Sandbox escape due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed
Improper check for unusual or exceptional conditions in the Linux kernel-mode driver for some Intel(R) 800 Series Ethern
IBM Security Verify Directory 10.0 through 10.0.3 is vulnerable to a denial of service when sending an LDAP extended ope
In network HW, there is a possible system hang due to an uncaught exception. This could lead to remote denial of service
OpenVPN version 2.6.1 through 2.6.13 in server mode using TLS-crypt-v2 allows remote attackers to trigger a denial of se
An Improper Check for Unusual or Exceptional Conditions vulnerability in the pfe (packet forwarding engine) of Juniper N
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (pfe) of Juniper N
A missing exception check in Palo Alto Networks PAN-OS® software with the web proxy feature enabled allows an unauthenti
An Improper Check for Unusual or Exceptional Conditions vulnerability in the flow processing daemon (flowd) of Juniper N
The issue was addressed with improved checks. This issue is fixed in iOS 18.5 and iPadOS 18.5, iPadOS 17.7.9, macOS Sequ
Mattermost Confluence Plugin version <1.5.0 fails to handle unexpected request body which allows attackers to crash the
A vulnerability has been identified in SIPROTEC 4 6MD61 (All versions), SIPROTEC 4 6MD63 (All versions), SIPROTEC 4 6MD6
An Improper Check for Unusual or Exceptional Conditions vulnerability in the routing protocol daemon (rpd) of Juniper Ne
NVIDIA Triton Inference Server contains a vulnerability where an attacker may cause an improper check for unusual or exc
CHOCO TEI WATCHER mini (IB-MCT001) contains an issue with improper check for unusual or exceptional conditions. If a rem
Improper conditions check for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.110.0.5 may allo
Firebird is a relational database. Prior to snapshot versions 4.0.6.3183, 5.0.2.1610, and 6.0.0.609, Firebird is vulnera
A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with privilege level 15
A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with privilege level 15
matrix-hookshot is a Matrix bot for connecting to external services like GitHub, GitLab, JIRA, and more. When Hookshot 6
IBM i 7.4 and 7.5 is vulnerable to a database access denial of service caused by a bypass of a database capabilities res
An authenticated user with file access privilege via FTP access can cause the Relion 670/650 and SAM600-IO series device
Incorrect boundary conditions in the JavaScript: GC component. This vulnerability was fixed in Firefox 143, Firefox ESR
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper N
A flaw was found in GNUPlot. A segmentation fault via IO_str_init_static_internal may jeopardize the environment.
Enterprise Protection contains an improper input validation vulnerability in attachment defense that allows an unauthent
Mattermost Desktop App versions <=5.13.0 fail to manage modals in the Mattermost Desktop App that stops a user with a se
Incorrect Content-Type header in one of the APIs (`text/html` instead of `application/json`) replies may potentially all
A flaw was found in libsoup. The libsoup soup_uri_decode_data_uri() function may crash when processing malformed data UR
Mattermost Confluence Plugin version <1.5.0 fails to handle unexpected request body which allows attackers to crash the
Mattermost Confluence Plugin version <1.5.0 fails to handle unexpected request body which allows attackers to crash the
Vulnerability of improper exception handling in the print module. Successful exploitation of this vulnerability may affe
Improper conditions check for some Intel(R) Arc™ GPU may allow an authenticated user to potentially enable denial of ser
In the Linux kernel, the following vulnerability has been resolved: drm/sti: avoid potential dereference of error point
In the Linux kernel, the following vulnerability has been resolved: drm/sti: avoid potential dereference of error point
In the Linux kernel, the following vulnerability has been resolved: drm/sti: avoid potential dereference of error point
The issue was addressed with improved checks. This issue is fixed in iOS 18.3 and iPadOS 18.3, iPadOS 17.7.4, macOS Sequ
IBM MQ 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD could allow a local user to cause a denial of service due to an improper c
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Routing Protocol Daemon (rpd) of Juniper Ne
In the Linux kernel, the following vulnerability has been resolved: x86/sgx: Prevent attempts to reclaim poisoned pages
Oxford Nanopore Technologies' MinKNOW software at or prior to version 24.11 creates a temporary file to store the local
An Improper Check for Unusual or Exceptional Conditions vulnerability in OpenSMTPD allows local users to crash OpenSMTPD
An Improper Check for Unusual or Exceptional Conditions vulnerability in routing protocol daemon (rpd) of Juniper Networ
An improper check or handling of exceptional conditions vulnerability [CWE-703] in FortiOS version 7.4.0 through 7.4.3 a
Improper Check for Unusual or Exceptional Conditions vulnerability in Drupal Drupal core allows Forceful Browsing.This i
CHOCO TEI WATCHER mini (IB-MCT001) contains an issue with improper check for unusual or exceptional conditions. When the
The KMIP response parser built into mongo binaries is overly tolerant of certain malformed packets, and may parse them i
An Improper Check for Unusual or Exceptional Conditions vulnerability in Brocade Fabric OS before 9.2.2.a could allow
WebAssembly Micro Runtime (WAMR) is a lightweight standalone WebAssembly (Wasm) runtime. Prior to version 2.4.4, WAMR is
A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with privilege level 15
Frequently Asked Questions
What is CWE-754?
CWE-754 (CWE-754) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-754?
There are 772 CVE records associated with CWE-754 in our database. Of these, 20 are critical severity, 245 are high severity, and 287 are medium severity.
How can I protect against CWE-754 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-754 using AI-powered security agents.
Detect CWE-754 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-754 vulnerabilities across your infrastructure.
Get Started