CWE-237
4 CVEs • Abstraction: Base
Improper Handling of Structural Elements
The product does not handle or incorrectly handles inputs that are related to complex structures.
CVEs (4)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
vm2 is an open source vm/sandbox for Node.js. Prior to 3.11.3, it is possible to catch a host exception using the yield* expression inside an async generator. When the generator is closed using the return function, the v...Show more |
SXF Common Library handles input data improperly. If a product using the library reads a crafted file, the product may be crashed. |
A flaw was found in OpenStack. When a user tries to delete a non-existing access rule in it's scope, it deletes other existing access rules which are not associated with any application credentials. |
Weintek Weincloud v0.13.6
could allow an attacker to cause a denial-of-service condition for Weincloud by sending a forged JWT token.
|