The terraform-mcp-server before version 1.1.0 is vulnerable to a cross-tenant credential reuse issue in the streamable-H
In consul-mcp-server, versions 0.1.0 up to 0.1.3 did not properly isolate session state in stateless mode, which may all
n8n is an open source workflow automation platform. Prior to 2.25.7 and 2.26.2, an authenticated user with permission to
If two sibling jails are restricted to separate filesystem trees, which is to say that neither of the two jail root dire
Fleet is open source device management software. Prior to 4.81.1, a vulnerability in Fleet's Windows MDM command process
view_component is a framework for building reusable, testable, and encapsulated view components in Ruby on Rails. From 4
OpenProject is an open-source, web-based project management software. Users of OpenProject versions prior to 16.6.5 and
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. The nats-server provides
Microsoft UFO open-source framework for intelligent automation across devices and platforms. In 3.0.1-4-ge2626659, Micro
A race condition in the shared Extreme Platform ONE IAM Gateway API-key authentication path could, under specific high-c
Hono is a Web application framework that provides support for any JavaScript runtime. From 3.8.0 to 4.12.33, memo() from
Lettermint Node.js SDK is the official Node.js SDK for Lettermint. In versions 1.5.0 and below, email properties (such a
Whisper Money is a personal finance application. Versions prior to 0.1.5 have an insecure direct object reference vulner
A vulnerability has been found in FederatedAI FATE up to 2.2.0. This affects the function QueuePushReqStreamObserver.ini
For performance reasons Zabbix Server/Proxy reuses JavaScript (Duktape) contexts (used in script items, JavaScript repro
Exposure of Data Element to Wrong Session vulnerability in ash-project ash_graphql can deliver one subscription's resolv
Frequently Asked Questions
What is CWE-488?
CWE-488 (CWE-488) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-488?
There are 16 CVE records associated with CWE-488 in our database. Of these, 2 are critical severity, 3 are high severity, and 8 are medium severity.
How can I protect against CWE-488 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-488 using AI-powered security agents.
Detect CWE-488 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-488 vulnerabilities across your infrastructure.
Get Started