CWE-400
High likelihoodUncontrolled Resource Consumption
The product does not properly control the allocation and maintenance of a limited resource.
3,367 vulnerabilities with CWE-400
CVE-2026-47046
HIGH
Oracle Database Server < 23.26.2 - Denial of Service
CVSS 8.2
CVE-2026-47044
MEDIUM
Oracle VM VirtualBox - Denial of Service
CVSS 5.5
CVE-2026-47041
MEDIUM
Oracle VM VirtualBox - Denial of Service
CVSS 6.0
CVE-2026-47023
MEDIUM
Oracle Corporation MySQL Server - Denial of Service
CVSS 4.9
CVE-2026-47022
LOW
Oracle Corporation GoldenGate Stream Analytics - Denial of Service
CVSS 3.3
CVE-2026-47021
MEDIUM
Oracle Java SE - Denial of Service
CVSS 5.3
CVE-2026-47018
HIGH
Oracle Corporation Siebel Crm Cloud Applications < 26.5 - Denial of Service
CVSS 7.5
CVE-2026-47012
MEDIUM
Oracle Corporation MySQL Server - Denial of Service
CVSS 4.4
CVE-2026-47008
MEDIUM
Oracle Corporation MySQL Server - Denial of Service
CVSS 4.9
CVE-2026-10675
MEDIUM
Bluetooth Mesh PB-ADV: invalidated provisioning link kept alive indefinitely, blocking (re)provisioning (DoS)
CVSS 4.3
CVE-2026-63139
MEDIUM
Uncontrolled Resource Consumption in Kibana Leading to Denial of Service
CVSS 6.5
CVE-2026-63136
MEDIUM
Uncontrolled Resource Consumption in Elasticsearch Leading to Denial of Service
CVSS 6.5
CVE-2026-56145
MEDIUM
Uncontrolled Resource Consumption in Elasticsearch Leading to Denial of Service
CVSS 6.5
CVE-2026-21577
HIGH
Atlassian Confluence Data Center - Denial of Service
CVE-2026-16376
HIGH
Denial-of-service in the Graphics: WebGPU component
CVSS 7.5
CVE-2026-59843
MEDIUM
Libssh: libssh: denial of service via zero advertised channel packet size
CVSS 6.5
CVE-2026-55833
HIGH
Netty SPDY zlib header block continues decoded expansion after maxHeaderSize truncation
CVSS 7.5
CVE-2026-55831
HIGH
Netty SPDY SETTINGS frame count materializes unbounded settings map
CVSS 7.5
CVE-2026-53596
MEDIUM
FreeScout has unrestricted file upload without rate limiting that leads to resource exhaustion (DoS)
CVSS 5.3
CVE-2026-45713
HIGH
Mailpit: Unauthenticated remote memory-exhaustion DoS via unlimited SMTP DATA and /api/v1/send body sizes
CVSS 7.5
CVE-2026-59173
HIGH
Apache Traffic Server HTTP/2 - Resource Consumption Denial of Service
CVSS 7.5
CVE-2026-56741
HIGH
JLine: Unauthenticated Remote DoS via Unbounded Telnet NAWS Terminal Geometry
CVSS 7.5
CVE-2026-56740
HIGH
JLine: Unauthenticated Remote Memory Exhaustion via Unbounded Telnet NEW-ENVIRON Variables
CVSS 7.5
CVE-2026-49485
HIGH
HAPI FHIR: ReDoS via FHIRPath matches()/replaceMatches() in FHIR Validator HTTP Endpoint
CVSS 7.5
CVE-2026-44891
HIGH
Netty: Denial of Service via Unbounded Headers in StompSubframeDecoder
CVSS 7.5
Details
Vulnerabilities
3,367
Exploit Likelihood
High