CWE-1284

Improper Validation of Specified Quantity in Input

Parent: CWE-20 - Improper Input Validation

The product receives input that is expected to specify a quantity (such as size or length), but it does not validate or incorrectly validates that the quantity has the required properties.

293 vulnerabilities with CWE-1284
CVE-2026-6915 MEDIUM
Flaw in the updateUser Command May Allow Unauthorized Configuration Change
CVSS 6.3
CVE-2026-41677 CRITICAL
rust-openssl 0.9.0-0.10.77 - Memory Corruption
CVSS 9.1
CVE-2026-1352 MEDIUM
IBM® Db2® is vulnerable to a trap or return SQLCODE -901 when compiling a specially crafted query with a defined index
CVSS 6.5
CVE-2026-33471 CRITICAL
nimiq-block has skip block quorum bypass via out-of-range BitSet indices & u16 truncation
CVSS 9.6
CVE-2026-6839 MEDIUM
Samsung Open Source One < 1.30.0 - Out-of-Bounds Access
CVSS 6.6
CVE-2026-41285 MEDIUM
OpenBSD through 7.8 - DoS
CVSS 4.3
CVE-2026-2403 MEDIUM
Schneider Electric PowerChute Serial Shutdown <=1.4 - Log Truncation
CVSS 4.3
CVE-2026-40093 HIGH
nimiq-blockchain is missing a wall-clock upper bound on block timestamps
CVSS 8.1
CVE-2026-1101 MEDIUM
Improper Validation of Specified Quantity in Input in GitLab
CVSS 6.5
CVE-2026-1092 HIGH
Improper Validation of Specified Quantity in Input in GitLab
CVSS 7.5
CVE-2026-35489 HIGH
Tandoor Recipes — `amount`/`unit` bypass serializer in `food/{id}/shopping/`
CVSS 7.3
CVE-2026-30573 HIGH
SourceCodester Pharmacy Product Management System 1.0 - Business Logic
CVSS 7.5
CVE-2026-30575 HIGH
SourceCodester Pharmacy Product Management System 1.0 - DoS
CVSS 7.5
CVE-2026-25345 CRITICAL
WordPress SimpLy Gallery plugin <= 3.3.2 - Arbitrary Code Execution vulnerability
CVSS 9.9
CVE-2026-33349 MEDIUM
fast-xml-parser: Entity Expansion Limits Bypassed When Set to Zero Due to JavaScript Falsy Evaluation
CVSS 5.9
CVE-2026-26940 MEDIUM
Improper Validation of Specified Quantity in Input in Kibana Leading to Denial of Service
CVSS 6.5
CVE-2026-31971 HIGH
HTSlib CRAM decoder vulnerable to buffer overflow
CVSS 8.1
CVE-2026-31970 HIGH
HTSlib BGZF index file reader has a heap buffer overflow
CVSS 8.1
CVE-2026-2229 HIGH
undici WebSocket - DoS
CVSS 7.5
CVE-2026-1528 HIGH
undici <6.24.0/7.24.0 - DoS
CVSS 7.5
CVE-2026-3816 MEDIUM
OWASP DefectDojo <=2.55.4 - DoS
CVSS 4.3
CVE-2026-27384 CRITICAL
W3 Total Cache <=2.9.1 - Privilege Escalation
CVSS 9.0
CVE-2026-3381 CRITICAL
Compress::Raw::Zlib <=2.219 - Insecure Dependency
CVSS 9.8
CVE-2026-2597 HIGH
Crypt::SysRandom::XS <0.010 - Buffer Overflow
CVSS 7.5
CVE-2026-26934 MEDIUM
Kibana - DoS
CVSS 6.5
Details
Vulnerabilities 293