Skip to main content

CWE archive

CWE-394 CVEs

Programmatic archive

14 CVEs tagged with CWE-3942 Critical, 6 High, 5 Medium, 1 Low, 0 Unrated.

CVE-2025-48510

Published Nov 24, 2025

Improper return value within AMD uProf can allow a local attacker to bypass KSLR, potentially resulting in loss of confidentiality or availability.

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2025-22854

Published Jun 15, 2025

Improper handling of non-200 http responses in the PingFederate Google Adapter leads to thread exhaustion under normal usage conditions.

CVSS 6.9 · Medium
evidence mentions
2
Buzz score
17.5

CVE-2025-23013

Published Jan 15, 2025

In Yubico pam-u2f before 1.3.1, local privilege escalation can sometimes occur. This product implements a Pluggable Authentication Module (PAM) that can be deployed to support aut…

CVSS 7.3 · High
evidence mentions
7
Buzz score
35.8

CVE-2024-1713

Published Mar 14, 2024

A user who can create objects in a database with plv8 3.2.1 installed is able to cause deferred triggers to execute as the Superuser during autovacuum.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2023-48429

Published Dec 12, 2023

A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 2). The Web UI of affected devices does not check the length of parameters in certain conditions.…

CVSS 2.7 · Low
Vendor/product tagsBeta · best-effort

CVE-2023-28975

Published Apr 17, 2023

An Unexpected Status Code or Return Value vulnerability in the kernel of Juniper Networks Junos OS allows an unauthenticated attacker with physical access to the device to cause a…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-20924

Published Nov 23, 2020

A user authorized to perform database queries may trigger denial of service by issuing specially crafted queries which trigger an invariant in the IndexBoundsBuilder. This issue a…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-20802

Published Nov 23, 2020

A user authorized to perform database queries may trigger denial of service by issuing specially crafted queries with compound indexes affecting QueryPlanner. This issue affects M…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-14 of 14 CVEsPage 1 of 1