Skip to main content

CWE archive

CWE-237 CVEs

Programmatic archive

4 CVEs tagged with CWE-2371 Critical, 1 High, 1 Medium, 1 Low, 0 Unrated.

CVE-2026-45411

Published May 13, 2026

vm2 is an open source vm/sandbox for Node.js. Prior to 3.11.3, it is possible to catch a host exception using the yield* expression inside an async generator. When the generator i…

CVSS 9.8 · Critical
evidence mentions
4
Buzz score
29.1
Vendor/product tagsBeta · best-effort

CVE-2025-24336

Published Jan 31, 2025

SXF Common Library handles input data improperly. If a product using the library reads a crafted file, the product may be crashed.

CVSS 3.3 · Low
evidence mentions
2
Buzz score
21.0

CVE-2023-6110

Published Nov 17, 2024

A flaw was found in OpenStack. When a user tries to delete a non-existing access rule in it's scope, it deletes other existing access rules which are not associated with any appli…

CVSS 5.5 · Medium

CVE-2023-34429

Published Jul 19, 2023

Weintek Weincloud v0.13.6 could allow an attacker to cause a denial-of-service condition for Weincloud by sending a forged JWT token.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1