CWE-400

High likelihood

Uncontrolled Resource Consumption

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product does not properly control the allocation and maintenance of a limited resource.

3,367 vulnerabilities with CWE-400
CVE-2026-60382 HIGH
Oracle Corporation Service Delivery Platform - Denial of Service
CVSS 7.5
CVE-2026-60324 MEDIUM
Oracle Corporation MySQL Server - Denial of Service
CVSS 6.5
CVE-2026-60314 HIGH
Oracle Corporation MySQL Router - Denial of Service
CVSS 7.5
CVE-2026-60311 MEDIUM
Oracle Corporation MySQL Server - Denial of Service
CVSS 6.5
CVE-2026-60303 MEDIUM
Oracle Coherence - Denial of Service
CVSS 4.3
CVE-2026-60301 HIGH
Oracle Coherence - Denial of Service
CVSS 7.5
CVE-2026-60252 HIGH
Oracle Coherence - Denial of Service
CVSS 7.5
CVE-2026-60243 MEDIUM
Oracle Coherence - Denial of Service
CVSS 6.5
CVE-2026-60233 MEDIUM
Oracle Coherence - Denial of Service
CVSS 4.3
CVE-2026-60213 MEDIUM
Oracle Coherence - Denial of Service
CVSS 6.5
CVE-2026-60208 CRITICAL
Oracle WebLogic Server 12.2.1.4.0/14.1.1-2.0.0/15.1.1.0.0 - Unauthenticated Data Modification & Info Disclosure via HTTP
CVSS 9.1
CVE-2026-60187 MEDIUM
Oracle Corporation MySQL Server - Denial of Service
CVSS 4.4
CVE-2026-60186 MEDIUM
Oracle Corporation MySQL Server - Denial of Service
CVSS 4.4
CVE-2026-60185 MEDIUM
Oracle Corporation MySQL Server - Denial of Service
CVSS 4.4
CVE-2026-60184 MEDIUM
Oracle Corporation MySQL Server - Denial of Service
CVSS 4.4
CVE-2026-60182 MEDIUM
Oracle Corporation MySQL Server - Denial of Service
CVSS 4.4
CVE-2026-60180 HIGH
Oracle Corporation MySQL Connectors < 9.7.1 - Denial of Service
CVSS 7.5
CVE-2026-60177 MEDIUM
Oracle Corporation MySQL Server - Denial of Service
CVSS 4.4
CVE-2026-60174 MEDIUM
Oracle Corporation MySQL Server - Denial of Service
CVSS 6.5
CVE-2026-60171 MEDIUM
Oracle Corporation MySQL Cluster < 8.0.47 - Denial of Service
CVSS 4.9
CVE-2026-56816 HIGH
Netty: Memory Exhaustion via HTTP/3 Reserved Frame Types
CVSS 7.5
CVE-2026-56745 HIGH
Netty SpdyHttpDecoder: ByteBuf Reference Leak on RST_STREAM Leads to Native Memory Exhaustion
CVSS 7.5
CVE-2026-55851 HIGH
Netty codec-haproxy: Signed-Byte Sentinel Collision in HAProxyMessageDecoder Leads to Unbounded Memory Exhaustion
CVSS 7.5
CVE-2026-47057 HIGH
Oracle Java SE - Denial of Service
CVSS 7.5
CVE-2026-47052 MEDIUM
Oracle Corporation MySQL Server - Denial of Service
CVSS 4.9
Details
Vulnerabilities 3,367
Exploit Likelihood High