Skip to main content

CWE archive

CWE-1389 CVEs

Programmatic archive

5 CVEs tagged with CWE-13890 Critical, 1 High, 3 Medium, 1 Low, 0 Unrated.

CVE-2026-47160

Published Jul 15, 2026

Vaultwarden is a Bitwarden-compatible server written in Rust. Prior to 1.36.0, Vaultwarden's /icons/{domain}/icon.png endpoint used src/http_client.rs checks including should_bloc…

CVSS 5.8 · Medium
evidence mentions
4
Buzz score
21.1

CVE-2026-50131

Published Jun 10, 2026

Fedify is a TypeScript library for building federated server apps powered by ActivityPub. Fedify previously addressed SSRF/internal network access in GHSA-p9cg-vqcc-grcx by adding…

CVSS 8.6 · High
evidence mentions
1
Buzz score
16.5
Public PoC observed

CVE-2018-25242

Published Apr 4, 2026

One Search 1.1.0.0 contains a denial of service vulnerability that allows local attackers to crash the application by submitting excessively long input strings to the search funct…

CVSS 6.9 · Medium
evidence mentions
3
Buzz score
25.4

CVE-2024-6284

Published Jul 3, 2024

In https://github.com/google/nftables  IP addresses were encoded in the wrong byte order, resulting in an nftables configuration which does not work as intended (might block or n…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1