CWE-400

High likelihood

Uncontrolled Resource Consumption

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product does not properly control the allocation and maintenance of a limited resource.

3,100 vulnerabilities with CWE-400
CVE-2025-40944 HIGH
SIMATIC ET 200AL IM 157-1 PN - Denial of Service via S7 Protocol Disconnect Request
CVSS 7.5
CVE-2025-67133 HIGH
Hero Motocorp Vida V1 Pro 2.0.7 - Denial of Service via BLE Component
CVSS 7.5
CVE-2025-65518 HIGH
Plesk Obsidian 8.0.1-18.0.73 - Unauthenticated Denial of Service via get_password.php Endpoint
CVSS 7.5
CVE-2025-56424 HIGH
Insiders Technologies e-invoice pro - Denial of Service via Crafted Script
CVSS 7.5
CVE-2025-43706 HIGH
Samsung Exynos and Modem Firmware - Denial of Service via RRC Packet Handling
CVSS 7.5
CVE-2025-68272 HIGH
Signal K Server < 2.19.0 - Unauthenticated Denial of Service via Access Request Endpoint Flooding
CVSS 7.5
CVE-2025-66863 HIGH
BinUtils - Denial of Service via Crafted PE File in d_discriminator Function
CVSS 7.5
CVE-2025-66861 LOW
BinUtils 2.26 - Denial of Service via Crafted PE File
CVSS 2.5
CVE-2025-60458 MEDIUM
UxPlay 1.72 - Denial of Service via RTSP TEARDOWN Request
CVSS 6.5
CVE-2025-25341 HIGH
libxmljs 1.0.11 - Denial of Service via _ref Property Access on Entity Nodes
CVSS 7.5
CVE-2025-59529 MEDIUM
avahi <= 0.9-rc2 - Unauthenticated Denial of Service via Unlimited Client Connections
CVSS 5.5
CVE-2025-8872 MEDIUM
Arista EOS 4.31.0-4.34.0 - Denial of Service via OSPFv3 Packet Processing
CVSS 6.5
CVE-2025-65781 HIGH
Wekan < 8.16 - Denial of Service and Identity Spoofing via Attachment Upload API
CVSS 8.2
CVE-2025-67731 HIGH
servify-express < 1.2 - Denial of Service via Unlimited JSON Body Parsing
CVSS 7.5
CVE-2025-67726 HIGH
Tornado < 6.5.3 - Denial of Service via HTTP Header Parameter Parsing
CVSS 7.5
CVE-2025-67725 HIGH
Tornado < 6.5.3 - Denial of Service via HTTP Headers Parsing
CVSS 7.5
CVE-2025-67779 HIGH
React Server Components 19.0.2, 19.1.3, 19.2.2 - Denial of Service via Unsafe Deserialization
CVSS 7.5
CVE-2025-48569 MEDIUM
Android - Denial of Service via Resource Exhaustion
CVSS 5.5
CVE-2025-48631 MEDIUM
Android - Denial of Service via LocalImageResolver Header Decoding
CVSS 6.5
CVE-2025-48615 HIGH
MediaButtonReceiverHolder - Privilege Escalation
CVSS 7.8
CVE-2025-48603 MEDIUM
Android - Local Denial of Service via InputMethodInfo Resource Exhaustion
CVSS 5.5
CVE-2025-48590 MEDIUM
Android - Denial of Service via Resource Exhaustion in AppOpsService
CVSS 5.5
CVE-2025-48584 MEDIUM
NotificationManagerService - Privilege Escalation
CVSS 5.5
CVE-2025-48576 MEDIUM
Android - Denial of Service via Resource Exhaustion in NotificationManagerService
CVSS 5.5
CVE-2025-65637 HIGH
logrus < 1.8.3 - Denial of Service via Large Single-Line Payload
CVSS 7.5
Details
Vulnerabilities 3,100
Exploit Likelihood High