CWE-669

Incorrect Resource Transfer Between Spheres

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product does not properly transfer a resource/behavior to another sphere, or improperly imports a resource/behavior from another sphere, in a manner that provides unintended control over that resource.

73 vulnerabilities with CWE-669
CVE-2026-24708 HIGH
OpenStack Nova <30.2.2 - Memory Corruption
CVSS 8.2
CVE-2026-25253 HIGH
OpenClaw <2026.1.29 - Info Disclosure
CVSS 8.8
CVE-2025-67895 CRITICAL
Apache-airflow-providers-edge3 < 2.0.0 - Remote Code Execution
CVSS 9.8
CVE-2025-62775 HIGH
Mercku M6a <2.1.0 - Privilege Escalation
CVSS 8.0
CVE-2025-62646 MEDIUM
Restaurant Brands International RBI - Info Disclosure
CVSS 5.0
CVE-2024-31573 MEDIUM
XMLUnit for Java <2.10.0 - Code Injection
CVSS 4.0
CVE-2025-62292 MEDIUM
SonarQube <25.6 - Info Disclosure
CVSS 4.3
CVE-2025-56675 LOW
EKEN video doorbell T6 - Info Disclosure
CVSS 3.5
CVE-2025-59692 LOW
PureVPN client < September 2025 - Info Disclosure
CVSS 3.7
CVE-2025-59691 LOW
PureVPN Linux Client - Info Disclosure
CVSS 3.7
CVE-2025-59453 LOW
Click Studios Passwordstate <9.9.9972 - Auth Bypass
CVSS 3.2
CVE-2025-59378 MEDIUM
GNU Guix <1618ca7 - Privilege Escalation
CVSS 5.7
CVE-2025-59363 HIGH
One Identity OneLogin <2025.3.0 - Info Disclosure
CVSS 7.7
CVE-2025-34158 HIGH
Plex Media Server <1.42.1 - Info Disclosure
CVSS 8.5
CVE-2025-54956 LOW
Gh <1.5.0 - Info Disclosure
CVSS 3.2
CVE-2025-54352 LOW
WordPress <6.8.2 - Info Disclosure
CVSS 3.7
CVE-2025-54310 MEDIUM
qBittorrent <5.1.2 - Info Disclosure
CVSS 4.0
CVE-2025-41645 HIGH
Portal Demo Account - Info Disclosure
CVSS 8.6
CVE-2025-46553 MEDIUM
@misskey-dev/summaly <5.2.1 - Info Disclosure
CVSS 6.1
CVE-2025-26698 LOW
RevoWorks SCVX/RevoWorks Browser - Info Disclosure
CVSS 2.7
CVE-2024-42158 MEDIUM
Linux kernel - Use After Free
CVSS 4.1
CVE-2024-38519 HIGH
yt-dlp/youtube-dl < - Path Traversal
CVSS 7.8
CVE-2024-37891 MEDIUM
urllib3 - Info Disclosure
CVSS 4.4
CVE-2024-29018 MEDIUM
Moby - Info Disclosure
CVSS 5.9
CVE-2023-41894 MEDIUM
Home Assistant - SSRF
CVSS 5.3
Details
Vulnerabilities 73