5,3İstismar yokEPSS %1thecosy · icecms30 Kas 2023
- CVE-2026-4573421İzleyin
MyBB: Default CAPTCHA missing invalidation
OrtaCVSS 5,3İstismar yokEPSS %1mybb · mybb18 Ağu 2026
- CVE-2025-6278421İzleyin
InventoryGui allows item duplication in GUIs which use GuiStorageElement
OrtaCVSS 5,3İstismar yokEPSS %0phoenix616 · inventorygui27 Eki 2025
- CVE-2025-6278317İzleyin
InventoryGui affected by item duplication in GUIs which use GuiStorageElement
OrtaCVSS 4,3İstismar yokEPSS %0phoenix616 · inventorygui27 Eki 2025
- CVE-2023-646714İzleyin
Thecosy IceCMS Comment Like improper enforcement of a single, unique action
DüşükCVSS 3,7İstismar yokEPSS %1thecosy · icecms2 Ara 2023
- CVE-2023-531314İzleyin
phpkobo Ajax Poll Script ajax-poll.php improper enforcement of a single, unique action
DüşükCVSS 3,7İstismar yokEPSS %0phpkobo · ajax poll script30 Eyl 2023
- CVE-2026-861989İzleyin
PocketMine-MP before 5.44.2 Denial of Service via ResourcePackClientResponsePacket
DüşükCVSS 2,3İstismar yokEPSS %0pmmp · pocketmine-mp9 Eyl 2026