CWE-840 · 99 kayıt
Business Logic Errors
Bu sınıftaki CVE’ler
99 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
41Planlayın | CVE-2022-32207İstismar yok | When curl < 7.84.0 saves cookies, alt-svc and hsts data to local files, it makes the operation atomic by finalizing the operation with a renhaxx · curl · CWE-840 | Kritik9,8 | — | %7,7 | 7 Tem 2022 |
39İzleyin | CVE-2021-4171İstismar yok | Business Logic Errors in janeczku/calibre-webjaneczku · calibre-web · CWE-840 | Kritik9,8 | — | %1,4 | 17 Oca 2022 |
39İzleyin | CVE-2022-4719İstismar yok | Business Logic Errors in ikus060/rdiffwebikus-soft · rdiffweb · CWE-840 | Kritik9,8 | — | %1,0 | 27 Ara 2022 |
39İzleyin | CVE-2022-3363İstismar yok | Business Logic Errors in ikus060/rdiffwebikus-soft · rdiffweb · CWE-840 | Kritik9,8 | — | %0,8 | 26 Eki 2022 |
35İzleyin | CVE-2022-0935İstismar yok | Host Header injection in password Reset in livehelperchat/livehelperchatlivehelperchat · live helper chat · CWE-840 | Yüksek8,8 | — | %1,3 | 7 Nis 2022 |
35İzleyin | CVE-2019-3787İstismar yok | UAA defaults email address to an insecure domainpivotal software · cloud foundry uaa-release · CWE-840 | Yüksek8,8 | — | %1,1 | 19 Haz 2019 |
35İzleyin | CVE-2025-2938İstismar yok | Business Logic Errors in GitLabgitlab · gitlab · CWE-840 | Yüksek8,8 | — | %0,3 | 26 Haz 2025 |
35İzleyin | CVE-2023-6514İstismar yok | The Bluetooth module of some Huawei Smart Screen products has an identity authentication bypass vulnerability.huawei · ajmd-370s firmware · CWE-840 | Yüksek8,8 | — | %0,3 | 6 Ara 2023 |
33İzleyin | CVE-2021-22926İstismar yok | libcurl-using applications can ask for a specific client certificate to be used in a transfer.haxx · curl · CWE-840 | Yüksek7,5 | — | %9,8 | 5 Ağu 2021 |
32İzleyin | CVE-2026-1322İstismar yok | Business Logic Errors in GitLabgitlab · gitlab · CWE-840 | Yüksek8,1 | — | %0,3 | 14 May 2026 |
31İzleyin | CVE-2022-27782İstismar yok | libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.haxx · curl · CWE-840 | Yüksek7,5 | — | %2,9 | 2 Haz 2022 |
31İzleyin | CVE-2026-58558İstismar yok | Permission control vulnerability in the file system.huawei · harmony os · CWE-840 | Yüksek7,8 | — | %0,1 | 15 Tem 2026 |
30İzleyin | CVE-2022-0524İstismar yok | Business Logic Errors in publify/publifypublify project · publify · CWE-840 | Yüksek7,5 | — | %1,6 | 8 Şub 2022 |
30İzleyin | CVE-2024-2267İstismar yok | keerti1924 Online-Book-Store-Website shop.php logic errorkeerti1924 · online bookstore website · CWE-840 | Yüksek7,5 | — | %0,5 | 7 Mar 2024 |
30İzleyin | CVE-2025-1908İstismar yok | Business Logic Errors in GitLabgitlab · gitlab · CWE-840 | Yüksek7,7 | — | %0,4 | 24 Nis 2025 |
30İzleyin | CVE-2024-45424İstismar yok | Zoom Workplace Apps - Business Logic Errorzoom · meeting software development kit · CWE-840 | Yüksek7,5 | — | %0,4 | 25 Şub 2025 |
30İzleyin | CVE-2024-51523İstismar yok | Information management vulnerability in the Gallery module Impact: Successful exploitation of this vulnerability may affect service confidenhuawei · harmonyos · CWE-840 | Yüksek7,5 | — | %0,2 | 5 Kas 2024 |
30İzleyin | CVE-2024-54098İstismar yok | Service logic error vulnerability in the system service module Impact: Successful exploitation of this vulnerability may affect service intehuawei · emui · CWE-840 | Yüksek7,5 | — | %0,2 | 12 Ara 2024 |
30İzleyin | CVE-2024-56449İstismar yok | Privilege escalation vulnerability in the Account module Impact: Successful exploitation of this vulnerability may affect service confidentihuawei · emui · CWE-840 | Yüksek7,5 | — | %0,2 | 8 Oca 2025 |
29İzleyin | CVE-2022-1155İstismar yok | Old sessions are not blocked by the login enable function. in snipe/snipe-itsnipeitapp · snipe-it · CWE-840 | Yüksek7,4 | — | %1,0 | 30 Mar 2022 |
28İzleyin | CVE-2023-6017İstismar yok | H2O S3 Bucket Takeoverh2o · h2o · CWE-840 | Yüksek7,1 | — | %0,9 | 16 Kas 2023 |
28İzleyin | CVE-2024-1456İstismar yok | S3 Bucket Takeover in h2oai/h2o-3h2o · h2o · CWE-840 | Yüksek7,1 | — | %0,2 | 15 Nis 2024 |
28İzleyin | CVE-2025-54606İstismar yok | Status verification vulnerability in the lock screen module.huawei · harmonyos · CWE-840 | Yüksek7,1 | — | %0,1 | 5 Ağu 2025 |
27İzleyin | CVE-2021-22922İstismar yok | When curl is instructed to download content using the metalink feature, thecontents is verified against a hash provided in the metalink XML haxx · curl · CWE-840 | Orta6,5 | — | %4,3 | 5 Ağu 2021 |
27İzleyin | CVE-2021-36012İstismar yok | Magento Commerce Gift Card Business Logic Erroradobe · adobe commerce · CWE-840 | Orta6,5 | — | %2,0 | 1 Eyl 2021 |
- CVE-2022-3220741Planlayın
When curl < 7.84.0 saves cookies, alt-svc and hsts data to local files, it makes the operation atomic by finalizing the operation with a ren
KritikCVSS 9,8İstismar yokEPSS %8haxx · curl7 Tem 2022
- CVE-2021-417139İzleyin
Business Logic Errors in janeczku/calibre-web
KritikCVSS 9,8İstismar yokEPSS %1janeczku · calibre-web17 Oca 2022
- CVE-2022-471939İzleyin
Business Logic Errors in ikus060/rdiffweb
KritikCVSS 9,8İstismar yokEPSS %1ikus-soft · rdiffweb27 Ara 2022
- CVE-2022-336339İzleyin
Business Logic Errors in ikus060/rdiffweb
KritikCVSS 9,8İstismar yokEPSS %1ikus-soft · rdiffweb26 Eki 2022
- CVE-2022-093535İzleyin
Host Header injection in password Reset in livehelperchat/livehelperchat
YüksekCVSS 8,8İstismar yokEPSS %1livehelperchat · live helper chat7 Nis 2022
- CVE-2019-378735İzleyin
UAA defaults email address to an insecure domain
YüksekCVSS 8,8İstismar yokEPSS %1pivotal software · cloud foundry uaa-release19 Haz 2019
- CVE-2025-293835İzleyin
Business Logic Errors in GitLab
YüksekCVSS 8,8İstismar yokEPSS %0gitlab · gitlab26 Haz 2025
- CVE-2023-651435İzleyin
The Bluetooth module of some Huawei Smart Screen products has an identity authentication bypass vulnerability.
YüksekCVSS 8,8İstismar yokEPSS %0huawei · ajmd-370s firmware6 Ara 2023
- CVE-2021-2292633İzleyin
libcurl-using applications can ask for a specific client certificate to be used in a transfer.
YüksekCVSS 7,5İstismar yokEPSS %10haxx · curl5 Ağu 2021
- CVE-2026-132232İzleyin
Business Logic Errors in GitLab
YüksekCVSS 8,1İstismar yokEPSS %0gitlab · gitlab14 May 2026
- CVE-2022-2778231İzleyin
libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.
YüksekCVSS 7,5İstismar yokEPSS %3haxx · curl2 Haz 2022
- CVE-2026-5855831İzleyin
Permission control vulnerability in the file system.
YüksekCVSS 7,8İstismar yokEPSS %0huawei · harmony os15 Tem 2026
- CVE-2022-052430İzleyin
Business Logic Errors in publify/publify
YüksekCVSS 7,5İstismar yokEPSS %2publify project · publify8 Şub 2022
- CVE-2024-226730İzleyin
keerti1924 Online-Book-Store-Website shop.php logic error
YüksekCVSS 7,5İstismar yokEPSS %1keerti1924 · online bookstore website7 Mar 2024
- CVE-2025-190830İzleyin
Business Logic Errors in GitLab
YüksekCVSS 7,7İstismar yokEPSS %0gitlab · gitlab24 Nis 2025
- CVE-2024-4542430İzleyin
Zoom Workplace Apps - Business Logic Error
YüksekCVSS 7,5İstismar yokEPSS %0zoom · meeting software development kit25 Şub 2025
- CVE-2024-5152330İzleyin
Information management vulnerability in the Gallery module Impact: Successful exploitation of this vulnerability may affect service confiden
YüksekCVSS 7,5İstismar yokEPSS %0huawei · harmonyos5 Kas 2024
- CVE-2024-5409830İzleyin
Service logic error vulnerability in the system service module Impact: Successful exploitation of this vulnerability may affect service inte
YüksekCVSS 7,5İstismar yokEPSS %0huawei · emui12 Ara 2024
- CVE-2024-5644930İzleyin
Privilege escalation vulnerability in the Account module Impact: Successful exploitation of this vulnerability may affect service confidenti
YüksekCVSS 7,5İstismar yokEPSS %0huawei · emui8 Oca 2025
- CVE-2022-115529İzleyin
Old sessions are not blocked by the login enable function. in snipe/snipe-it
YüksekCVSS 7,4İstismar yokEPSS %1snipeitapp · snipe-it30 Mar 2022
- CVE-2023-601728İzleyin
H2O S3 Bucket Takeover
YüksekCVSS 7,1İstismar yokEPSS %1h2o · h2o16 Kas 2023
- CVE-2024-145628İzleyin
S3 Bucket Takeover in h2oai/h2o-3
YüksekCVSS 7,1İstismar yokEPSS %0h2o · h2o15 Nis 2024
- CVE-2025-5460628İzleyin
Status verification vulnerability in the lock screen module.
YüksekCVSS 7,1İstismar yokEPSS %0huawei · harmonyos5 Ağu 2025
- CVE-2021-2292227İzleyin
When curl is instructed to download content using the metalink feature, thecontents is verified against a hash provided in the metalink XML
OrtaCVSS 6,5İstismar yokEPSS %4haxx · curl5 Ağu 2021
- CVE-2021-3601227İzleyin
Magento Commerce Gift Card Business Logic Error
OrtaCVSS 6,5İstismar yokEPSS %2adobe · adobe commerce1 Eyl 2021