In the Linux kernel, the following vulnerability has been resolved: mips: bmips: BCM6358: make sure CBR is correctly se
In the Linux kernel, the following vulnerability has been resolved: MIPS: Octeon: Add PCIe link status check The stand
In the Linux kernel, the following vulnerability has been resolved: ice: Fix improper extts handling Extts events are
Improper conditions check in Linux kernel mode driver for some Intel(R) Ethernet Network Controllers and Adapters E810 S
A problem with a detection mechanism in the Palo Alto Networks Cortex XDR agent on Windows devices enables a user with W
The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15. An attacker may be able to view r
In the Linux kernel, the following vulnerability has been resolved: virtio_pmem: Check device status before requesting
In the Linux kernel, the following vulnerability has been resolved: pinctrl: ocelot: fix system hang on level based int
vmir e8117 was discovered to contain a segmentation violation via the wasm_parse_block function at /src/vmir_wasm_parser
vmir e8117 was discovered to contain a segmentation violation via the import_function function at /src/vmir_wasm_parser.
vmir e8117 was discovered to contain a segmentation violation via the export_function function at /src/vmir_wasm_parser.
In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: handle otx2_mbox_get_rsp errors in ot
In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: handle otx2_mbox_get_rsp errors in ot
BuildKit is a toolkit for converting source code to build artifacts in an efficient, expressive and repeatable manner. A
An Improper Check for Unusual or Exceptional Conditions vulnerability in telemetry processing of Juniper Networks Junos
In DA, there is a possible permission bypass due to an incorrect status check. This could lead to local escalation of pr
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Pr
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. M
Mattermost versions 9.9.x <= 9.9.1, 9.5.x <= 9.5.7, 9.10.x <= 9.10.0, 9.8.x <= 9.8.2 fail to restrict the input in POST
A flaw was found in moodle. Insufficient capability checks make it possible for users with access to restore glossaries
Vyper is a pythonic Smart Contract Language for the ethereum virtual machine. Vyper compiler allows passing a value in b
The issue was addressed with improved checks. This issue is fixed in iOS 18.1 and iPadOS 18.1. An attacker may be able t
In the Linux kernel, the following vulnerability has been resolved: tcp_metrics: validate source addr length I don't s
Out-of-bounds access vulnerability in playback in the DASH module Impact: Successful exploitation of this vulnerability
The Gallery Plugin for WordPress – Envira Photo Gallery plugin for WordPress is vulnerable to unauthorized modification
glx_pbuffer.c in Mesa 23.0.4 was discovered to contain a segmentation violation when calling __glXGetDrawableAttribute()
Mattermost versions 9.6.0, 9.5.x before 9.5.3, 9.4.x before 9.4.5, and 8.1.x before 8.1.12 fail to handle JSON parsing e
Out-of-bounds read vulnerability in the DASH module Impact: Successful exploitation of this vulnerability will affect av
Out-of-bounds read vulnerability in the M3U8 module Impact: Successful exploitation of this vulnerability may cause feat
Improper check for exception conditions in Knox Guard prior to SMR Oct-2024 Release 1 allows physical attackers to bypas
Improper conditions check in Intel(R) Power Gadget software for macOS all versions may allow an authenticated user to po
In the Linux kernel, the following vulnerability has been resolved: i2c: validate user data in compat ioctl Wrong user
DoS in KAS in GitLab CE/EE affecting all versions from 16.10.0 prior to 16.10.6 and 16.11.0 prior to 16.11.3 allows an a
Improper check for unusual or exceptional conditions in Intel(R) TDX Module firmware before version 1.5.06 may allow a p
An application can be configured to block boot attempts after consecutive tamper resets are detected, which may not occu
Ecto 2.2.0 lacks a certain protection mechanism associated with the interaction between is_nil and raise.
An issue was discovered in the CheckUser extension for MediaWiki through 1.39.3. In certain situations, an attempt to bl
The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14. Processing web content may lead to
Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to an Incorrect Check of Function Return
An improper check for unusual or exceptional conditions in the HTTP request processing function of Zyxel GS1920-24v2 fir
In __efi_rt_asm_wrapper of efi-rt-wrapper.S, there is a possible bypass of shadow stack protection due to a logic error
The issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.7, iOS 16.7 and iPadOS 16.7, macO
HyperKit is a toolkit for embedding hypervisor capabilities in an application. In versions 0.20210107, function `pci_vts
An Improper Check for Unusual or Exceptional Conditions vulnerability in BGP route processing of Juniper Networks Junos
A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists that could cause arbitrary code exe
libiec61850 v1.5.1 was discovered to contain a segmentation violation via the function ControlObjectClient_setOrigin() a
An Improper Check for Unusual or Exceptional Conditions vulnerability in the packet forwarding engine (pfe) of Juniper N
A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists that could cause denial of service
VirtualSquare picoTCP (aka PicoTCP-NG) through 2.1 does not properly check whether header sizes would result in accessin
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper N
Frequently Asked Questions
What is CWE-754?
CWE-754 (CWE-754) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-754?
There are 772 CVE records associated with CWE-754 in our database. Of these, 20 are critical severity, 245 are high severity, and 287 are medium severity.
How can I protect against CWE-754 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-754 using AI-powered security agents.
Detect CWE-754 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-754 vulnerabilities across your infrastructure.
Get Started