The product does not properly control the amount of recursion that takes place, consuming excessive resources, such as allocated memory or the program stack.
386 vulnerabilities with CWE-674
CVE-2026-0994
HIGH
Pypi Protobuf < 6.33.5 - Denial of Service
CVSS 7.5
CVE-2026-0990
MEDIUM
libxml2 - DoS
CVSS 5.9
CVE-2026-0989
LOW
libxml2 - DoS
CVSS 3.7
CVE-2026-21500
MEDIUM
iccDEV <2.3.1.2 - Buffer Overflow
CVSS 5.5
CVE-2025-65519
MEDIUM
mayswind ezbookkeeping <=1.2.0 - DoS
CVSS 6.5
CVE-2025-70957
HIGH
TON Lite Server <2024.09 - DoS
CVSS 7.5
CVE-2025-70955
HIGH
TON TVM <2024.10 - Memory Corruption
CVSS 7.5
CVE-2025-36001
MEDIUM
IBM Db2 < 11.5.9 - Denial of Service
CVSS 6.5
CVE-2025-55095
MEDIUM
UX Host Class Storage - Buffer Overflow
CVSS 4.2
CVE-2025-50537
MEDIUM
eslint <9.26.0 - Buffer Overflow
CVSS 5.5
CVE-2025-68950
MEDIUM
ImageMagick <7.1.2-12 - DoS
CVSS 4.0
CVE-2025-68618
MEDIUM
ImageMagick <7.1.2-12 - DoS
CVSS 5.3
CVE-2025-67899
LOW
uriparser <0.9.9 - Buffer Overflow
CVSS 2.9
CVE-2025-59789
HIGH
Apache bRPC <1.15.0 - DoS
CVSS 7.5
CVE-2025-66031
HIGH
Forge <1.3.2 - DoS
CVSS 7.5
CVE-2025-9624
HIGH
OpenSearch <3.3.0 - DoS
CVSS 7.5
CVE-2025-36158
MEDIUM
IBM Concert <2.0.0 - Info Disclosure
CVSS 5.1
CVE-2025-40090
MEDIUM
Linux kernel - Buffer Overflow
CVSS 5.5
CVE-2025-11896
LOW
Xpdf <4.05 - Buffer Overflow
CVE-2025-54858
HIGH
BIG-IP - DoS
CVSS 7.5
CVE-2025-33096
MEDIUM
IBM Engineering Requirements Management Doors Next <7.1 - DoS
CVSS 6.5
CVE-2025-61766
MEDIUM
Bucket <1.0.0 - DoS
CVSS 6.5
CVE-2025-10728
CRITICAL
Module - DoS
CVE-2025-43718
LOW
Poppler <25.04.0 - Memory Corruption
CVSS 2.9
CVE-2025-59364
MEDIUM
NPM Express-xss-sanitizer < 2.0.1 - XSS
CVSS 5.3
Details
Vulnerabilities
386