Skip to main content

CWE archive

CWE-179 CVEs

Programmatic archive

7 CVEs tagged with CWE-1790 Critical, 5 High, 1 Medium, 1 Low, 0 Unrated.

CVE-2026-49414

Published Jun 27, 2026

The ELF image activator cleared per-process ASLR preference flags for setuid binaries after the code that computes the PIE base address, rather than before. As a result, a user-r…

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-32305

Published Mar 20, 2026

Traefik is an HTTP reverse proxy and load balancer. Versions 2.11.40 and below, 3.0.0-beta1 through 3.6.11, and 3.7.0-ea.1 are vulnerable to mTLS bypass through the TLS SNI pre-sn…

CVSS 7.8 · High
evidence mentions
9
Buzz score
36.0
Vendor/product tagsBeta · best-effort

CVE-2026-25223

Published Feb 3, 2026

Fastify is a fast and low overhead web framework, for Node.js. Prior to version 5.7.2, a validation bypass vulnerability exists in Fastify where request body validation schemas sp…

CVSS 7.5 · High
evidence mentions
12
Buzz score
45.1
Vendor/product tagsBeta · best-effort

CVE-2025-4759

Published May 16, 2025

Versions of the package lockfile-lint-api before 5.9.2 are vulnerable to Incorrect Behavior Order: Early Validation via the resolved attribute of the package URL validation which…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-7 of 7 CVEsPage 1 of 1