CWE-754

Medium likelihood

Improper Check for Unusual or Exceptional Conditions

Parent: CWE-703 - Improper Check or Handling of Exceptional Conditions

The product does not check or incorrectly checks for unusual or exceptional conditions that are not expected to occur frequently during day to day operation of the product.

588 vulnerabilities with CWE-754
CVE-2025-69420 HIGH
OpenSSL 1.1.1-1.1.1zd, 3.0.0-3.0.18, 3.3.0-3.3.5, 3.4.0-3.4.3, 3.5.0-3.5.4, 3.6.0 - DoS via Malformed TSR
CVSS 7.5
CVE-2025-12387 MEDIUM
Pix-Link LV-WR21Q V108_108 - Denial of Service via Language Parameter
CVE-2025-60011 MEDIUM
Juniper Junos < 22.4 - Improper Condition Check
CVSS 5.8
CVE-2025-59960 HIGH
Juniper Junos OS and Junos OS Evolved - Denial of Service via DHCP Relay Option 82 Handling
CVSS 7.4
CVE-2025-4675 MEDIUM
ABB WebPro SNMP Card PowerValue <1.1.8.K - Improper Check
CVSS 6.5
CVE-2025-20761 MEDIUM
Mediatek Nr15 - Improper Condition Check
CVSS 6.5
CVE-2025-66357 MEDIUM
CHOCO TEI WATCHER mini (IB-MCT001) - Denial of Service via Video Download Feature
CVSS 5.3
CVE-2025-61976 HIGH
CHOCO TEI WATCHER mini IB-MCT001 - Denial of Service via Video Download Interface
CVSS 7.5
CVE-2025-14322 HIGH
Firefox < 146 & Thunderbird < 140.6 - Sandbox Escape
CVSS 8.0
CVE-2025-33201 HIGH
NVIDIA Triton Inference Server - DoS
CVSS 7.5
CVE-2025-64704 MEDIUM
WebAssembly Micro Runtime < 2.4.4 - Denial of Service via v128.store Instruction
CVSS 4.7
CVE-2025-62875 MEDIUM
OpenSMTPD - Denial of Service
CVSS 5.5
CVE-2025-13080 MEDIUM
Drupal 8.0.0-10.4.8, 10.5.0-10.5.5, 11.0.0-11.1.8, 11.2.0-11.2.7 - Forceful Browsing
CVSS 5.3
CVE-2025-64342 MEDIUM
ESP-IDF 5.1-5.5 - Denial of Service via Invalid Access Address in Advertising Mode
CVE-2025-4619 MEDIUM
Palo Alto Networks PAN-OS 10.1.0-10.2.13, 11.1.0-11.1.6, 11.2.0-11.2.4 - DoS via Crafted Dataplane Packet
CVE-2025-32088 LOW
Intel QuickAssist Technology < 2.6.0-0018 - Denial of Service via Improper Conditions Check
CVSS 3.3
CVE-2025-12657 MEDIUM
MongoDB 6.0.0-7.0.21 - Denial of Service via KMIP Response Parser
CVSS 5.0
CVE-2025-10937 MEDIUM
Oxford Nanopore Technologies' MinKNOW <24.11 - DoS
CVSS 5.5
CVE-2025-62605 MEDIUM
Mastodon 4.4.0-4.4.7 - Quote Control Bypass via Reblog
CVSS 4.3
CVE-2025-11925 MEDIUM
BLU-IC2 and BLU-IC4 Firmware < 1.20 - Cross-Site Scripting via Incorrect Content-Type Header
CVSS 6.1
CVE-2025-55035 MEDIUM
Mattermost Desktop App <=5.13.0 - DoS
CVSS 6.1
CVE-2025-58289 MEDIUM
Huawei HarmonyOS - Denial of Service via Print Module
CVSS 5.9
CVE-2025-60004 HIGH
Juniper Junos OS and Junos OS Evolved - Unauthenticated Denial of Service via BGP EVPN Update Message
CVSS 7.5
CVE-2025-59958 MEDIUM
Juniper Junos OS Evolved <22.4R3-EVO/23.2<23.2R2-EVO - DoS & Info Disclosure via Firewall Filter
CVSS 6.5
CVE-2025-61668 HIGH
Volto < 16.34.1, 17.0.0-17.22.1, 18.0.0-18.27.1, 19.0.0-alpha.1-19.0.0-alpha.5 - DoS via Specific URL
Details
Vulnerabilities 588
Exploit Likelihood Medium