The product does not properly "clean up" and remove temporary or supporting resources after they have been used.
189 vulnerabilities with CWE-459
CVE-2024-38275
HIGH
Moodle < 4.1.11 and 4.4.0-beta-4.4.1 - Sensitive Information Exposure via cURL Redirect Header Retention
CVSS 7.5
CVE-2024-36952
MEDIUM
Linux Kernel - Incomplete Cleanup in NPIV Deletion
CVSS 4.7
CVE-2024-35959
MEDIUM
Linux Kernel 5.18-6.1.86, 6.2-6.6.27, 6.7-6.8.6 - Incomplete Cleanup in mlx5e_priv_init
CVSS 5.5
CVE-2024-4767
MEDIUM
Firefox <126, Firefox ESR <115.11, Thunderbird <115.11 - Info Discl...
CVSS 4.3
CVE-2024-26841
MEDIUM
Linux Kernel - Incomplete Cleanup in CPU Sibling Map Update
CVSS 5.5
CVE-2024-26832
MEDIUM
Linux Kernel - Incomplete Cleanup in zswap_writeback_entry
CVSS 5.5
CVE-2024-26825
MEDIUM
Linux Kernel - Memory Leak in NFC NCI rx_data_reassembly skb Handling
CVSS 5.5
CVE-2024-26803
MEDIUM
Linux Kernel 5.13-5.15.150 5.16-6.1.80 6.2-6.6.20 6.7-6.7.8 - Incomplete Cleanup in veth XDP and GRO Feature Handling
CVSS 5.5
CVE-2024-26756
MEDIUM
Linux Kernel 2.6.17-6.7.6 - Denial of Service via MD Reshape Recovery Thread Hang
CVSS 5.5
CVE-2024-26687
MEDIUM
Linux Kernel - Use-After-Free in Xen Event Channel Handling
CVSS 5.5
CVE-2024-26667
MEDIUM
Linux Kernel 5.19-6.1.77, 6.2-6.6.16, 6.7-6.7.4 - Incomplete Cleanup in dpu_encoder_helper_phys_cleanup
CVSS 5.5
CVE-2024-20303
HIGH
Cisco IOS XE - Unauthenticated Denial of Service via mDNS Gateway Feature
CVSS 7.4
CVE-2024-2403
MEDIUM
Drevolutions Remote Desktop Manager <2024.1.12 - Info Disclosure
CVSS 5.9
CVE-2024-23672
MEDIUM
Apache Tomcat 8.5.0-8.5.98, 9.0.0-M1-9.0.85, 10.1.0-M1-10.1.18, 11.0.0-M1-M16 DoS via WebSocket Cleanup
CVSS 6.3
CVE-2024-26005
MEDIUM
CHARX SEC-3000/3050/3100/3150 Firmware < 1.5.1 - Unauthenticated Privilege Escalation via Incomplete Cleanup
CVSS 4.8
CVE-2024-1048
LOW
GRUB2 - Incomplete Cleanup in grub2-set-bootflag Temporary File Handling
CVSS 3.3
CVE-2024-21617
MEDIUM
Juniper Junos OS 21.2-22.4 - Unauthenticated DoS via BGP Flap Memory Leak
CVSS 6.5
CVE-2023-29184
LOW
FortiOS <7.2 - Privilege Escalation
CVSS 3.2
CVE-2023-52929
MEDIUM
Linux Kernel 6.1 - Incomplete Cleanup in nvmem Core Device Registration
CVSS 5.5
CVE-2023-31356
MEDIUM
AMD EPYC 7003/9004 and Embedded 7003/9004 - Incomplete Memory Cleanup in SEV Firmware
CVSS 4.4
CVE-2023-20518
LOW
AMD EPYC 9004 Series Processors - Incomplete Cleanup Exposing Master Encryption Key
CVSS 1.9
CVE-2023-45846
MEDIUM
Intel Power Gadget < 3.6.0 - Authenticated Denial of Service via Incomplete Cleanup
CVSS 5.5
CVE-2023-52617
MEDIUM
Linux Kernel < 5.4.269 - Use-After-Free in PCI Switchtec Device Release
CVSS 4.4
CVE-2023-41835
HIGH
Struts <2.5.32-6.3.0.1 - Info Disclosure
CVSS 7.5
CVE-2023-42795
MEDIUM
Apache Tomcat 8.5.0-8.5.93, 9.0.0-M1-9.0.80, 10.1.0-M1-10.1.13, 11.0.0-M1-M11 Info Disclosure
CVSS 5.3
Details
Vulnerabilities
189