CWE-400
High likelihoodUncontrolled Resource Consumption
The product does not properly control the allocation and maintenance of a limited resource.
3,148 vulnerabilities with CWE-400
CVE-2021-41168
MEDIUM
reddit/snudown < 1.7.0 - Denial of Service via Reference Table Hash Collision
CVSS 6.5
CVE-2021-41167
HIGH
modern-async < 1.0.4 - Allocation of Resources Without Limits or Throttling in forEachSeries and forEachLimit
CVSS 7.5
CVE-2021-35559
MEDIUM
Oracle GraalVM Enterprise Edition 20.3.3 and 21.2.0 - Unauthenticated Partial Denial of Service in Swing
CVSS 5.3
CVE-2021-31368
HIGH
Juniper JUNOS OS < 18.1 - Unauthenticated Denial of Service via Out-of-Band Management Ethernet Port Flood
CVSS 7.5
CVE-2021-31365
MEDIUM
Junos OS EX2300/EX3400/EX4300 < 18.1 - Denial of Service via Layer 2 Frame Flood
CVSS 6.5
CVE-2021-37137
HIGH
Netty < 4.1.68 - Uncontrolled Resource Consumption via Snappy Frame Decoder
CVSS 7.5
CVE-2021-37136
HIGH
Netty < 4.1.68 - Denial of Service via Bzip2 Decompression OOME
CVSS 7.5
CVE-2021-22964
HIGH
Fastify-Static >=4.2.4 <4.4.1 - Open Redirect
CVSS 8.8
CVE-2021-33609
MEDIUM
com.vaadin:vaadin-server <8.14.0 - DoS
CVSS 4.3
CVE-2021-41546
HIGH
Siemens Ruggedcom Rox Mx5000 Firmware < 2.14.1 - Denial of Service
CVSS 7.5
CVE-2021-20600
MEDIUM
Mitsubishi Electric MELSEC iQ-R R12CCPU-V < 16 - DoS via Packet Flood
CVSS 5.9
CVE-2021-41115
MEDIUM
zulip < 4.7 - Denial of Service via Linkifier Regular Expression Complexity
CVSS 4.3
CVE-2021-41118
MEDIUM
DynamicPageList3 < 3.3.6 - Denial of Service via Regex Date Parameter
CVSS 5.3
CVE-2021-39877
HIGH
GitLab 12.2.0-14.1.6 - Uncontrolled Resource Consumption via Specially Crafted File
CVSS 7.7
CVE-2021-3822
HIGH
jsoneditor < 9.5.6 - Denial of Service via Inefficient Regular Expression
CVSS 7.5
CVE-2021-22010
HIGH
VMware Cloud Foundation 3.0-4.0 and vCenter Server - Denial of Service via VPXD Service Memory Consumption
CVSS 7.5
CVE-2021-39229
HIGH
Apprise < 0.9.5.1 - Denial of Service via IFTTT Plugin Regex
CVSS 7.5
CVE-2021-32838
HIGH
flask-restx < 0.5.1 - Regular Expression Denial of Service via Email Validation
CVSS 7.5
CVE-2021-32839
HIGH
sqlparse 0.4.0-0.4.1 - Denial of Service via SQL Comment Regex Backtracking
CVSS 7.5
CVE-2021-23042
HIGH
BIG-IP 12.1.0-12.1.5 - Uncontrolled Resource Consumption via HTTP Profile
CVSS 7.5
CVE-2021-23047
MEDIUM
F5 BIG-IP Access Policy Manager 11.6.1-11.6.4 - Uncontrolled Resource Consumption via OCSP AIA Verification
CVSS 5.3
CVE-2021-23053
MEDIUM
BIG-IP Advanced WAF/ASM <15.1.3, 14.1.3.1, 13.1.3.6 - Info Disclosure
CVSS 5.3
CVE-2021-23049
HIGH
BIG-IP <16.0.1.2, 15.1.x <15.1.3 - DoS
CVSS 7.5
CVE-2021-3749
HIGH
axios <0.21.2 - Denial of Service via Inefficient Regular Expression
CVSS 7.5
CVE-2021-32832
MEDIUM
Rocket.Chat < 3.11.3 - Denial of Service via Regular Expression
CVSS 4.3
Details
Vulnerabilities
3,148
Exploit Likelihood
High