CWE-1284

Improper Validation of Specified Quantity in Input

Parent: CWE-20 - Improper Input Validation

The product receives input that is expected to specify a quantity (such as size or length), but it does not validate or incorrectly validates that the quantity has the required properties.

293 vulnerabilities with CWE-1284
CVE-2025-36015 MEDIUM
IBM Controller < 11.1.2 - Denial of Service
CVSS 6.5
CVE-2025-65548 CRITICAL
nutshell <0.18.0 - Info Disclosure
CVSS 9.1
CVE-2025-12385 HIGH
Qt <6.5.10, <6.8.5, <6.9.0 - Improper Validation of Specified Quant...
CVE-2025-33211 HIGH
NVIDIA Triton Server - DoS
CVSS 7.5
CVE-2025-59820 MEDIUM
KDE Krita <5.2.13 - Buffer Overflow
CVSS 6.7
CVE-2025-13507 MEDIUM
MongoDB <7.0.26-8.0.16-8.2.1 - Memory Corruption
CVSS 6.5
CVE-2025-54515 LOW
Versal Adaptive SoC - Privilege Escalation
CVE-2025-48507 HIGH
Trusted Firmware - Info Disclosure
CVE-2025-9316 MEDIUM
N-central <2025.4 - Info Disclosure
CVE-2025-10259 MEDIUM
Mitsubishi Electric MELSEC iQ-F - DoS
CVSS 5.3
CVE-2025-36092 MEDIUM
IBM Cloud Pak For Business Automation - Denial of Service
CVSS 6.5
CVE-2025-11568 MEDIUM
luksmeta - Memory Corruption
CVSS 4.4
CVE-2025-61938 HIGH
BIG-IP - DoS
CVSS 7.5
CVE-2025-11594 MEDIUM
ywxbear PHP-Bookstore-Website-Example <0e0b9f542f7a2d90a8d7f8c83cac...
CVSS 5.3
CVE-2025-0038 MEDIUM
AMD Zynq UltraScale+ - Memory Corruption
CVSS 6.6
CVE-2025-43793 HIGH
Liferay Portal <7.4.3.105 - Info Disclosure
CVSS 7.5
CVE-2025-2256 HIGH
GitLab CE/EE <18.1.6-18.3.2 - DoS
CVSS 7.5
CVE-2025-10094 MEDIUM
GitLab CE/EE <18.1.6-18.3.2 - Privilege Escalation
CVSS 6.5
CVE-2025-32689 HIGH
ThemesGrove WP SmartPay <2.7.13 - Info Disclosure
CVSS 7.5
CVE-2025-39700 MEDIUM
Linux Kernel - Privilege Escalation
CVSS 5.5
CVE-2025-58835 MEDIUM
calliko Bonus for Woo <7.4.1 - Info Disclosure
CVSS 5.3
CVE-2025-5808 HIGH
OpenText Self Service Password Reset <4.8.3 - Auth Bypass
CVE-2025-8424 HIGH
NetScaler ADC & Gateway - Info Disclosure
CVE-2025-55398 CRITICAL
asn1c <0.9.29 - Info Disclosure
CVSS 9.8
CVE-2025-8320 HIGH
Tesla Wall Connector Firmware < 24.44.3 - Remote Code Execution
CVSS 8.8
Details
Vulnerabilities 293