CWE-400

High likelihood

Uncontrolled Resource Consumption

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product does not properly control the allocation and maintenance of a limited resource.

3,128 vulnerabilities with CWE-400
CVE-2025-26641 HIGH
Windows 10 1507-24H2 and Windows Server 2008 - Unauthenticated Denial of Service via Cryptographic Services
CVSS 7.5
CVE-2025-21174 HIGH
Windows Server 2012, 2016, 2019, 2022, 2025 - Unauthenticated DoS via Storage Management Service
CVSS 7.5
CVE-2025-29478 MEDIUM
fluent-bit 3.7.2 - Denial of Service via cfl_list_size in cfl_list.h
CVSS 5.5
CVE-2025-29477 MEDIUM
fluent-bit 3.7.2 - Denial of Service via consume_event Function
CVSS 5.5
CVE-2025-27829 HIGH
Stormshield Network Security <4.3.35 - DoS
CVSS 7.3
CVE-2025-24269 CRITICAL
macOS < 15.4 - Denial of Service via Uncontrolled Resource Consumption
CVSS 9.8
CVE-2025-24264 CRITICAL
Safari < 18.4 - Denial of Service via Malicious Web Content
CVSS 9.8
CVE-2025-24260 CRITICAL
macOS 13.0-13.7.4, 14.0-14.7.4, 15.0-15.3 - Denial of Service via Memory Handling Issue
CVSS 9.8
CVE-2025-24247 CRITICAL
macOS < 13.7.5, < 14.7.5, < 15.4 - Denial of Service via Type Confusion
CVSS 9.8
CVE-2025-24235 MEDIUM
macOS 13.0-13.7.4, <14.7.5, <15.4 - Denial of Service via Memory Initialization Issue
CVSS 5.5
CVE-2025-24211 CRITICAL
iPadOS < 17.7.6 - Uncontrolled Resource Consumption via Maliciously Crafted Video File
CVSS 9.8
CVE-2025-24199 MEDIUM
macOS < 13.7.5, < 14.7.5, < 15.4 - Denial of Service via Uncontrolled Format String
CVSS 5.5
CVE-2025-24190 CRITICAL
iPadOS < 17.7.6 - Uncontrolled Resource Consumption via Maliciously Crafted Video File
CVSS 9.8
CVE-2025-3016 MEDIUM
Open Asset Import Library Assimp 5.4.3 - Uncontrolled Resource Consumption in MDL File Handler
CVSS 4.3
CVE-2025-2586 HIGH
OpenShift Lightspeed - Unauthenticated Denial of Service via API Request Flooding
CVSS 7.5
CVE-2025-29490 MEDIUM
libming 0.4.8 - Denial of Service via decompileCALLMETHOD Function
CVSS 6.5
CVE-2025-29487 HIGH
libming 0.4.8 - Denial of Service via parseABC_STRING_INFO Allocator Exhaustion
CVSS 7.5
CVE-2025-29484 HIGH
libming 0.4.8 - Denial of Service via parseABC_NS_SET_INFO Allocator Exhaustion
CVSS 7.5
CVE-2025-2833 MEDIUM
zhangyd-c OneBlog <2.3.9 - Info Disclosure
CVSS 5.3
CVE-2025-2820 MEDIUM
Bizerba GLx and CWx < 16.20 - Authenticated Denial of Service via Network
CVSS 6.5
CVE-2025-25374 HIGH
NASA cFS Aquila - Denial of Service via External Application Launch Prevention
CVSS 7.5
CVE-2025-26500 MEDIUM
Wind River Systems VxWorks <24.03 - DoS
CVSS 4.6
CVE-2025-30160 HIGH
redlib < 0.36.0 - Denial of Service via Base2048-Encoded DEFLATE Decompression Bomb
CVSS 7.5
CVE-2025-0191 MEDIUM
gaizhenbiao/chuanhuchatgpt 20240914 - DoS
CVSS 6.5
CVE-2025-0187 HIGH
gradio 0.39.1 - Denial of Service via Large Filename in File Upload
CVSS 7.5
Details
Vulnerabilities 3,128
Exploit Likelihood High