CWE-405
Asymmetric Resource Consumption (Amplification)
The product does not properly control situations in which an adversary can cause the product to consume or produce excessive resources without requiring the adversary to invest equivalent work or otherwise prove authorization, i.e., the adversary's influence is "asymmetric."
37 vulnerabilities with CWE-405
CVE-2026-25611
HIGH
MongoDB - Memory Corruption
CVSS 7.5
CVE-2026-24324
MEDIUM
SAP BusinessObjects - DoS
CVSS 6.5
CVE-2026-0485
HIGH
SAP BusinessObjects BI Platform - DoS
CVSS 7.5
CVE-2026-22775
HIGH
Svelte Devalue < 5.6.2 - Denial of Service
CVSS 7.5
CVE-2026-22774
HIGH
Svelte Devalue < 5.6.2 - Denial of Service
CVSS 7.5
CVE-2025-68480
MEDIUM
Pypi Marshmallow < 3.26.2 - Denial of Service
CVSS 5.3
CVE-2025-42876
HIGH
SAP S/4 HANA Private Cloud - Info Disclosure
CVSS 7.1
CVE-2025-42874
HIGH
SAP NetWeaver - RCE
CVSS 7.9
CVE-2025-42873
MEDIUM
SAPUI5 - DoS
CVSS 5.9
CVE-2025-66564
HIGH
Sigstore Timestamp Authority <2.0.3 - Info Disclosure
CVSS 7.5
CVE-2025-66506
HIGH
Fulcio <1.8.3 - Info Disclosure
CVSS 7.5
CVE-2025-49643
MEDIUM
Zabbix Frontend < 6.0.42 - Denial of Service
CVSS 6.5
CVE-2025-8677
HIGH
BIND <9.18.40-9.21.13 - DoS
CVSS 7.5
CVE-2025-22166
HIGH
Confluence Data Center <2.0 - DoS
CVSS 7.5
CVE-2025-26516
MEDIUM
Netapp Storagegrid < 11.8.0.15 - Denial of Service
CVSS 5.3
CVE-2025-31987
MEDIUM
Hcltech Connections Docs - Denial of Service
CVSS 4.8
CVE-2025-53633
CRITICAL
Chall-Manager - Info Disclosure
CVSS 9.8
CVE-2025-43857
MEDIUM
Ruby-lang Net < 0.2.5 - Denial of Service
CVSS 6.5
CVE-2025-30204
HIGH
golang-jwt <5.2.2,4.5.2 - Info Disclosure
CVSS 7.5
CVE-2025-25186
MEDIUM
Net::IMAP <0.3.8-0.5.6 - DoS
CVSS 6.5
CVE-2024-11187
HIGH
BIND <9.11.38-9.16.51-9.18 - DoS
CVSS 7.5
CVE-2025-24356
HIGH
Fastd < 23.0 - Denial of Service
CVSS 7.5
CVE-2024-55628
HIGH
Suricata <7.0.8 - Info Disclosure
CVSS 7.5
CVE-2024-56200
HIGH
Altair - DoS
CVSS 8.6
CVE-2024-49363
HIGH
Misskey <2024.10.1 - DoS
CVSS 7.4
Details
Vulnerabilities
37