openshift/ose-rhel-coreos-8

Direct Vulnerabilities

Known vulnerabilities in the openshift/ose-rhel-coreos-8 package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • H
Use After Free

*
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

*
  • H
Out-of-bounds Read

*
  • L
Improper Update of Reference Count

*
  • L
Improper Update of Reference Count

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • M
Out-of-bounds Read

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • H
Use After Free

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • H
Improper Handling of Unicode Encoding

*
  • M
Buffer Overflow

*
  • M
Integer Overflow or Wraparound

*
  • H
Resource Exhaustion

*
  • H
Out-of-bounds Read

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Improper Handling of Insufficient Permissions or Privileges

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • H
Improper Validation of Specified Quantity in Input

*
  • H
Improper Control of Dynamically-Identified Variables

*
  • M
Out-of-bounds Write

*
  • M
NULL Pointer Dereference

*
  • L
Trust Boundary Violation

*
  • H
Out-of-bounds Write

*
  • H
Heap-based Buffer Overflow

*
  • M
Out-of-bounds Write

*
  • M
NULL Pointer Dereference

*
  • L
Buffer Access with Incorrect Length Value

*
  • L
Out-of-bounds Write

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • H
Out-of-bounds Write

*
  • M
Comparison Using Wrong Factors

*
  • H
Reachable Assertion

*
  • M
Authentication Bypass

*
  • M
Excessive Platform Resource Consumption within a Loop

*
  • L
Incorrect Implementation of Authentication Algorithm

*
  • M
Improper Handling of Inconsistent Special Elements

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • L
Expired Pointer Dereference

*
  • M
Expired Pointer Dereference

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Origin Validation Error

*
  • H
Reachable Assertion

*
  • L
Use After Free

*
  • M
Improper Verification of Cryptographic Signature

*
  • H
Integer Overflow or Wraparound

*
  • M
NULL Pointer Dereference

*
  • M
NULL Pointer Dereference

*
  • M
Improper Resource Locking

*
  • L
NULL Pointer Dereference

*
  • L
Excessive Platform Resource Consumption within a Loop

*
  • M
Incorrect Calculation of Buffer Size

*
  • M
Out-of-bounds Read

*
  • M
Improper Validation of Specified Quantity in Input

*
  • L
NULL Pointer Dereference

*
  • M
Improper Update of Reference Count

*
  • M
Improper Null Termination

*
  • L
Access of Uninitialized Pointer

*
  • L
Improper Update of Reference Count

*
  • L
Allocation of Resources Without Limits or Throttling

*
  • M
Out-of-bounds Read

*
  • L
Information Exposure

*
  • M
Buffer Access with Incorrect Length Value

*
  • M
Buffer Access with Incorrect Length Value

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • M
Out-of-bounds Write

*
  • L
Incorrect Synchronization

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Buffer Access with Incorrect Length Value

*
  • M
NULL Pointer Dereference

*
  • M
NULL Pointer Dereference

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • L
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • M
Out-of-bounds Read

*
  • M
Out-of-bounds Read

*
  • M
Integer Underflow

*
  • M
Incorrect Synchronization

*
  • M
Deadlock

*
  • L
Out-of-bounds Read

*
  • M
Out-of-bounds Read

*
  • M
Incorrect Bitwise Shift of Integer

*
  • M
Reachable Assertion

*
  • M
Plaintext Storage of a Password

*
  • M
Missing Release of Resource after Effective Lifetime

*
  • M
Buffer Access with Incorrect Length Value

*
  • M
Integer Overflow or Wraparound

*
  • M
Access of Uninitialized Pointer

*
  • M
Improper Validation of Specified Index, Position, or Offset in Input

*
  • M
CVE-2026-89582

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • M
Expired Pointer Dereference

*
  • M
Missing Release of Resource after Effective Lifetime

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • M
Link Following

*
  • M
Link Following

*
  • M
NULL Pointer Dereference

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Integer Overflow or Wraparound

*
  • L
Improper Update of Reference Count

*
  • L
NULL Pointer Dereference

*
  • M
NULL Pointer Dereference

*
  • M
Missing Release of Resource after Effective Lifetime

*
  • L
NULL Pointer Dereference

*
  • M
NULL Pointer Dereference

*
  • M
Incorrect Synchronization

*
  • L
NULL Pointer Dereference

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • L
Time-of-check Time-of-use (TOCTOU)

*
  • L
Allocation of Resources Without Limits or Throttling

*
  • M
Expired Pointer Dereference

*
  • M
Off-by-one Error

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • M
Expired Pointer Dereference

*
  • M
Out-of-bounds Read

*
  • M
Missing Release of Resource after Effective Lifetime

*
  • M
Path Equivalence

*
  • H
Algorithmic Complexity

*
  • M
Out-of-bounds Read

*
  • M
Expired Pointer Dereference

*
  • M
NULL Pointer Dereference

*
  • M
NULL Pointer Dereference

*
  • L
Improper Update of Reference Count

*
  • M
NULL Pointer Dereference

*
  • M
Buffer Access with Incorrect Length Value

*
  • M
Out-of-bounds Read

*
  • M
Expired Pointer Dereference

*
  • M
Out-of-bounds Read

*
  • M
Deadlock

*
  • M
Improper Update of Reference Count

*
  • M
Race Condition

*
  • M
Missing Release of Resource after Effective Lifetime

*
  • M
Authorization Bypass Through User-Controlled Key

*
  • M
Missing Lock Check

*
  • M
Information Exposure

*
  • M
NULL Pointer Dereference

*
  • M
NULL Pointer Dereference

*
  • M
Release of Invalid Pointer or Reference

*
  • M
Out-of-bounds Read

*
  • L
Release of Invalid Pointer or Reference

*
  • H
Integer Overflow or Wraparound

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • M
Expired Pointer Dereference

*
  • M
Race Condition

*
  • M
Buffer Overflow

*
  • M
Race Condition

*
  • M
NULL Pointer Dereference

*
  • L
Improper Update of Reference Count

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • M
Out-of-bounds Read

*
  • M
Expired Pointer Dereference

*
  • L
NULL Pointer Dereference

*
  • M
Directory Traversal

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • M
Out-of-bounds Read

*
  • M
Buffer Overflow

*
  • H
Incomplete Cleanup

*
  • M
Expired Pointer Dereference

*
  • L
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • M
Expired Pointer Dereference

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Expired Pointer Dereference

*
  • M
Integer Overflow or Wraparound

*
  • M
Expired Pointer Dereference

*
  • M
Expired Pointer Dereference

*
  • M
Out-of-bounds Read

*
  • M
Buffer Access with Incorrect Length Value

*
  • M
Out-of-bounds Read

*
  • H
Expired Pointer Dereference

*
  • M
Expired Pointer Dereference

*
  • H
Out-of-bounds Read

*
  • L
Out-of-bounds Write

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Incorrect Privilege Assignment

*
  • M
Out-of-bounds Read

*
  • M
NULL Pointer Dereference

*
  • M
NULL Pointer Dereference

*
  • H
Expired Pointer Dereference

*
  • M
Out-of-bounds Write

*
  • M
Misinterpretation of Input

*
  • H
Expired Pointer Dereference

*
  • M
Race Condition

*
  • M
CVE-2026-89741

*
  • M
NULL Pointer Dereference

*
  • M
Expired Pointer Dereference

*
  • H
Expired Pointer Dereference

*
  • M
Integer Underflow

*
  • M
Out-of-bounds Write

*
  • M
Out-of-bounds Write

*
  • M
Out-of-bounds Write

*
  • M
Out-of-bounds Read

*
  • M
Improper Update of Reference Count

*
  • M
Expired Pointer Dereference

*
  • M
Expired Pointer Dereference

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • M
Access of Uninitialized Pointer

*
  • L
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • M
Expired Pointer Dereference

*
  • M
Out-of-bounds Write

*
  • M
Expired Pointer Dereference

*
  • M
Unchecked Input for Loop Condition

*
  • M
NULL Pointer Dereference

*
  • H
Expired Pointer Dereference

*
  • M
Missing Release of Resource after Effective Lifetime

*
  • H
Race Condition

*
  • M
Improper Update of Reference Count

*
  • M
Comparison Using Wrong Factors

*
  • M
NULL Pointer Dereference

*
  • L
Improper Handling of Length Parameter Inconsistency

*
  • M
Improper Update of Reference Count

*
  • M
Out-of-bounds Write

*
  • M
Out-of-bounds Write

*
  • H
Expired Pointer Dereference

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Out-of-bounds Read

*
  • M
Out-of-bounds Write

*
  • M
Expired Pointer Dereference

*
  • M
Buffer Overflow

*
  • M
Out-of-bounds Write

*
  • H
Out-of-bounds Write

*
  • M
Race Condition

*
  • M
Expired Pointer Dereference

*
  • M
Integer Underflow

*
  • H
CVE-2026-89563

*
  • M
Out-of-bounds Read

*
  • M
Out-of-bounds Read

*
  • M
Divide By Zero

*
  • M
Buffer Overflow

*
  • H
Expired Pointer Dereference

*
  • M
Incorrect Calculation of Buffer Size

*
  • M
Information Exposure Through Caching

*
  • M
Improper Validation of Consistency within Input

*
  • M
Expired Pointer Dereference

*
  • M
Out-of-bounds Read

*
  • M
Out-of-bounds Write

*
  • M
Expired Pointer Dereference

*
  • M
Out-of-bounds Read

*
  • M
Out-of-bounds Write

*
  • M
Expired Pointer Dereference

*
  • M
Out-of-bounds Read

*
  • H
Time-of-check Time-of-use (TOCTOU)

*
  • L
Incorrect Synchronization

*
  • M
Expired Pointer Dereference

*
  • M
Out-of-bounds Read

*
  • H
Out-of-bounds Write

*
  • M
Missing Release of Resource after Effective Lifetime

*
  • M
Incorrect Synchronization

*
  • M
Expired Pointer Dereference

*
  • M
NULL Pointer Dereference

*
  • M
Out-of-bounds Read

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • H
Expired Pointer Dereference

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Out-of-bounds Write

*
  • M
Access of Uninitialized Pointer

*
  • H
Improper Update of Reference Count

*
  • M
Use of Uninitialized Resource

*
  • M
Out-of-bounds Read

*
  • M
Access of Resource Using Incompatible Type ('Type Confusion')

*
  • M
Improper Update of Reference Count

*
  • M
Out-of-bounds Write

*
  • H
Improper Preservation of Permissions

*
  • M
Expired Pointer Dereference

*
  • M
Access of Uninitialized Pointer

*
  • M
Out-of-bounds Read

*
  • M
Missing Initialization of Resource

*
  • M
Expired Pointer Dereference

*
  • M
Out-of-bounds Read

*
  • M
Use of Out-of-range Pointer Offset

*
  • H
Out-of-bounds Write

*
  • M
Expired Pointer Dereference

*
  • M
Expired Pointer Dereference

*
  • M
Missing Synchronization

*
  • M
Use of Uninitialized Resource

*
  • H
Expired Pointer Dereference

*
  • M
Out-of-bounds Write

*
  • M
Use of Uninitialized Resource

*
  • M
Out-of-bounds Read

*
  • M
Out-of-bounds Write

*
  • M
Incorrect Calculation of Buffer Size

*
  • L
Out-of-bounds Write

*
  • M
Improper Resource Locking

*
  • M
Expired Pointer Dereference

*
  • M
NULL Pointer Dereference

*
  • H
Time-of-check Time-of-use (TOCTOU)

*
  • H
Out-of-bounds Read

*
  • M
Out-of-bounds Write

*
  • M
Expired Pointer Dereference

*
  • M
Out-of-bounds Read

*
  • M
Improperly Implemented Security Check for Standard

*
  • M
Expired Pointer Dereference

*
  • M
Expired Pointer Dereference

*
  • M
Integer Overflow or Wraparound

*
  • M
Race Condition

*
  • M
Out-of-bounds Write

*
  • M
Use of Incorrect Operator

*
  • M
Expired Pointer Dereference

*
  • H
Information Exposure

*
  • M
Race Condition

*
  • M
Expired Pointer Dereference

*
  • M
Out-of-bounds Write

*
  • M
Incorrect Synchronization

*
  • M
CVE-2026-80989

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • M
Race Condition

*
  • M
Integer Overflow or Wraparound

*
  • M
Out-of-bounds Write

*
  • L
Missing Initialization of Resource

*
  • M
NULL Pointer Dereference

*
  • M
Expired Pointer Dereference

*
  • M
Race Condition

*
  • M
Incorrect Synchronization

*
  • M
Use of Uninitialized Resource

*
  • M
Unchecked Input for Loop Condition

*
  • M
Expired Pointer Dereference

*
  • M
Integer Underflow

*
  • M
Expired Pointer Dereference

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • M
NULL Pointer Dereference

*
  • M
Integer Underflow

*
  • M
Access of Uninitialized Pointer

*
  • M
Buffer Overflow

*
  • M
Out-of-bounds Read

*
  • H
Buffer Overflow

*
  • M
Missing Release of Resource after Effective Lifetime

*
  • H
Expired Pointer Dereference

*
  • M
Access of Uninitialized Pointer

*
  • M
Expired Pointer Dereference

*
  • H
Improper Handling of Length Parameter Inconsistency

*
  • M
Expired Pointer Dereference

*
  • M
Expired Pointer Dereference

*
  • M
Use of Blocking Code in Single-threaded, Non-blocking Context

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Expired Pointer Dereference

*
  • M
Insufficient Granularity of Access Control

*
  • H
Out-of-bounds Read

*
  • M
Out-of-bounds Write

*
  • M
NULL Pointer Dereference

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • H
Out-of-bounds Write

*
  • L
Out-of-bounds Read

*
  • M
Out-of-bounds Write

*
  • M
Improper Validation of Specified Index, Position, or Offset in Input

*
  • H
CVE-2026-89161

*
  • M
Out-of-bounds Read

*
  • L
Out-of-bounds Read

*
  • M
Untrusted Pointer Dereference

*
  • H
Expired Pointer Dereference

*
  • M
Expired Pointer Dereference

*
  • M
Buffer Overflow

*
  • M
Expired Pointer Dereference

*
  • H
Information Exposure

*
  • H
Authentication Bypass by Primary Weakness

*
  • H
Directory Traversal

*
  • M
Authentication Bypass

*
  • M
Integer Overflow or Wraparound

*
  • M
Stack-based Buffer Overflow

*
  • L
Out-of-bounds Read

*
  • M
Heap-based Buffer Overflow

*
  • M
Expired Pointer Dereference

*
  • M
Expired Pointer Dereference

*
  • M
Improper Cross-boundary Removal of Sensitive Data

*
  • M
Link Following

*
  • M
Reliance on Cookies without Validation and Integrity Checking

*
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • M
Information Exposure

*
  • M
Improper Certificate Validation

*
  • H
Buffer Overflow

*
  • M
Comparison Using Wrong Factors

*
  • M
Integer Coercion Error

*
  • M
NULL Pointer Dereference

*
  • L
Incorrect Calculation of Buffer Size

*
  • M
Out-of-bounds Write

*
  • H
Link Following

*
  • H
Out-of-bounds Write

*
  • M
NULL Pointer Dereference

*
  • M
Incorrect Resource Transfer Between Spheres

*
  • M
Information Exposure

*
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • L
Reachable Assertion

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • H
Not Failing Securely ('Failing Open')

*
  • H
Improper Certificate Validation

*
  • H
Out-of-bounds Write

*
  • M
Integer Overflow or Wraparound

*
  • M
Out-of-bounds Read

*
  • M
Use After Free

*
  • L
Integer Overflow or Wraparound

*
  • L
Incorrect Permission Assignment for Critical Resource

*
  • M
Uncontrolled Recursion

*
  • M
Improper Access Control

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • H
Incorrect Authorization

*
  • M
Use of Externally-Controlled Format String

*
  • H
Out-of-bounds Write

*
  • M
Expired Pointer Dereference

*
  • M
Buffer Overflow

*
  • H
OS Command Injection

*
  • H
OS Command Injection

*
  • M
Out-of-bounds Read

*
  • M
Use of Insufficiently Random Values

*
  • M
Resource Exhaustion

*
  • L
Use of Uninitialized Resource

*
  • M
Reachable Assertion

*
  • M
Buffer Overflow

*
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • M
Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)

*
  • M
Use After Free

*
  • M
Expired Pointer Dereference

*
  • M
CVE-2026-64535

*
  • H
HTTP Request Smuggling

*
  • H
Improper Handling of Length Parameter Inconsistency

*
  • M
Out-of-bounds Write

*
  • M
Out-of-bounds Read

*
  • M
Out-of-bounds Read

*
  • M
Comparison Using Wrong Factors

*
  • M
Missing Initialization of Resource

*
  • M
Improper Restriction of Excessive Authentication Attempts

*
  • M
Improper Restriction of Excessive Authentication Attempts

*
  • H
Expired Pointer Dereference

*
  • H
Improperly Implemented Security Check for Standard

*
  • M
HTTP Request Smuggling

*
  • M
Out-of-bounds Read

*
  • M
Out-of-bounds Read

*
  • L
NULL Pointer Dereference

*
  • M
NULL Pointer Dereference

*
  • M
Directory Traversal

*
  • L
Origin Validation Error

*
  • H
HTTP Request Smuggling

*
  • H
Improper Validation of Specified Type of Input

*
  • M
Out-of-bounds Read

*
  • M
Incorrect Privilege Assignment

*
  • M
Information Exposure

*
  • M
Arbitrary Argument Injection

*
  • M
Divide By Zero

*
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • L
Incorrect Calculation of Buffer Size

*
  • L
Incorrect Conversion between Numeric Types

*
  • M
Access of Resource Using Incompatible Type ('Type Confusion')

*
  • L
NULL Pointer Dereference

*
  • M
Reachable Assertion

*
  • M
Information Exposure

*
  • M
Improper Null Termination

*
  • M
CVE-2026-6368

*
  • M
Use of Externally-Controlled Format String

*
  • M
Buffer Access with Incorrect Length Value

*
  • M
NULL Pointer Dereference

*
  • M
Directory Traversal

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Out-of-bounds Write

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Incomplete Filtering of Special Elements

*
  • M
Directory Traversal

*
  • M
Double Free

*
  • M
Buffer Overflow

*
  • L
Information Exposure

*
  • H
Link Following

*
  • H
Link Following

*
  • H
Link Following

*
  • M
Integer Overflow or Wraparound

*
  • H
Link Following

*
  • M
Buffer Over-read

*
  • H
OS Command Injection

*
  • M
Incorrect Calculation of Buffer Size

*
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • M
Exposure of Data Element to Wrong Session

*
  • M
Link Following

*
  • L
Information Exposure

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Out-of-bounds Read

*
  • M
Use After Free

*
  • M
Integer Overflow or Wraparound

*
  • M
Out-of-bounds Write

*
  • H
Expired Pointer Dereference

*
  • H
Out-of-bounds Read

*
  • M
Integer Overflow or Wraparound

*
  • M
Out-of-bounds Read

*
  • M
Out-of-bounds Write

*
  • M
Directory Traversal

*
  • M
Incorrect Calculation of Buffer Size

*
  • M
Directory Traversal

*
  • L
Integer Overflow or Wraparound

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • L
Incorrect Implementation of Authentication Algorithm

*
  • L
Asymmetric Resource Consumption (Amplification)

*
  • M
Integer Overflow or Wraparound

*
  • H
Link Following

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • H
Time-of-check Time-of-use (TOCTOU)

*
  • H
Link Following

*
  • M
Expired Pointer Dereference

*
  • M
Link Following

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Link Following

*
  • L
Use After Free

*
  • M
Insufficient Verification of Data Authenticity

*
  • H
Time-of-check Time-of-use (TOCTOU)

*
  • L
Out-of-bounds Write

*
  • M
Integer Overflow or Wraparound

*
  • M
Improper Input Validation

*
  • L
Use of Less Trusted Source

*
  • M
Improper Update of Reference Count

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Out-of-bounds Write

*
  • M
Heap-based Buffer Overflow

*
  • H
Heap-based Buffer Overflow

*
  • H
Out-of-bounds Read

*
  • M
Integer Overflow or Wraparound

*
  • M
Uncontrolled Recursion

*
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • H
Improper Validation of Integrity Check Value

*
  • H
OS Command Injection

*
  • M
Out-of-bounds Read

*
  • M
Generation of Weak Initialization Vector (IV)

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Improper Restriction of Communication Channel to Intended Endpoints

*
  • M
Out-of-bounds Write

*
  • M
Out-of-bounds Read

*
  • M
Cleartext Transmission of Sensitive Information

*
  • M
Improper Validation of Array Index

*
  • M
Information Exposure

*
  • L
Out-of-bounds Read

*
  • H
Link Following

*
  • M
Improper Preservation of Permissions

*
  • L
Improper Verification of Cryptographic Signature

*
  • L
Improperly Implemented Security Check for Standard

*
  • H
Out-of-bounds Read

*
  • M
Acceptance of Extraneous Untrusted Data With Trusted Data

*
  • H
Expired Pointer Dereference

*
  • M
Off-by-one Error

*
  • M
Incorrect Execution-Assigned Permissions

*
  • L
NULL Pointer Dereference

*
  • M
OS Command Injection

*
  • L
NULL Pointer Dereference

*
  • H
Arbitrary Code Injection

*
  • M
Off-by-one Error

*
  • H
Access of Uninitialized Pointer

*
  • M
Integer Overflow or Wraparound

*
  • H
OS Command Injection

*
  • H
Excessive Platform Resource Consumption within a Loop

*
  • M
NULL Pointer Dereference

*
  • M
Out-of-bounds Read

*
  • L
Improper Validation of Integrity Check Value

*
  • M
Out-of-bounds Write

*
  • M
Acceptance of Extraneous Untrusted Data With Trusted Data

*
  • M
Expired Pointer Dereference

*
  • H
Write-what-where Condition

*
  • M
Improper Validation of Specified Type of Input

*
  • M
Resource Exhaustion

*
  • H
Out-of-bounds Read

*
  • L
Expired Pointer Dereference

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Improper Certificate Validation

*
  • L
Information Exposure

*
  • L
Buffer Access with Incorrect Length Value

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • H
Write-what-where Condition

*
  • C
Access of Resource Using Incompatible Type ('Type Confusion')

*
  • M
Improper Certificate Validation

*
  • M
Incorrect Bitwise Shift of Integer

*
  • M
Link Following

*
  • L
Inappropriate Encoding for Output Context

*
  • M
Improper Certificate Validation

*
  • L
Out-of-bounds Read

*
  • M
Incorrect Calculation of Buffer Size

*
  • L
Out-of-bounds Write

*
  • M
Improper Access Control

*
  • H
Predictable from Observable State

*
  • M
Integer Underflow

*
  • M
Link Following

*
  • H
Expired Pointer Dereference

*
  • L
NULL Pointer Dereference

*
  • M
NULL Pointer Dereference

*
  • M
Integer Overflow or Wraparound

*
  • M
Uncontrolled Recursion

*
  • M
Improper Input Validation

*
  • M
Expired Pointer Dereference

*
  • M
Directory Traversal

*
  • M
Authentication Bypass

*
  • M
Improper Validation of Syntactic Correctness of Input

*
  • M
Out-of-bounds Read

*
  • M
Integer Underflow

*
  • M
OS Command Injection

*
  • M
Improper Validation of Integrity Check Value

*
  • M
Reachable Assertion

*
  • H
Improper Null Termination

*
  • H
Improper Update of Reference Count

*
  • M
Execution with Unnecessary Privileges

*
  • M
Information Exposure

*
  • L
Improper Certificate Validation

*
  • M
Expired Pointer Dereference

*
  • M
Expired Pointer Dereference

*
  • M
Improper Validation of Consistency within Input

*
  • M
Authentication Bypass by Primary Weakness

*
  • H
Least Privilege Violation

*
  • L
Out-of-bounds Read

*
  • M
Integer Overflow or Wraparound

*
  • H
Undefined Behavior for Input to API

*
  • M
OS Command Injection

*
  • L
Improper Update of Reference Count

*
  • M
OS Command Injection

*
  • M
Improper Neutralization of Null Byte or NUL Character

*
  • M
Incorrect Calculation of Buffer Size

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Uncontrolled Recursion

*
  • L
Improper Validation of Integrity Check Value

*
  • H
Excessive Platform Resource Consumption within a Loop

*
  • H
Integer Overflow or Wraparound

*
  • M
External Control of File Name or Path

*
  • H
Improper Preservation of Permissions

*
  • L
Improper Verification of Cryptographic Signature

*
  • H
Access of Uninitialized Pointer

*
  • M
Improper Handling of Inconsistent Special Elements

*
  • H
Buffer Access with Incorrect Length Value

*
  • L
OS Command Injection

*
  • M
Buffer Overflow

*
  • H
OS Command Injection

*
  • M
Out-of-bounds Read

*
  • H
Improper Handling of Length Parameter Inconsistency

*
  • H
OS Command Injection

*
  • M
Buffer Underflow

*
  • M
Out-of-bounds Read

*
  • M
OS Command Injection

*
  • M
Reachable Assertion

*
  • M
Expired Pointer Dereference

*
  • H
Out-of-bounds Read

*
  • L
Incorrect Calculation of Multi-Byte String Length

*
  • M
Improper Handling of Length Parameter Inconsistency

*
  • L
Integer Overflow or Wraparound

*
  • H
Reachable Assertion

*
  • M
Improper Validation of Consistency within Input

*
  • M
Improper Handling of Insufficient Permissions or Privileges

*
  • M
Integer Underflow

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Improper Handling of Case Sensitivity

*
  • M
Memory Leak

*
  • M
Uncontrolled Recursion

*
  • L
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • M
Buffer Overflow

*
  • M
Out-of-bounds Read

*
  • H
Integer Underflow

*
  • M
Buffer Access with Incorrect Length Value

*
  • L
NULL Pointer Dereference

*
  • M
Incorrect Calculation of Buffer Size

*
  • M
Out-of-bounds Read

*
  • M
Missing Release of Resource after Effective Lifetime

*
  • M
Buffer Overflow

*
  • M
Out-of-bounds Read

*
  • L
Integer Underflow

*
  • M
Out-of-bounds Read

*
  • M
Improper Handling of Case Sensitivity

*
  • L
Misinterpretation of Input

*
  • L
Incorrect Behavior Order: Early Validation

*
  • M
Improper Privilege Management

*
  • M
Memory Leak

*
  • L
Missing Authentication for Critical Function

*
  • H
Link Following

*
  • H
Time-of-check Time-of-use (TOCTOU)

*
  • L
Out-of-bounds Write

*
  • H
Improper Validation of Consistency within Input

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Out-of-bounds Read

*
  • M
Link Following

*
  • M
Incorrect Implementation of Authentication Algorithm

*
  • M
Directory Traversal

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • L
Improper Null Termination

*
  • L
Improper Handling of Missing Special Element

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • L
Buffer Access with Incorrect Length Value

*
  • M
Use After Free

*
  • M
Permissive Regular Expression

*
  • L
CVE-2026-28387

*
  • H
CRLF Injection

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • L
Out-of-bounds Read

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Out-of-bounds Write

*
  • M
Reachable Assertion

*
  • M
Out-of-bounds Write

*
  • M
Buffer Overflow

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • H
Insufficient Verification of Data Authenticity

*
  • H
Insufficient Verification of Data Authenticity

*
  • M
Expired Pointer Dereference

*
  • L
Use of Uninitialized Resource

*
  • L
Resource Exhaustion

*
  • H
Improper Access Control

*
  • M
Double Free

*
  • L
Expired Pointer Dereference

*
  • L
Integer Overflow or Wraparound

*
  • M
Out-of-bounds Read

*
  • H
Insufficient Verification of Data Authenticity

*
  • H
Reachable Assertion

*
  • L
Reachable Assertion

*
  • H
Symlink Following

*
  • L
Improper Validation of Specified Type of Input

*
  • L
Access of Resource Using Incompatible Type ('Type Confusion')

*
  • M
Out-of-bounds Read

*
  • L
External Control of File Name or Path

*
  • M
Use After Free

*
  • L
Stack-based Buffer Overflow

*
  • L
Out-of-bounds Read

*
  • L
Integer Overflow or Wraparound

*
  • L
Incorrect Calculation of Buffer Size

*
  • M
Buffer Underflow

*
  • M
Uncontrolled Recursion

*
  • M
Information Exposure

*
  • M
Heap-based Buffer Overflow

*
  • L
NULL Pointer Dereference

*
  • L
Use of Uninitialized Resource

*
  • L
External Control of System or Configuration Setting

*
  • H
Execution with Unnecessary Privileges

*
  • H
OS Command Injection

*
  • M
Reachable Assertion

*
  • L
Unchecked Input for Loop Condition

*
  • M
Improper Validation of Specified Type of Input

*
  • M
Out-of-bounds Write

*
  • M
Directory Traversal

*
  • L
Uncontrolled Recursion

*
  • M
Buffer Overflow

*
  • H
Insecure Default Initialization of Resource

*
  • H
Resource Exhaustion

*
  • L
Inefficient Regular Expression Complexity

*
  • M
Insufficient Verification of Data Authenticity

*
  • M
Directory Traversal

*
  • L
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • L
Stack-based Buffer Overflow

*
  • L
Memory Leak

*
  • M
Out-of-bounds Write

*
  • L
Integer Overflow or Wraparound

*
  • M
Uncontrolled Recursion

*
  • M
Use of Uninitialized Resource

*
  • H
Integer Underflow

*
  • L
Out-of-bounds Write

*
  • L
Unchecked Input for Loop Condition

*
  • M
Release of Invalid Pointer or Reference

*
  • H
Acceptance of Extraneous Untrusted Data With Trusted Data

*
  • H
Out-of-bounds Read

*
  • H
Out-of-bounds Write

*
  • M
Out-of-bounds Write

*
  • H
Out-of-bounds Read

*
  • M
Reachable Assertion

*
  • M
Improper Certificate Validation

*
  • L
NULL Pointer Dereference

*
  • L
Improper Validation of Specified Index, Position, or Offset in Input

*
  • M
Incorrect Calculation of Buffer Size

*
  • L
Access of Resource Using Incompatible Type ('Type Confusion')

*
  • M
NULL Pointer Dereference

*
  • H
Numeric Truncation Error

*
  • M
Integer Overflow or Wraparound

*
  • M
Double Free

*
  • M
Buffer Overflow

*
  • L
Out-of-bounds Read

*
  • M
Unchecked Input for Loop Condition

*
  • H
Use After Free

*
  • M
Improper Certificate Validation

*
  • H
Resource Exhaustion

*
  • H
CRLF Injection

*
  • M
Out-of-Bounds

*
  • M
Out-of-bounds Read

*
  • L
Stack-based Buffer Overflow

*
  • M
Improper Check for Unusual or Exceptional Conditions

*
  • M
Missing Release of Resource after Effective Lifetime

*
  • M
Out-of-bounds Write

*
  • M
Improper Neutralization of Null Byte or NUL Character

*
  • M
Out-of-bounds Read

*
  • M
Directory Traversal

*
  • M
Out-of-bounds Read

*
  • M
Expired Pointer Dereference

*
  • M
Double Free

*
  • M
Directory Traversal

*
  • M
Processor Optimization Removal or Modification of Security-critical Code

*
  • M
NULL Pointer Dereference

*
  • M
Out-of-Bounds

*
  • H
Out-of-bounds Read

*
  • M
Buffer Overflow

*
  • L
Out-of-bounds Write

*
  • H
Improper Verification of Cryptographic Signature

*
  • M
OS Command Injection

*
  • M
Resource Exhaustion

*
  • L
Out-of-bounds Read

*
  • M
Use After Free

*
  • M
Insufficient Granularity of Access Control

*
  • L
Access of Uninitialized Pointer

*
  • M
Integer Underflow

*
  • L
Stack-based Buffer Overflow

*
  • L
Missing Required Cryptographic Step

*
  • H
Expired Pointer Dereference

*
  • M
CVE-2025-61662

*
  • L
Algorithmic Complexity

*
  • M
Improper Use of Validation Framework

*
  • M
Failure to Sanitize Special Element

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • H
Out-of-bounds Read

*
  • M
Unrestricted Externally Accessible Lock

*
  • M
Reachable Assertion

*
  • M
Buffer Overflow

*
  • M
Expired Pointer Dereference

*
  • M
Reachable Assertion

*
  • L
NULL Pointer Dereference

*
  • M
Directory Traversal

*
  • L
Out-of-bounds Read

*
  • M
Expired Pointer Dereference

*
  • H
Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)

*
  • M
Incorrect Calculation of Buffer Size

*
  • L
Out-of-bounds Read

*
  • M
Integer Overflow or Wraparound

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • L
Improper Validation of Specified Quantity in Input

*
  • M
Algorithmic Complexity

*
  • L
Improper Certificate Validation

*
  • M
NULL Pointer Dereference

*
  • M
Return of Wrong Status Code

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • M
Expired Pointer Dereference

*
  • M
NULL Pointer Dereference

*
  • M
Integer Overflow or Wraparound

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • H
Improper Authentication

*
  • L
Heap-based Buffer Overflow

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • L
Unchecked Return Value

*
  • L
Out-of-bounds Read

*
  • L
Use After Free

*
  • L
Access of Resource Using Incompatible Type ('Type Confusion')

*
  • M
Stack-based Buffer Overflow

*
  • M
Out-of-bounds Read

*
  • L
Out-of-bounds Read

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • M
Out-of-bounds Write

*
  • H
Directory Traversal

*
  • M
NULL Pointer Dereference

*
  • H
Resource Exhaustion

*
  • H
Buffer Overflow

*
  • M
Reversible One-Way Hash

*
  • M
Heap-based Buffer Overflow

*
  • L
NULL Pointer Dereference

*
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • M
Incorrect Privilege Assignment

*
  • M
Arbitrary Argument Injection

*
  • M
Out-of-bounds Read

*
  • M
Buffer Over-read

*
  • M
Untrusted Search Path

*
  • H
Stack-based Buffer Overflow

*
  • M
Out-of-bounds Write

*
  • L
Buffer Access with Incorrect Length Value

*
  • M
Return of Wrong Status Code

*
  • M
Missing Authentication for Critical Function

*
  • M
Uncontrolled Search Path Element

*
  • H
Improper Input Validation

*
  • M
Use After Free

*
  • L
Improper Check for Unusual or Exceptional Conditions

*
  • M
Expected Behavior Violation

*
  • M
Directory Traversal

*
  • H
Out-of-bounds Write

*
  • M
Incorrect Calculation

*
  • L
Use of Uninitialized Resource

*
  • M
Access of Resource Using Incompatible Type ('Type Confusion')

*
  • M
Directory Traversal

*
  • L
Information Exposure

*
  • M
Integer Overflow or Wraparound

*
  • L
NULL Pointer Dereference

*
  • H
Out-of-bounds Read

*
  • M
Improper Certificate Validation

*
  • L
Buffer Overflow

*
  • L
Arbitrary Argument Injection

*
  • L
Authentication Bypass by Primary Weakness

*
  • L
Improperly Implemented Security Check for Standard

*
  • M
Improper Synchronization

*
  • L
Out-of-bounds Read

*
  • L
Out-of-bounds Write

*
  • M
Out-of-bounds Write

*
  • H
Race Condition

*
  • M
Information Exposure

*
  • H
Incorrect Authorization

*
  • M
Out-of-bounds Read

*
  • M
Expired Pointer Dereference

*
  • M
Out-of-bounds Read

*
  • H
Use After Free

*
  • M
Incorrect Execution-Assigned Permissions

*
  • M
Use of Out-of-range Pointer Offset

*
  • H
Symlink Following

*
  • H
Incorrect Privilege Assignment

*
  • H
Use After Free

*
  • M
Stack-based Buffer Overflow

*
  • M
Information Exposure

*
  • M
Use of Uninitialized Resource

*
  • H
Resource Exhaustion

*
  • L
Out-of-bounds Read

*
  • L
Out-of-bounds Write

*
  • L
Out-of-Bounds

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • H
Out-of-bounds Write

*
  • H
NULL Pointer Dereference

*
  • L
NULL Pointer Dereference

*
  • M
Improper Handling of Parameters

*
  • H
Resource Exhaustion

*
  • H
Improper Validation of Syntactic Correctness of Input

*
  • L
NULL Pointer Dereference

*
  • M
Invokable Control Element in Multi-Thread Context with non-Final Static Storable or Member Element

*
  • H
Reachable Assertion

*
  • L
NULL Pointer Dereference

*
  • H
Buffer Overflow

*
  • H
Out-of-bounds Write

*
  • M
Out-of-bounds Write

*
  • M
Out-of-bounds Read

*
  • M
Improper Validation of Specified Quantity in Input

*
  • H
Improper Privilege Management

*
  • L
Out-of-bounds Read

*
  • M
Acceptance of Extraneous Untrusted Data With Trusted Data

*
  • H
Resource Exhaustion

*
  • M
Insufficiently Protected Credentials

*
  • M
Use After Free

*
  • M
CVE-2024-26602

*
  • M
Integer Overflow or Wraparound

*
  • H
Improper Authentication

*
  • H
Use of Uninitialized Resource

*
  • M
Buffer Overflow

*
  • M
Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion')

*
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • H
Out-of-bounds Read

*
  • H
Integer Overflow or Wraparound

*
  • H
Out-of-bounds Write

*
  • H
Out-of-bounds Write

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • M
Expired Pointer Dereference

*
  • M
NULL Pointer Dereference

*
  • M
HTTP Request Smuggling

*
  • M
NULL Pointer Dereference

*
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

*