CWE-407
Low likelihoodInefficient Algorithmic Complexity
An algorithm in a product has an inefficient worst-case computational complexity that may be detrimental to system performance and can be triggered by an attacker, typically using crafted manipulations that ensure that the worst case is being reached.
90 vulnerabilities with CWE-407
CVE-2025-23020
MEDIUM
Kwik < 0.10.1 - Denial of Service via Hash Collision in Connection ID Management
CVSS 5.3
CVE-2024-12243
MEDIUM
GnuTLS - Denial of Service
CVSS 5.3
CVE-2024-12133
MEDIUM
libtasn1 - Denial of Service
CVSS 5.3
CVE-2024-9631
HIGH
GitLab CE/EE <17.2.9-17.4.2 - Info Disclosure
CVSS 7.5
CVE-2024-6324
MEDIUM
GitLab 15.7-17.5.4, 17.6-17.6.2, 17.7 - Denial of Service via Cyclic Epic References
CVSS 4.3
CVE-2024-8233
HIGH
GitLab 9.4.0-17.4.5, 17.5.0-17.5.3, 17.6.0-17.6.1 - Denial of Service via Diff File Requests
CVSS 7.5
CVE-2024-8237
MEDIUM
GitLab CE/EE <12.6-17.4.5, <17.5-17.5.3, <17.6-17.6.1 - DoS
CVSS 6.5
CVE-2024-8177
MEDIUM
GitLab CE/EE <17.4.5/<17.5.3/<17.6.1 - DoS
CVSS 5.3
CVE-2024-11828
MEDIUM
GitLab 13.2.4-17.4.4, 17.5-17.5.2, 17.6-17.6.0 - Denial of Service via Crafted API Calls
CVSS 4.3
CVE-2024-43485
HIGH
.NET 6.0.0-6.0.34 and Visual Studio 2022 17.6.0-17.6.19 - Denial of Service
CVSS 7.5
CVE-2024-43484
HIGH
.NET Framework - Denial of Service via Inefficient Algorithmic Complexity
CVSS 7.5
CVE-2024-43483
HIGH
.NET Framework - Denial of Service via Inefficient Algorithmic Complexity
CVSS 7.5
CVE-2024-39702
MEDIUM
OpenResty 1.19.3.1-1.25.3.1 - Denial of Service via HashDoS in String Hashing Function
CVSS 5.9
CVE-2024-29916
MEDIUM
dormakaba Saflok - Unauthenticated Door Unlock via Forged Keycard
CVSS 5.6
CVE-2024-23684
HIGH
peteroupc/cbor 4.0.0-4.5.1 - Denial of Service via DecodeFromBytes Function
CVSS 7.5
CVE-2024-21909
HIGH
PeterO.Cbor 4.0.0-4.5.0 - Denial of Service via Crafted DecodeFromBytes Input
CVSS 7.5
CVE-2023-30421
LOW
mjson 1.2.7 - Denial of Service via Inefficient Algorithmic Complexity in mystrtod
CVSS 2.9
CVE-2023-4408
HIGH
BIND <9.16.45-9.19.19 - DoS
CVSS 7.5
CVE-2023-46136
HIGH
Werkzeug < 2.3.8 and 3.0.0 - Denial of Service via Crafted Multipart Data
CVSS 8.0
CVE-2023-38285
HIGH
Trustwave ModSecurity <3.0.10 - Info Disclosure
CVSS 7.5
CVE-2023-36810
MEDIUM
pypdf < 1.27.8 - Denial of Service via Crafted PDF
CVSS 6.2
CVE-2023-2473
MEDIUM
Dreamer CMS <4.1.3 - Info Disclosure
CVSS 4.3
CVE-2023-26485
MEDIUM
cmark-gfm < 0.29.0.gfm.10 - Denial of Service via Underscore Character Parsing
CVSS 5.3
CVE-2023-24824
MEDIUM
cmark-gfm < 0.29.0.gfm.10 - Denial of Service via Quadratic Complexity in Blockquote or List Parsing
CVSS 5.3
CVE-2023-22486
LOW
cmark-gfm < 0.29.0.gfm.7 - Denial of Service via Polynomial Time Complexity in handle_close_bracket
CVSS 3.5
Details
Vulnerabilities
90
Exploit Likelihood
Low