Permission control vulnerability in the file system. Impact: Successful exploitation of this vulnerability may affect se
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 16.0 before 18.9.7, 18.10 before 18.10.6, and
A flaw was found in the keycloak-services component of Keycloak. This vulnerability allows the issuance of access and re
A security vulnerability has been detected in Sanluan PublicCMS 5.202506.d. Impacted is the function TradeOrderControlle
Permission control vulnerability in contacts. Impact: Successful exploitation of this vulnerability may affect availabil
Permission control vulnerability in the manufacturability design module. Impact: Successful exploitation of this vulnera
Permission control vulnerability in the manufacturability design module. Impact: Successful exploitation of this vulnera
Permission control vulnerability in calls. Impact: Successful exploitation of this vulnerability may affect availability
Use-After-Free (UAF) vulnerability in the web. Impact: Successful exploitation of this vulnerability may affect availabi
Permission control vulnerability in the smart sensing service. Impact: Successful exploitation of this vulnerability may
Permission control vulnerability in the security control module. Impact: Successful exploitation of this vulnerability m
A vulnerability was identified in SourceCodester Online Food Ordering System 1.0. Affected by this issue is the function
A security flaw has been discovered in SourceCodester Pharmacy Product Management System 1.0. This affects an unknown pa
A vulnerability has been found in macrozheng mall up to 1.0.3. The affected element is an unknown function of the file /
A flaw has been found in SourceCodester Simple Food Ordering System 1.0. The affected element is an unknown function of
IBM Guardium Data Protection 12.0, 12.1, and 12.2 is vulnerable to a Bypass Business Logic vulnerability in the access m
A vulnerability was determined in Bdtask Bhojon All-In-One Restaurant Management System up to 20260116. The affected ele
A vulnerability was identified in Bdtask Bhojon All-In-One Restaurant Management System up to 20260116. The impacted ele
A security vulnerability has been detected in mickasmt next-saas-stripe-starter 1.0.0. Affected is the function generate
A weakness has been identified in WonderTrader up to 0.9.9. This vulnerability affects the function MatchEngine::update_
A vulnerability was identified in WonderTrader up to 0.9.9. Affected is the function _undone_qty in the library src/WtCo
A vulnerability has been found in Webkul Bagisto up to 2.4.4. Affected by this vulnerability is an unknown functionality
A vulnerability was detected in Webkul Bagisto up to 2.4.4. Impacted is an unknown function of the file /customer/accoun
A security vulnerability has been detected in macrozheng mall up to 1.0.3. Affected is the function OmsCartItemServiceIm
Race condition vulnerability in the security control module. Impact: Successful exploitation of this vulnerability may a
A vulnerability was detected in WonderTrader up to 0.9.9. Impacted is the function TraderDD::queryTrades of the file src
A security flaw has been discovered in songquanpeng one-api up to 0.6.11-preview.7. Affected by this issue is the functi
Cloud Foundry UAA, versions prior to 73.0.0, falls back to appending “unknown.org” to a user's email address when one is
Cloud Foundry Routing Release, all versions prior to 0.188.0, contains a vulnerability that can hijack the traffic to ro
Frequently Asked Questions
What is CWE-840?
CWE-840 (CWE-840) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-840?
There are 29 CVE records associated with CWE-840 in our database. Of these, 0 are critical severity, 2 are high severity, and 25 are medium severity.
How can I protect against CWE-840 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-840 using AI-powered security agents.
Detect CWE-840 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-840 vulnerabilities across your infrastructure.
Get Started