Allocation of Resources Without Limits or Throttling | |
Improper Authorization | |
Improper Handling of Exceptional Conditions | |
Information Exposure | |
Use of Uninitialized Variable | |
Improper Input Validation | |
Loop with Unreachable Exit Condition ('Infinite Loop') | |
Information Exposure | |
Resource Exhaustion | |
Improper Handling of Highly Compressed Data (Data Amplification) | |
Improper Input Validation | |
Loop with Unreachable Exit Condition ('Infinite Loop') | |
Misinterpretation of Input | |
Arbitrary Code Injection | |
Improper Input Validation | |
Information Exposure | |
Improper Input Validation | |
Truncation of Security-relevant Information | |
Information Exposure | |
Resource Exhaustion | |
Allocation of Resources Without Limits or Throttling | |
Resource Exhaustion | |
Resource Exhaustion | |
Incorrect Authorization | |
CVE-2023-39321 | |
Cross-site Scripting (XSS) | |
Resource Exhaustion | |
Resource Exhaustion | |
HTTP Response Splitting | |
CVE-2023-2728 | |
Loop with Unreachable Exit Condition ('Infinite Loop') | |
Resource Exhaustion | |
Arbitrary Code Injection | |
Resource Exhaustion | |
Improper Input Validation | <0:3.0.2.0-0.git.38.7576bc5.el7ose |
Missing Authorization | <0:3.0.1.0-1.git.527.f8d5fed.el7ose |
Directory Traversal | <0:3.0.2.0-0.git.20.656dc3e.el7ose |
Improper Input Validation | <0:3.0.1.0-1.git.529.dcab62c.el7ose |
Incorrect Default Permissions | |
Authentication Bypass by Primary Weakness | |
Improper Authorization | <0:3.0.2.0-0.git.45.423f434.el7ose |
Improper Authorization | <0:3.0.2.0-0.git.45.423f434.el7ose |
Incorrect Authorization | |
Out-of-bounds Write | |
Improper Input Validation | |
Arbitrary Code Injection | |
Insecure Default Variable Initialization | |
Improper Restriction of Rendered UI Layers or Frames | |
Improper Initialization | |
Directory Traversal | |
Authorization Bypass Through User-Controlled Key | |
Improper Certificate Validation | |
Improper Preservation of Permissions | |
Improper Input Validation | |
Time-of-check Time-of-use (TOCTOU) | |
Improper Access Control | |
Improper Input Validation | |
Insufficiently Protected Credentials | |
Resource Exhaustion | |
Resource Exhaustion | |
Resource Exhaustion | |
Placement of User into Incorrect Group | |
Algorithmic Complexity | |
CVE-2022-41715 | |
Allocation of Resources Without Limits or Throttling | |
HTTP Request Smuggling | |
Directory Traversal | |
Resource Exhaustion | |
Resource Exhaustion | |
Information Exposure | |
Improperly Controlled Sequential Memory Allocation | |
HTTP Request Smuggling | |
Improper Input Validation | |
Insufficient Entropy | |
Missing Release of Resource after Effective Lifetime | |
Use of a Broken or Risky Cryptographic Algorithm | |
Integer Overflow or Wraparound | |
Improper Input Validation | |
Improper Input Validation | |
Resource Exhaustion | |
NULL Pointer Dereference | |
Loop with Unreachable Exit Condition ('Infinite Loop') | |
Loop with Unreachable Exit Condition ('Infinite Loop') | |