Scriban before 7.0.0 fails to clear the CachedTemplates dictionary when TemplateContext.Reset() is called, allowing cach
In certain Arm CPUs, a CPP RCTX instruction executed on one Processing Element (PE) may inhibit TLB invalidation when a
Lyric Video Creator 2.1 contains a denial of service vulnerability that allows attackers to crash the application by pro
libheif is a HEIF and AVIF file format decoder and encoder. Prior to version 1.22.0, two bugs in libheif chain to leak p
In Eclipse Jetty, the class JASPIAuthenticator initiates the authentication checks, which set two ThreadLocal variable.
SD-330AC and AMC Manager provided by silex technology, Inc. contain an issue with a sensitive information in resource no
In OpenStack Ironic before 38.0.1, the autodetect deploy interface may fail to run cleaning immediately after enrollment
CEWE PHOTO IMPORTER 6.4.3 contains a denial of service vulnerability that allows local attackers to crash the applicatio
PCHelpWareV2 1.0.0.5 contains a denial of service vulnerability that allows local attackers to crash the application by
MediaMonkey 4.1.23 contains a denial of service vulnerability that allows local attackers to crash the application by op
Ease Audio Converter 5.30 contains a denial of service vulnerability in the Audio Cutter function that allows local atta
WinAVI iPod/3GP/MP4/PSP Converter 4.4.2 contains a denial of service vulnerability that allows local attackers to crash
IBM DB2 Merge Backup for Linux, UNIX and Windows 12.1.0.0 could allow an attacker to access sensitive information in mem
AnyBurn 4.3 x86 contains a denial of service vulnerability that allows local attackers to crash the application by suppl
pam_usb provides hardware authentication for Linux using ordinary removable media. In versions 0.9.1 and below, the xfre
The Semtech LR11xx LoRa transceivers running early versions of firmware contains an information disclosure vulnerability
Allocation of Resources Without Limits and Throttling and Sensitive Information in Resource Not Removed Before Reuse in
Frequently Asked Questions
What is CWE-226?
CWE-226 (CWE-226) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-226?
There are 18 CVE records associated with CWE-226 in our database. Of these, 0 are critical severity, 5 are high severity, and 10 are medium severity.
How can I protect against CWE-226 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-226 using AI-powered security agents.
Detect CWE-226 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-226 vulnerabilities across your infrastructure.
Get Started