Skip to main content

CWE archive

CWE-390 CVEs

Programmatic archive

19 CVEs tagged with CWE-3903 Critical, 4 High, 11 Medium, 1 Low, 0 Unrated.

CVE-2026-59845

Published Jul 21, 2026

A flaw was found in libssh. When ProxyCommand is used, an unchecked fork() failure can be stored as process ID -1; during cleanup, signals may then be sent across the caller's acc…

CVSS 5.3 · Medium
evidence mentions
3
Buzz score
23.9

CVE-2026-53434

Published Jun 29, 2026

Detection of Error Condition Without Action vulnerability in Apache Tomcat when configuring CRLs for a FFM based connector. This issue affects Apache Tomcat: from 11.0.0-M1 throu…

CVSS 9.1 · Critical
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2026-52989

Published Jun 24, 2026

In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: propagate nvmet_tcp_build_pdu_iovec() errors to its callers Currently, when nvmet_tcp_build_pdu_io…

CVSS 9.8 · Critical
evidence mentions
9
Buzz score
39.5
Vendor/product tagsBeta · best-effort

CVE-2026-48792

Published May 27, 2026

pam_usb provides hardware authentication for Linux using ordinary removable media. Prior to 0.9.1, src/evdev.c silently ignores EACCES errors when opening /dev/input/event* nodes,…

CVSS 4.4 · Medium
evidence mentions
3
Buzz score
18.9

CVE-2026-44310

Published May 15, 2026

Gitsign is a keyless Sigstore to signing tool for Git commits with your a GitHub / OIDC identity. From 0.4.0 to before 0.15.0, CertVerifier.Verify() in pkg/git/verifier.go uncondi…

CVSS 5.4 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2025-0029

Published Feb 10, 2026

Improper handling of error condition during host-induced faults can allow a local high-privileged attack to selectively drop guest DMA writes, potentially resulting in a loss of S…

CVSS 1.8 · Low
evidence mentions
1
Buzz score
11.9

CVE-2025-46367

Published Nov 13, 2025

Dell Alienware Command Center 6.x (AWCC), versions prior to 6.10.15.0, contain a Detection of Error Condition Without Action vulnerability. A low privileged attacker with local ac…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2025-25204

Published Feb 14, 2025

`gh` is GitHub’s official command line tool. Starting in version 2.49.0 and prior to version 2.67.0, under certain conditions, a bug in GitHub's Artifact Attestation cli tool `gh…

CVSS 6.3 · Medium

CVE-2024-12086

Published Jan 14, 2025

A flaw was found in rsync. It could allow a server to enumerate the contents of an arbitrary file from the client's machine. This issue occurs when files are being copied from a c…

CVSS 6.1 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2024-11942

Published Dec 5, 2024

A vulnerability in Drupal Core allows File Manipulation.This issue affects Drupal Core: from 10.0.0 before 10.2.10.

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-30255

Published Apr 4, 2024

Envoy is a cloud-native, open source edge and service proxy. The HTTP/2 protocol stack in Envoy versions prior to 1.29.3, 1.28.2, 1.27.4, and 1.26.8 are vulnerable to CPU exhausti…

CVSS 5.3 · Medium
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2024-27919

Published Apr 4, 2024

Envoy is a cloud-native, open-source edge and service proxy. In versions 1.29.0 and 1.29.1, theEnvoy HTTP/2 protocol stack is vulnerable to the flood of CONTINUATION frames. Envoy…

CVSS 7.5 · High
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2024-20316

Published Mar 27, 2024

A vulnerability in the data model interface (DMI) services of Cisco IOS XE Software could allow an unauthenticated, remote attacker to access resources that should have been prote…

CVSS 5.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-7485

Published May 12, 2017

In PostgreSQL 9.3.x before 9.3.17, 9.4.x before 9.4.12, 9.5.x before 9.5.7, and 9.6.x before 9.6.3, it was found that the PGREQUIRESSL environment variable was no longer enforcing…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-19 of 19 CVEsPage 1 of 1