CWE-1284
Improper Validation of Specified Quantity in Input
The product receives input that is expected to specify a quantity (such as size or length), but it does not validate or incorrectly validates that the quantity has the required properties.
293 vulnerabilities with CWE-1284
CVE-2026-6915
MEDIUM
Flaw in the updateUser Command May Allow Unauthorized Configuration Change
CVSS 6.3
CVE-2026-41677
CRITICAL
rust-openssl 0.9.0-0.10.77 - Memory Corruption
CVSS 9.1
CVE-2026-1352
MEDIUM
IBM® Db2® is vulnerable to a trap or return SQLCODE -901 when compiling a specially crafted query with a defined index
CVSS 6.5
CVE-2026-33471
CRITICAL
nimiq-block has skip block quorum bypass via out-of-range BitSet indices & u16 truncation
CVSS 9.6
CVE-2026-6839
MEDIUM
Samsung Open Source One < 1.30.0 - Out-of-Bounds Access
CVSS 6.6
CVE-2026-41285
MEDIUM
OpenBSD through 7.8 - DoS
CVSS 4.3
CVE-2026-2403
MEDIUM
Schneider Electric PowerChute Serial Shutdown <=1.4 - Log Truncation
CVSS 4.3
CVE-2026-40093
HIGH
nimiq-blockchain is missing a wall-clock upper bound on block timestamps
CVSS 8.1
CVE-2026-1101
MEDIUM
Improper Validation of Specified Quantity in Input in GitLab
CVSS 6.5
CVE-2026-1092
HIGH
Improper Validation of Specified Quantity in Input in GitLab
CVSS 7.5
CVE-2026-35489
HIGH
Tandoor Recipes — `amount`/`unit` bypass serializer in `food/{id}/shopping/`
CVSS 7.3
CVE-2026-30573
HIGH
SourceCodester Pharmacy Product Management System 1.0 - Business Logic
CVSS 7.5
CVE-2026-30575
HIGH
SourceCodester Pharmacy Product Management System 1.0 - DoS
CVSS 7.5
CVE-2026-25345
CRITICAL
WordPress SimpLy Gallery plugin <= 3.3.2 - Arbitrary Code Execution vulnerability
CVSS 9.9
CVE-2026-33349
MEDIUM
fast-xml-parser: Entity Expansion Limits Bypassed When Set to Zero Due to JavaScript Falsy Evaluation
CVSS 5.9
CVE-2026-26940
MEDIUM
Improper Validation of Specified Quantity in Input in Kibana Leading to Denial of Service
CVSS 6.5
CVE-2026-31971
HIGH
HTSlib CRAM decoder vulnerable to buffer overflow
CVSS 8.1
CVE-2026-31970
HIGH
HTSlib BGZF index file reader has a heap buffer overflow
CVSS 8.1
CVE-2026-2229
HIGH
undici WebSocket - DoS
CVSS 7.5
CVE-2026-1528
HIGH
undici <6.24.0/7.24.0 - DoS
CVSS 7.5
CVE-2026-3816
MEDIUM
OWASP DefectDojo <=2.55.4 - DoS
CVSS 4.3
CVE-2026-27384
CRITICAL
W3 Total Cache <=2.9.1 - Privilege Escalation
CVSS 9.0
CVE-2026-3381
CRITICAL
Compress::Raw::Zlib <=2.219 - Insecure Dependency
CVSS 9.8
CVE-2026-2597
HIGH
Crypt::SysRandom::XS <0.010 - Buffer Overflow
CVSS 7.5
CVE-2026-26934
MEDIUM
Kibana - DoS
CVSS 6.5
Details
Vulnerabilities
293