CWE-754

Medium likelihood

Improper Check for Unusual or Exceptional Conditions

Parent: CWE-703 - Improper Check or Handling of Exceptional Conditions

The product does not check or incorrectly checks for unusual or exceptional conditions that are not expected to occur frequently during day to day operation of the product.

588 vulnerabilities with CWE-754
CVE-2026-0229 MEDIUM
Palo Alto Networks PAN-OS Unauthenticated DoS via Advanced DNS Security Packet
CVE-2026-25639 HIGH
axios < 0.30.3 and 1.0.0-1.13.5 - Denial of Service via __proto__ Property in Configuration Object
CVSS 7.5
CVE-2026-0944 MEDIUM
Drupal Group invite < 2.3.9, 3.0.0-3.0.4, 4.0.0-4.0.4 - Forceful Browsing
CVSS 5.3
CVE-2026-24513 LOW
ingress-nginx < 1.13.7 and < 1.14.3 - Authentication Bypass via Misconfigured Custom-Errors Backend
CVSS 3.1
CVE-2026-20419 MEDIUM
MediaTek NBIOT SDK < 3.6 and Software Development Kit < 7.6.7.2 - Denial of Service via Uncaught Exception
CVSS 6.5
CVE-2026-20406 MEDIUM
Modem - Use After Free
CVSS 6.5
CVE-2026-20401 HIGH
MediaTek NR15 and MT Series - Remote Denial of Service via Rogue Base Station
CVSS 7.5
CVE-2026-24054 CRITICAL
Kata Containers <3.26.0 - Info Disclosure
CVSS 10.0
CVE-2026-22796 MEDIUM
Openssl < 1.0.2zn - Improper Condition Check
CVSS 5.3
CVE-2026-22795 MEDIUM
OpenSSL 1.1.1-1.1.1zd, 3.0.0-3.0.18, 3.3.0-3.3.5, 3.4.0-3.4.3, 3.5.0-3.5.4, 3.6.0 - DoS via PKCS#12 Parsing
CVSS 5.5
CVE-2026-23991 MEDIUM
go-tuf 2.0.0-2.3.0 - Denial of Service via Invalid TUF Metadata JSON
CVSS 5.9
CVE-2026-21910 MEDIUM
Junos OS Multiple Versions - Unauthenticated DoS via VXLAN Interface Flapping
CVSS 6.5
CVE-2026-0227 HIGH
Palo Alto Networks PAN-OS >= 10.1.0 < 10.1.14 - Unauthenticated Denial of Service
CVSS 7.5
CVE-2026-21693 HIGH
iccDEV < 2.3.1.2 - Type Confusion in CIccSegmentedCurveXml::ToXml()
CVSS 8.8
CVE-2026-21689 MEDIUM
iccDEV < 2.3.1.2 - Type Confusion in CIccProfileXml::ParseBasic()
CVSS 6.5
CVE-2025-13392 HIGH
Synology DiskStation Manager (dsm) - Improper Check for Unusual or Exceptional Conditions
CVSS 8.1
CVE-2025-43883 MEDIUM
Dell PowerScale OneFS < 9.12.0.0 - Denial of Service via Improper Exception Handling
CVSS 4.1
CVE-2025-69250 HIGH
free5gc UDM <=1.4.1 - Info Disclosure
CVSS 7.5
CVE-2025-35992 MEDIUM
Intel NPU Drivers - Denial of Service via Improper Conditions Check
CVSS 4.7
CVE-2025-33030 LOW
Intel(R) NPU Drivers - Privilege Escalation
CVSS 3.3
CVE-2025-32739 LOW
Intel(R) Graphics Drivers & Intel LTS kernels - DoS
CVSS 2.8
CVE-2025-32735 MEDIUM
Intel NPU Drivers - Denial of Service via Improper Conditions Check
CVSS 5.5
CVE-2025-20070 MEDIUM
Intel(R) Optane(TM) PMem <CR_MGMT_02.00.00.4052, CR_MGMT_03.00.00.0...
CVSS 6.7
CVE-2025-15542 MEDIUM
TP-Link VX800v Firmware < 800.0.12 - Denial of Service via SIP INVITE Flood
CVSS 5.3
CVE-2025-14840 HIGH
Drupal HTTP Client Manager < 9.3.13, 10.0.0-10.0.2, 11.0.0-11.0.1 - Forceful Browsing
CVSS 7.5
Details
Vulnerabilities 588
Exploit Likelihood Medium