Skip to main content

CWE archive

CWE-298 CVEs

Programmatic archive

7 CVEs tagged with CWE-2982 Critical, 1 High, 4 Medium, 0 Low, 0 Unrated.

CVE-2025-67108

Published Dec 23, 2025

eProsima Fast-DDS v3.3 was discovered to contain improper validation for ticket revocation, resulting in insecure communications and connections.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2025-61736

Published Dec 17, 2025

Successful exploitation of this vulnerability could result in the product failing to re-establish communication once the certificate expires.

CVSS 7.1 · High

CVE-2025-59036

Published Sep 9, 2025

Infrahub offers a central hub to manage data, templates, and playbooks. Prior to versiond 1.3.9 and 1.4.5, a bug in the authentication logic will cause API tokens that were delete…

CVSS 5.5 · Medium

CVE-2025-4384

Published May 6, 2025

The MQTT add-on of PcVue fails to verify that a remote device’s certificate has not already expired or has not yet become valid. This allows malicious devices to present certifica…

CVSS 6.0 · Medium

CVE-2023-42446

Published Sep 18, 2023

Pow is a authentication and user management solution for Phoenix and Plug-based apps. Starting in version 1.0.14 and prior to version 1.0.34, use of `Pow.Store.Backend.MnesiaCache…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-7 of 7 CVEsPage 1 of 1