Nginx UI is a web user interface for the Nginx web server. Prior to version 2.3.4, the nginx-ui backup restore mechanism
Issue Summary: Cryptographic Message Services (CMS) processing fails to perform sufficient input validation on the ciphe
Improper Validation of Integrity Check Value vulnerability in Apache APISIX. The jwe-decrypt plugin under default confi
Kraken agents fail to verify peer-to-peer downloaded blobs against their requested SHA-256 digest before committing to t
A vulnerability was identified in Linux Foundation Magma 1.9.0. This affects an unknown function of the component Securi
Striae is a firearms examiner's comparison companion. A high-severity integrity bypass vulnerability existed in Striae's
xmlseclibs is a library written in PHP for working with XML Encryption and Signatures. Prior to 3.1.5, XML nodes encrypt
xml-security is a library that implements XML signatures and encryption. Prior to versions 2.3.1 and 1.13.9, XML nodes e
In wolfSSL's EVP layer, the ChaCha20-Poly1305 AEAD decryption path in wolfSSL_EVP_CipherFinal (and related EVP cipher fi
xrdp is an open source RDP server. In versions through 0.10.5, xrdp does not implement verification for the Message Auth
Cryptomator encrypts data being stored on cloud infrastructure. Prior to version 1.19.1, an integrity check vulnerabilit
Cryptomator for Android offers multi-platform transparent client-side encryption for files in the cloud. Prior to versio
Cryptomator for IOS offers multi-platform transparent client-side encryption for files in the cloud. Prior to version 2.
httpsig-hyper is a hyper extension for http message signatures. An issue was discovered in `httpsig-hyper` prior to vers
Authlib is a Python library which builds OAuth and OpenID Connect servers. Prior to version 1.6.9, a library-level vulne
SP1 is a zero‑knowledge virtual machine that proves the correct execution of programs compiled for the RISC-V architectu
wc_Blake2bHmacFinal and wc_Blake2sHmacFinal discard the message when the key length exceeds the block size, producing a
In Bouncy Castle for Java before 1.85, CMS AuthenticatedData content not bound to MAC when authAttrs present. This issue
An issue in Vanderbilt Industries, Acre Security SPC5300.000 Main Board v.3.14.1 allows a physically proximate attacker
Issue Summary: The PKCS#12 file processing fails to perform sufficient input validation for files that use Password-Base
Missing integrity verification in the Triton inference handler in Amazon SageMaker Python SDK v2 before v2.257.2 and v3
nimiq/core-rs-albatross is a Rust implementation of the Nimiq Proof-of-Stake protocol based on the Albatross consensus a
pnpm is a package manager. Prior to 10.34.0 and 11.4.0, pnpm's tarball extraction worker skips integrity verification wh
cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Prior to 46.0.5,
Mastodon is a free, open-source social network server based on ActivityPub. Prior to 4.5.10, 4.4.17, and 4.3.23, Mastodo
Missing validation of the outer content_type byte on TLS 1.3 encrypted records in s2n-tls allows an active man-in-the-mi
Insufficient Verification of Data Authenticity vulnerability in hexpm hex (Hex.RemoteConverger module) allows dependency
A padding oracle exists in wolfSSL's PKCS7 CBC decryption that could allow an attacker to recover plaintext through repe
Mastodon is a free, open-source social network server based on ActivityPub. From 4.3.0 until 4.5.11 and 4.4.18, Mastodon
In NLnet Labs Unbound up to and including version 1.25.1, when the validator builds the canonical RDATA form for an RRSI
go-git is a highly extensible git implementation library written in pure Go. Prior to 5.16.5, a vulnerability was discov
SzafirHost downloads necessary files in the context of the initiating web page. When called, SzafirHost updates its dyna
A security issue exists within 1769 CompactLogix controllers due to the missing validation of sequence numbers and sourc
A denial-of-service security issue exists across all the 1756-EN2, EN3, and ENBT communication module due to improper va
An Improper Validation of Integrity Check Value and Improper Certificate Validation in certain ASUS router models allows
In Bouncy Castle for Java before 1.85, CCM-family modes write plaintext to caller buffer before tag check. This issue al
In Bouncy Castle for Java before 1.85, CMS AuthEnvelopedData fails to enforce tag-length on decryption. This issue also
In Bouncy Castle for Java before 1.85, KCCMBlockCipher MAC does not bind nonce when AAD is absent (cross-nonce AEAD forg
In Bouncy Castle for Java before 1.85, IESEngine stream-mode MAC forgery via length-dependent KDF split. This issue also
In Bouncy Castle for Java before 1.85, OpenPGP AEAD decryption skips final tag on chunk-aligned data. This issue also af
Issue summary: ChaCha20-Poly1305 and AES-OCB decryption with an empty ciphertext can report success without verifying th
Frequently Asked Questions
What is CWE-354?
CWE-354 (CWE-354) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-354?
There are 41 CVE records associated with CWE-354 in our database. Of these, 4 are critical severity, 18 are high severity, and 9 are medium severity.
How can I protect against CWE-354 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-354 using AI-powered security agents.
Detect CWE-354 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-354 vulnerabilities across your infrastructure.
Get Started