picklescan before 0.0.27 contains a parsing logic error in the _list_globals function when handling STACK_GLOBAL opcodes
openssl_encrypt versions before 1.4.0 contain a critical vulnerability in pqc.py where KEM decapsulation failures silent
Unchecked Error Condition vulnerability in Apache Tomcat. If Tomcat is configured to use a custom Jakarta Authentication
A vulnerability in the Broadband Network Gateway PPP over Ethernet (PPPoE) feature of Cisco IOS XR Software could a
Envoy is a cloud-native, open source edge and service proxy. A theoretical request smuggling vulnerability exists throug
In DA, there is a possible permission bypass due to an incorrect status check. This could lead to local escalation of pr
Unchecked Error Condition in GitHub repository froxlor/froxlor prior to 2.0.10.
An Unchecked Error Condition vulnerability in the subscriber management daemon (smgd) of Juniper Networks Junos OS allow
A flaw was found in samba's DNS server. An authenticated user could use this flaw to the RPC server to crash. This RPC s
An error-handling flaw was found in python-ecdsa before version 0.13.3. During signature decoding, malformed DER signatu
xorg-x11-server before 1.19.5 was missing extra length validation in ProcEstablishConnection function allowing malicious
xorg-x11-server before 1.19.5 was vulnerable to integer overflow in ProcDbeGetVisualInfo function allowing malicious X c
xorg-x11-server before 1.19.5 had wrong extra length check in ProcXIChangeHierarchy function allowing malicious X client
xorg-x11-server before 1.19.5 was vulnerable to integer overflow in (S)ProcXIBarrierReleasePointer functions allowing ma
xorg-x11-server before 1.19.5 was missing length validation in XFree86 VidModeExtension allowing malicious X client to c
xorg-x11-server before 1.19.5 was missing length validation in XFree86 DGA extension allowing malicious X client to caus
xorg-x11-server before 1.19.5 was missing length validation in XFree86 DRI extension allowing malicious X client to caus
xorg-x11-server before 1.19.5 was missing length validation in XFIXES extension allowing malicious X client to cause X s
xorg-x11-server before 1.19.5 was missing length validation in XINERAMA extension allowing malicious X client to cause X
xorg-x11-server before 1.19.5 was missing length validation in MIT-SCREEN-SAVER extension allowing malicious X client to
xorg-x11-server before 1.19.5 was missing length validation in X-Resource extension allowing malicious X client to cause
xorg-x11-server before 1.19.5 was missing length validation in RENDER extension allowing malicious X client to cause X s
A common setup to deploy to gh-pages on every commit via a CI system is to expose a github token to ENV and to use it di
In the flush_tmregs_to_thread function in arch/powerpc/kernel/ptrace.c in the Linux kernel before 4.13.5, a guest kernel
fedora-arm-installer up to and including 1.99.16 is vulnerable to local privilege escalation due to lack of checking the
Frequently Asked Questions
What is CWE-391?
CWE-391 (CWE-391) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-391?
There are 25 CVE records associated with CWE-391 in our database. Of these, 15 are critical severity, 3 are high severity, and 7 are medium severity.
How can I protect against CWE-391 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-391 using AI-powered security agents.
Detect CWE-391 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-391 vulnerabilities across your infrastructure.
Get Started