Skip to main content

CWE archive

CWE-413 CVEs

Programmatic archive

15 CVEs tagged with CWE-4131 Critical, 8 High, 6 Medium, 0 Low, 0 Unrated.

CVE-2026-44608

Published May 20, 2026

NLnet Labs Unbound 1.14.0 up to and including version 1.25.0 has a locking inconsistency vulnerability that when certain conditions are met (multi-threaded, RPZ XFR reload, RPZ zo…

CVSS 4.6 · Medium
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2026-32748

Published Mar 26, 2026

Squid is a caching proxy for the Web. Prior to version 7.5, due to premature release of resource during expected lifetime and heap Use-After-Free bugs, Squid is vulnerable to Deni…

CVSS 8.7 · High
evidence mentions
18
Buzz score
43.9
Vendor/product tagsBeta · best-effort

CVE-2025-69198

Published Jan 19, 2026

Pterodactyl is a free, open-source game server management panel. Pterodactyl implements rate limits that are applied to the total number of resources (e.g. databases, port allocat…

CVSS 6.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-0003

Published Nov 24, 2025

Inadequate lock protection within Xilinx Run time may allow a local attacker to trigger a Use-After-Free condition potentially resulting in loss of confidentiality or availability

CVSS 7.3 · High
evidence mentions
1
Buzz score
11.9

CVE-2025-3450

Published Oct 7, 2025

An Improper Resource Locking vulnerability in the SDM component of B&R Automation Runtime versions before 6.3 and before Q4.93 may allow an unauthenticated network-based attacker…

CVSS 9.3 · Critical

CVE-2023-32253

Published Aug 2, 2025

A flaw was found in the Linux kernel's ksmbd component. A deadlock is triggered by sending multiple concurrent session setup requests, possibly leading to a denial of service.

CVSS 5.9 · Medium

CVE-2022-49737

Published Mar 16, 2025

In X.Org X server 20.11 through 21.1.16, when a client application uses easystroke for mouse gestures, the main thread modifies various data structures used by the input thread wi…

CVSS 7.7 · High

CVE-2023-2430

Published Jul 23, 2023

A vulnerability was found due to missing lock for IOPOLL flaw in io_cqring_event_overflow() in io_uring.c in Linux Kernel. This flaw allows a local attacker with user privilege to…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-28649

Published May 22, 2023

The Hub in the Snap One OvrC cloud platform is a device used to centralize and manage nested devices connected to it. A vulnerability exists in which an attacker could impersonate…

CVSS 8.6 · High
Vendor/product tagsBeta · best-effort

CVE-2023-2269

Published Apr 25, 2023

A denial of service problem was found, due to a possible recursive locking scenario, resulting in a deadlock in table_clear in drivers/md/dm-ioctl.c in the Linux Kernel Device Map…

CVSS 4.4 · Medium

CVE-2019-8998

Published Jul 12, 2019

An information disclosure vulnerability leading to a potential local escalation of privilege in the procfs service (the /proc filesystem) of BlackBerry QNX Software Development Pl…

CVSS 7.8 · High
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort
Showing 1-15 of 15 CVEsPage 1 of 1