OpenClaw before 2026.2.17 creates session transcript JSONL files with overly broad default permissions, allowing local u
In mlflow/mlflow versions prior to 3.11.0, the `get_or_create_nfs_tmp_dir()` function in `mlflow/utils/file_utils.py` cr
Dell SupportAssist OS Recovery, versions prior to 5.5.15.1, contain a Creation of Temporary File With Insecure Permissio
A vulnerability was detected in Enter Software Iperius Backup up to 8.7.3. Affected is an unknown function of the file C
Dell SupportAssist OS Recovery, versions prior to 5.5.15.1, contain a Creation of Temporary File With Insecure Permissio
Use of insecure directory in Spring Data Geode snapshot import extracts archives into predictable, permissive directorie
osquery is a SQL powered operating system instrumentation, monitoring, and analytics framework. Prior to 5.23.1, an unpr
Frequently Asked Questions
What is CWE-378?
CWE-378 (CWE-378) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-378?
There are 7 CVE records associated with CWE-378 in our database. Of these, 0 are critical severity, 4 are high severity, and 3 are medium severity.
How can I protect against CWE-378 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-378 using AI-powered security agents.
Detect CWE-378 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-378 vulnerabilities across your infrastructure.
Get Started