CWE-668

Exposure of Resource to Wrong Sphere

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product exposes a resource to the wrong control sphere, providing unintended actors with inappropriate access to the resource.

704 vulnerabilities with CWE-668
CVE-2025-2857 CRITICAL
Mozilla Firefox < 136.0.4 - Exposure to Wrong Actor
CVSS 10.0
CVE-2025-21608 MEDIUM
Meshtastic Firmware < 2.5.19 - Exposure to Wrong Actor
CVSS 5.3
CVE-2025-23205 MEDIUM
Pypi Nbgrader < 0.9.5 - Exposure to Wrong Actor
CVE-2024-13484 HIGH
openshift-gitops-operator-container - Info Disclosure
CVSS 8.2
CVE-2024-57838 HIGH
Linux Kernel < 5.15.174 - Exposure to Wrong Actor
CVSS 7.1
CVE-2024-52543 MEDIUM
Dell Nativeedge Orchestrator < 2.2.0.0 - Information Disclosure
CVSS 6.5
CVE-2024-5660 CRITICAL
ARM - Privilege Escalation
CVSS 9.8
CVE-2024-43704 HIGH
Software - Memory Corruption
CVSS 8.4
CVE-2024-24985 HIGH
Intel(R) processor - Privilege Escalation
CVSS 7.2
CVE-2024-51755 LOW
Twig <3.11.2, <3.14.1 - Info Disclosure
CVSS 2.2
CVE-2024-51754 LOW
Twig <3.11.2, <3.14.1 - Info Disclosure
CVSS 2.2
CVE-2024-43881 HIGH
Linux Kernel < 6.6.44 - Exposure to Wrong Actor
CVSS 7.1
CVE-2024-22281 HIGH
Apache Helix Front (UI) - Info Disclosure
CVSS 7.5
CVE-2024-42350 LOW
Biscuit - Info Disclosure
CVSS 3.0
CVE-2024-35199 HIGH
Pytorch Torchserve < 0.11.0 - Exposure to Wrong Actor
CVSS 8.2
CVE-2024-40725 MEDIUM
Apache HTTP Server <2.4.61 - Info Disclosure
CVSS 5.3
CVE-2024-39499 HIGH
Linux Kernel < 4.19.317 - Exposure to Wrong Actor
CVSS 7.1
CVE-2024-39553 MEDIUM
Juniper Junos OS Evolved - Exposure to Wrong Actor
CVSS 6.5
CVE-2024-38368 CRITICAL
CoacoaPods - Info Disclosure
CVSS 9.3
CVE-2024-22333 LOW
IBM Maximo Asset Management <7.6.1.3 - Info Disclosure
CVSS 3.3
CVE-2024-5313 MEDIUM
SSH Interface Exposure - DoS
CVSS 6.5
CVE-2024-36033 HIGH
Linux Kernel - Info Disclosure
CVSS 7.1
CVE-2024-36032 HIGH
Linux kernel - Info Disclosure
CVSS 7.1
CVE-2024-21813 HIGH
Intel(R) DTT - Privilege Escalation
CVSS 7.9
CVE-2024-35183 MEDIUM
wolfictl <0.16.10 - Auth Bypass
CVSS 4.4
Details
Vulnerabilities 704