CWE-400

High likelihood

Uncontrolled Resource Consumption

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product does not properly control the allocation and maintenance of a limited resource.

3,129 vulnerabilities with CWE-400
CVE-2025-53636 MEDIUM
OSC OnDemand 1.6-3.1.13 and 4.0.0-0.rc1-4.0.5 - Denial of Service via Shell App Log Flooding
CVSS 5.4
CVE-2025-53506 HIGH
Apache Tomcat <11.0.9, <10.1.43, <9.0.107 - Uncontrolled Resource C...
CVSS 7.5
CVE-2025-53371 CRITICAL
DiscordNotifications - Server-Side Request Forgery and Denial of Service via Webhook URL
CVSS 9.1
CVE-2025-53645 HIGH
Zimbra Collaboration <9.0.0 Patch 46-10.1.9 - DoS
CVSS 7.5
CVE-2025-49722 MEDIUM
Windows Print Spooler Components - Unauthenticated Denial of Service via Uncontrolled Resource Consumption
CVSS 5.7
CVE-2025-49716 HIGH
Windows Server 2008-2022 (incl. 23H2) <10.0.25398.1732 - DoS via Netlogon
CVSS 7.5
CVE-2025-6714 HIGH
MongoDB 6.0.0-6.0.22 - Denial of Service via Incomplete Data Handling in mongos
CVSS 7.5
CVE-2025-6712 MEDIUM
MongoDB 8.0.0-8.0.9 - Denial of Service via Memory Management Inefficiency
CVSS 6.5
CVE-2025-7074 MEDIUM
Vercel Hyper <3.4.1 - Info Disclosure
CVSS 4.3
CVE-2025-7070 MEDIUM
IROAD Dashcam Q9 < 2025-06-24 - Resource Exhaustion via MFA Pairing Request Spam
CVSS 4.3
CVE-2025-53481 HIGH
Mediawiki - IPInfo Extension <1.39.13-1.43.2 - Uncontrolled Resourc...
CVSS 7.5
CVE-2025-49595 MEDIUM
n8n < 1.99.0 - Authenticated Denial of Service via Empty Filesystem URI
CVSS 4.9
CVE-2025-6297 HIGH
dpkg < 1.22.21 - Denial of Service via Directory Permission Mismanagement
CVSS 8.2
CVE-2025-6817 LOW
HDF5 1.14.6 - Uncontrolled Resource Consumption in H5C__load_entry
CVSS 3.3
CVE-2025-44559 MEDIUM
Realtek RTL8762E BLE SDK <1.4.0 - DoS
CVSS 6.5
CVE-2025-52887 HIGH
cpp-httplib 0.21.0 - Uncontrolled Resource Consumption via HTTP Header Processing
CVSS 7.5
CVE-2025-44531 HIGH
Realtek RTL8762E SDK v1.4.0 - Denial of Service via Crafted Pairing Random Before Public Key
CVSS 7.5
CVE-2025-44528 HIGH
Texas Instruments LP-CC2652RB SimpleLink CC13XX CC26XX SDK 7.41.00....
CVSS 7.5
CVE-2025-6493 MEDIUM
CodeMirror <= 5.65.20 - Inefficient Regular Expression Complexity in Markdown Mode
CVSS 5.3
CVE-2025-6492 MEDIUM
MarkText <= 0.17.1 - Inefficient Regular Expression Complexity in getRecommendTitleFromMarkdownString
CVSS 5.3
CVE-2025-6365 MEDIUM
HobbesOSR Kitten < 2023-05-18 - Denial of Service via set_pte_at Function
CVSS 5.7
CVE-2025-44203 HIGH
HotelDruid 3.0.7 - Unauthenticated Information Disclosure and Denial of Service via creadb.php SQL Error Messages
CVSS 7.5
CVE-2025-6274 LOW
WebAssembly wabt < 1.0.37 - Uncontrolled Resource Consumption in OnDataCount Function
CVSS 3.3
CVE-2025-49763 HIGH
Apache Traffic Server 9.0.0-9.2.10 and 10.0.0-10.0.5 - Uncontrolled Resource Consumption in ESI Plugin
CVSS 7.5
CVE-2025-6140 LOW
spdlog < 1.15.2 - Uncontrolled Resource Consumption in scoped_padder
CVSS 3.3
Details
Vulnerabilities 3,129
Exploit Likelihood High