An Improper Control of Interaction Frequency vulnerability [CWE-799] vulnerability in Fortinet FortiWeb 8.0.0 through 8.
Runtipi is a personal homeserver orchestrator. Prior to 4.8.1, The Runtipi /api/auth/verify-totp endpoint does not enfor
Improper Control of Interaction Frequency vulnerability in MeWare Software Development Inc. PDKS allows Flooding. This
Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior o 9.5.2-al
Improper Control of Interaction Frequency vulnerability in MIA Technology Inc. Pizzy Library allows Flooding. This issu
wpDiscuz before 7.6.47 contains a missing rate limiting vulnerability that allows unauthenticated attackers to subscribe
Lemmy is a link aggregator and forum for the fediverse. Prior to 0.19.19 and 1.0.0-beta.1, actix-web ConnectionInfo::rea
IBM Aspera Console 3.3.0 through 3.4.8 could allow an authenticated user to cause a denial of service in the email servi
OpenClaw before 2026.3.31 lacks a shared pre-auth concurrency budget on the public LINE webhook path, allowing attackers
OpenClaw 2026.2.26 before 2026.3.31 enforces pending pairing-request caps per channel file instead of per account, allow
HCL Aftermarket EPC is vulnerable to email flooding as the application does not have a proper mail limitation mechanism
HCL Aftermarket DPC is affected by Spamming Vulnerability which can allow the actor to excessive spamming can consume se
Wazuh is a free and open source platform used for threat prevention, detection, and response. In versions 4.6.0 and abov
A vulnerability was identified in D-Link DIR-823X 250416. This vulnerability affects the function sub_40AC74 of the comp
A security flaw has been discovered in Tasin1025 SwiftBuy up to 0f5011372e8d1d7edfd642d57d721c9fadc54ec7. Affected by th
OpenClaw before 2026.3.31 contains an authentication rate limiting bypass vulnerability that allows attackers to circumv
A vulnerability has been found in CodeWise Tornet Scooter Mobile App 4.75 on iOS/Android. The impacted element is an unk
A vulnerability was detected in unitedbyai droidclaw up to 0.5.3. The affected element is an unknown function of the fil
A vulnerability was detected in opensourcepos Open Source Point of Sale up to 3.4.2. This affects the function Login::in
A vulnerability has been found in mangroup dtale up to 3.22.0. This issue affects the function Login of the file dtale/a
A vulnerability was found in VictoriaMetrics up to 1.146.0. Impacted is the function requestHandler of the file app/vmau
A vulnerability was found in karakeep-app karakeep up to 0.32.0. The affected element is the function authorize of the f
A security vulnerability has been detected in Beetel 777VR1 up to 01.00.09/01.00.09_55. This issue affects some unknown
Frequently Asked Questions
What is CWE-799?
CWE-799 (CWE-799) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-799?
There are 23 CVE records associated with CWE-799 in our database. Of these, 0 are critical severity, 5 are high severity, and 8 are medium severity.
How can I protect against CWE-799 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-799 using AI-powered security agents.
Detect CWE-799 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-799 vulnerabilities across your infrastructure.
Get Started