Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CWE-264

MITRE ↗

CWE-264

3
HIGH
15
MEDIUM
3
LOW
21 CVEs
8.8
CVE-2026-20046

A vulnerability in task group assignment for a specific CLI command in Cisco IOS XR Software could allow an authenticate

7.3
CVE-2026-6224

A security flaw has been discovered in nocobase plugin-workflow-javascript up to 2.0.23. This issue affects the function

7.3
CVE-2026-9368

A vulnerability was identified in NousResearch hermes-agent up to 2026.4.16. This impacts the function execute_code of t

6.6
CVE-2026-58555

Permission bypass vulnerability in the card module. Impact: Successful exploitation of this vulnerability may affect ava

6.3
CVE-2026-24923

Permission control vulnerability in the HDC module. Impact: Successful exploitation of this vulnerability may affect ser

6.3
CVE-2026-6117

A vulnerability was found in AstrBotDevs AstrBot up to 4.22.1. This issue affects the function install_plugin_upload of

6.3
CVE-2026-14784

A vulnerability was identified in vxcontrol PentAGI up to 2.1.0. This affects an unknown function of the file backend/pk

6.2
CVE-2026-24920

Permission control vulnerability in the AMS module. Impact: Successful exploitation of this vulnerability may affect ava

6.2
CVE-2026-49304

Permission control vulnerability in the device key management module. Impact: Successful exploitation of this vulnerabil

6.1
CVE-2026-24924

Vulnerability of improper permission control in the print module. Impact: Successful exploitation of this vulnerability

5.9
CVE-2026-24931

Vulnerability of improper criterion security check in the card module. Impact: Successful exploitation of this vulnerabi

5.7
CVE-2025-68967

Vulnerability of improper permission control in the print module. Impact: Successful exploitation of this vulnerability

5.6
CVE-2026-6878

A vulnerability was identified in ByteDance verl up to 0.7.0. Affected is the function math_equal of the file prime_math

5.6
CVE-2026-18593

A weakness has been identified in vxcontrol PentAGI up to 2.1.0. This affects an unknown part of the file backend/pkg/te

5.5
CVE-2026-49308

Permission control vulnerability in the clipboard module. Impact: Successful exploitation of this vulnerability may affe

5.1
CVE-2026-58556

Permission control vulnerability in the Bluetooth module. Impact: Successful exploitation of this vulnerability may affe

5.1
CVE-2026-49303

Permission control vulnerability in the notification module. Impact: Successful exploitation of this vulnerability may a

4.0
CVE-2026-28541

Permission control vulnerability in the cellular_data module. Impact: Successful exploitation of this vulnerability may

3.6
CVE-2026-41962

Permission control vulnerability in the app management and control module. Impact: Successful exploitation of this vulne

3.6
CVE-2026-41974

Permission control vulnerability in service notifications. Impact: Successful exploitation of this vulnerability may aff

3.3
CVE-2025-66319

Permission control vulnerability in the resource scheduling module. Impact: Successful exploitation of this vulnerabilit

Frequently Asked Questions

What is CWE-264?

CWE-264 (CWE-264) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-264?

There are 21 CVE records associated with CWE-264 in our database. Of these, 0 are critical severity, 3 are high severity, and 15 are medium severity.

How can I protect against CWE-264 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-264 using AI-powered security agents.

Detect CWE-264 Vulnerabilities

CyberStrike's AI agents automatically detect cwe-264 vulnerabilities across your infrastructure.

Get Started