A malicious SSH peer could send unsolicited global request responses to fill an internal buffer, blocking the connection
A vulnerability in the handling of the embryonic connection limits in Cisco Secure Firewall Adaptive Security Appliance
In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mld: cancel mlo_scan_start_wk mlo_s
A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS XE Software could allow an authe
Every uncached /avatar/:hash request spawns a goroutine that refreshes the Gravatar image. If the refresh sits in the 10
Multer is a node.js middleware for handling `multipart/form-data`. A vulnerability in Multer prior to version 2.1.0 allo
In Eclipse Jetty, versions 12.0.0-12.0.31 and 12.1.0-12.0.5, class GzipHandler exposes a vulnerability when a compressed
Traefik is an HTTP reverse proxy and load balancer. Prior to versions 2.11.38 and 3.6.9, there is a potential vulnerabil
Due to a programming error, blocklistd leaks a socket descriptor for each adverse event report it receives. Once a cert
UltraJSON is a fast JSON encoder and decoder written in pure C with bindings for Python 3.7+. Versions 5.4.0 through 5.1
A specially crafted domain can be used to cause a memory leak in a BIND resolver simply by querying this domain. This is
When the BIG-IP Configuration utility is configured to use Lightweight Directory Access Protocol (LDAP) authentication,
Netty is an asynchronous, event-driven network application framework. From 4.2.0.Final to 4.2.13.Final , Netty's epoll t
Netty is a network application framework for development of protocol servers and clients. Prior to versions 4.1.135.Fina
Zephyr's IPv6 network stack can be prevented from receiving or processing future incoming packets by sending a small num
An issue in EMQ NanoMQ v.0.24.9 allows a remote attacker to cause a denial of service via the nni_qos_db_set function in
In Eclipse Milo versions 1.0.0 through 1.1.4, monitored-item quota accounting is not exception-safe: if item creation fa
Missing Release of Resource after Effective Lifetime vulnerability in Apache CloudStack's scoped global configuration fu
libp2p is a JavaScript implementation of the libp2p networking stack. Prior to version 4.2.9, the reservation refresh pa
Tanium addressed a denial of service vulnerability in Tanium Server.
When a container-level ErrorHandler is configured (the mitigation for finding 221000), each delivery whose processing th
A vulnerability was found in libsoup's HTTP/2 protocol implementation. The library fails to correctly release memory con
In NLnet Labs Unbound 1.20.0 up to and including 1.25.1, when Unbound is configured with 'serve-expired: yes' and 'serve
Klever-Go is the Go implementation of the Klever blockchain protocol. In versions prior to 1.7.18, the account-data trie
In the Linux kernel, the following vulnerability has been resolved: mm/slab: Add alloc_tagging_slab_free_hook for memcg
In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Free sp in error path to fix system
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: purge error queues in socket destructors
In the Linux kernel, the following vulnerability has been resolved: scsi: target: tcm_loop: Drain commands in target_re
In the Linux kernel, the following vulnerability has been resolved: media: cx88: Add missing unmap in snd_cx88_hw_param
In the Linux kernel, the following vulnerability has been resolved: dm: remove fake timeout to avoid leak request Sinc
OpenTelemetry-Go is the Go implementation of OpenTelemetry. Prior to version 0.0.17, `go.opentelemetry.io/otel/schema/v1
In the Linux kernel, the following vulnerability has been resolved: pmdomain: core: Fix detach procedure for virtual de
In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb: restore reservation on error in hugetlb
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: Fix not releasing hdev reference on
NiceGUI is a Python-based UI framework. From versions v2.10.0 to 3.4.1, an unauthenticated attacker can exhaust Redis co
Netty is a network application framework for development of protocol servers and clients. In netty-codec-http2 prior to
An attacker might be able to cause outgoing TCP connections to backend to be stuck until a timeout occurs instead of bei
An unauthenticated attacker could trigger an Out of Memory condition to crash the Java process for RHCS by repeatedly se
HttpClient based on the classic i/o model fails to correctly release the underlying connection back to the connection ma
Netty is an asynchronous, event-driven network application framework. Prior to 4.1.136.Final and 4.2.16.Final, io.netty.
Wasmtime is a runtime for WebAssembly. All versions prior to 24.0.10; versions 25.0.0 through those before 36.0.11; ver
A flaw was found in Hibernate Reactive. When an HTTP endpoint is exposed to perform database operations, a remote client
Netty is a network application framework for development of protocol servers and clients. Prior to versions 4.1.135.Fina
In NLnet Labs Unbound 1.22.0 up to and including 1.25.1, client terminated DNS-over-QUIC (DoQ) queries are not accounted
The UpdateHub over-the-air update client's start_coap_client() in subsys/mgmt/updatehub/updatehub.c leaks the CoAP/DTLS
An unauthenticated remote attacker may exhaust all available TCP connections in the CODESYS Modbus TCP Server stack if a
In Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 1.0.2.7 (1.0.X series), 2.0.2 (2.0.X series) and 2.1.3 (2.1.X ser
Coturn is a free open source implementation of TURN and STUN Server. Prior to 4.17.0, turnports_allocate_even() in src/a
Frequently Asked Questions
What is CWE-772?
CWE-772 (CWE-772) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-772?
There are 50 CVE records associated with CWE-772 in our database. Of these, 1 are critical severity, 18 are high severity, and 24 are medium severity.
How can I protect against CWE-772 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-772 using AI-powered security agents.
Detect CWE-772 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-772 vulnerabilities across your infrastructure.
Get Started