Protection mechanism failure for some Intel(R) Workload Services Framework software within Ring 3: User Applications may
Protection mechanism failure for some Intel(R) Transfer Learning Tool before version v0.7 within Ring 3: User Applicatio
Activepieces is an open source AI workflow automation platform. Prior to 0.80.0, in SANDBOX_CODE_ONLY mode, the engine l
Cursor is a code editor built for programming with AI. Prior to 3.1.2, Cursor IDE for macOS allows an agent running in A
RustFS is a distributed object storage system built in Rust. Prior to 1.0.0-rc.1, RustFS Object Lock enforcement in crat
A vulnerability in Palo Alto Networks Prisma® Access Agent on Windows enables a local attacker with administrator privil
Notepad++ is a free and open-source source code editor. Prior to 8.9.7, macros loaded from an attacker-controlled shortc
VeraCrypt provides disk encryption with strong security based on TrueCrypt. From 1.26.6 until 1.26.29, file-hosted hidde
The Twig sandbox mechanism in Craft CMS is configured to allow dangerous functionality from the Yii framework, leading t
ServiceNow has remediated a sandbox escape security issue that was identified in the Now Platform. This security issue c
n8n is an open source workflow automation platform. From version 1.0.0 to before 2.0.0, a sandbox bypass vulnerability e
Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Insufficient An
A logic issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.6, macOS Sonoma 14.7.7, macOS
Sandboxed iframes on webpages could potentially allow downloads to the device, bypassing the expected sandbox restrictio
In multiple locations, there is a possible way to execute arbitrary code due to a logic error in the code. This could le
Missing Security Headers.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5.
In multiple locations, there is a possible way to launch an application from the background due to a precondition check
Dell ThinOS 10, versions prior to 2508_10.0127, contain a Protection Mechanism Failure vulnerability. An unauthenticated
Spring Security Aspects may not correctly locate method security annotations on private methods. This can cause an autho
An attacker was able to bypass the `connect-src` directive of a Content Security Policy by manipulating subdocuments. Th
A permissions issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Sequoia 15.6, macOS
When using the attachment interaction functionality, Canary Mail 5.1.40 and below saves documents to a file system witho
When using the attachment interaction functionality, Blue Mail 1.140.103 and below saves documents to a file system with
A file quarantine bypass was addressed with additional checks. This issue is fixed in macOS Sequoia 15.5. An app may be
A vulnerability has been identified in RUGGEDCOM RMC8388 V5.X (All versions < V5.10.0), RUGGEDCOM RMC8388NC V5.X (All ve
Protection mechanism failure in Windows SmartScreen allows an unauthorized attacker to bypass a security feature over a
Inappropriate implementation in Extensions in Google Chrome prior to 140.0.7339.80 allowed a remote attacker to bypass c
In getDefaultCBRPackageName of CellBroadcastHandler.java, there is a possible escalation of privilege due to a logic err
A logic issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7.4, macOS Sonoma 14.8.4, macO
A vulnerability in the HPE Aruba Networking SD-WAN Gateways could allow an unauthenticated remote attacker to bypass fir
There is a possible bypass of carrier restrictions due to an unusual root cause. This could lead to local escalation of
An authenticated attacker can exploit an Server-Side Request Forgery (SSRF) vulnerability in Microsoft Azure Health Bot
A vulnerability has been identified in SIMATIC Field PG M5 (All versions), SIMATIC IPC BX-21A (All versions < V31.01.07)
A vulnerability has been identified in SIMATIC Field PG M5 (All versions), SIMATIC Field PG M6 (All versions < V26.01.12
A file quarantine bypass was addressed with additional checks. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 1
This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15.7, macOS Tahoe 26. An
XSLT document loading did not correctly propagate the source document which bypassed its CSP. This vulnerability was fix
WBCE CMS is a content management system. Version 1.6.4 contains a brute-force protection bypass where an attacker can in
Protection mechanism failure in Windows Mark of the Web (MOTW) allows an unauthorized attacker to bypass a security feat
A logic issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.5, macOS Sonoma 14.7.6, macOS
Protection mechanism failure in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to ele
In multiple functions of Permissions.java, there is a possible way to override the state of the user's location permissi
In canForward of IntentForwarderActivity.java, there is a possible bypass of the cross profile intent filter most common
In handleKeyGestureEvent of PhoneWindowManager.java, there is a possible lock screen bypass due to a logic error in the
In setMediaButtonReceiver of multiple files, there is a possible way to launch arbitrary activities from background due
There is a possible escalation of privilege due to a logic error in the code. This could lead to local escalation of pri
In gxp_mapping_create of gxp_mapping.c, there is a possible privilege escalation due to a logic error in the code. This
In onHandleForceStop of VoiceInteractionManagerService.java, there is a bug that could cause the system to incorrectly r
In multiple functions of LocationProviderManager.java, there is a possible background activity launch due to a logic err
In multiple locations, there is a possible way to hijack the Launcher app due to a logic error in the code. This could l
Frequently Asked Questions
What is CWE-693?
CWE-693 (CWE-693) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-693?
There are 763 CVE records associated with CWE-693 in our database. Of these, 111 are critical severity, 247 are high severity, and 304 are medium severity.
How can I protect against CWE-693 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-693 using AI-powered security agents.
Detect CWE-693 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-693 vulnerabilities across your infrastructure.
Get Started