CWE-749

Low likelihood

Exposed Dangerous Method or Function

Parent: CWE-284 - Improper Access Control

The product provides an Applications Programming Interface (API) or similar interface for interaction with external actors, but the interface includes a dangerous method or function that is not properly restricted.

145 vulnerabilities with CWE-749
CVE-2026-30797
RustDesk Client <=1.4.5 - Auth Bypass
CVE-2026-20423 HIGH
wlan STA driver - Privilege Escalation
CVSS 7.8
CVE-2026-28400 HIGH
Docker Model Runner <1.0.16 - Command Injection
CVSS 7.5
CVE-2026-22208 CRITICAL
OpenS100 <753cf29 - RCE
CVSS 9.6
CVE-2025-47366 HIGH
Trusted Zone < unknown - Info Disclosure
CVSS 7.1
CVE-2026-22812 HIGH
OpenCode <1.0.216 - Command Injection
CVSS 8.8
CVE-2025-9611
Microsoft Playwright MCP Server <0.0.40 - SSRF
CVE-2025-68697 HIGH
n8n <2.0.0 - Privilege Escalation
CVSS 7.1
CVE-2025-14497 HIGH
RealDefense SUPERAntiSpyware - Privilege Escalation
CVSS 7.8
CVE-2025-14496 HIGH
RealDefense SUPERAntiSpyware - Privilege Escalation
CVSS 7.8
CVE-2025-14495 HIGH
RealDefense SUPERAntiSpyware - Privilege Escalation
CVSS 7.8
CVE-2025-14494 HIGH
RealDefense SUPERAntiSpyware - Privilege Escalation
CVSS 7.8
CVE-2025-14493 HIGH
RealDefense SUPERAntiSpyware - Privilege Escalation
CVSS 7.8
CVE-2025-14492 HIGH
RealDefense SUPERAntiSpyware - Privilege Escalation
CVSS 7.8
CVE-2025-14491 HIGH
RealDefense SUPERAntiSpyware - Privilege Escalation
CVSS 7.8
CVE-2025-14490 HIGH
RealDefense SUPERAntiSpyware - Privilege Escalation
CVSS 7.8
CVE-2025-14489 HIGH
RealDefense SUPERAntiSpyware - Privilege Escalation
CVSS 7.8
CVE-2025-14488 HIGH
RealDefense SUPERAntiSpyware - Privilege Escalation
CVSS 7.8
CVE-2025-59788 MEDIUM
Nextcloud <32.0.1 - XSS
CVSS 6.4
CVE-2025-64443
MCP Gateway <0.27.0 - SSRF
CVE-2025-47353 HIGH
GVM - Memory Corruption
CVSS 7.8
CVE-2025-61907 MEDIUM
Icinga < 2.13.13 - Information Disclosure
CVSS 6.5
CVE-2025-59403 CRITICAL
Flocksafety Flock Safety - Remote Code Execution
CVSS 9.8
CVE-2022-31491 CRITICAL
Voltronic Power ViewPower <1.04-24215, ViewPower Pro <2.0-22165, Po...
CVSS 10.0
CVE-2025-34114
OpenBlow - XSS
Details
Vulnerabilities 145
Exploit Likelihood Low