CWE-754

Medium likelihood

Improper Check for Unusual or Exceptional Conditions

Parent: CWE-703 - Improper Check or Handling of Exceptional Conditions

The product does not check or incorrectly checks for unusual or exceptional conditions that are not expected to occur frequently during day to day operation of the product.

605 vulnerabilities with CWE-754
CVE-2025-14322 HIGH
Firefox < 146 & Thunderbird < 140.6 - Sandbox Escape
CVSS 8.0
CVE-2025-33201 HIGH
NVIDIA Triton Inference Server - DoS
CVSS 7.5
CVE-2025-64704 MEDIUM
WebAssembly Micro Runtime < 2.4.4 - Denial of Service via v128.store Instruction
CVSS 4.7
CVE-2025-62875 MEDIUM
OpenSMTPD - Denial of Service
CVSS 5.5
CVE-2025-13080 MEDIUM
Drupal 8.0.0-10.4.8, 10.5.0-10.5.5, 11.0.0-11.1.8, 11.2.0-11.2.7 - Forceful Browsing
CVSS 5.3
CVE-2025-64342 MEDIUM
ESP-IDF 5.1-5.5 - Denial of Service via Invalid Access Address in Advertising Mode
CVE-2025-4619 MEDIUM
Palo Alto Networks PAN-OS 10.1.0-10.2.13, 11.1.0-11.1.6, 11.2.0-11.2.4 - DoS via Crafted Dataplane Packet
CVE-2025-32088 LOW
Intel QuickAssist Technology < 2.6.0-0018 - Denial of Service via Improper Conditions Check
CVSS 3.3
CVE-2025-12657 MEDIUM
MongoDB 6.0.0-7.0.21 - Denial of Service via KMIP Response Parser
CVSS 5.0
CVE-2025-10937 MEDIUM
Oxford Nanopore Technologies' MinKNOW <24.11 - DoS
CVSS 5.5
CVE-2025-62605 MEDIUM
Mastodon 4.4.0-4.4.7 - Quote Control Bypass via Reblog
CVSS 4.3
CVE-2025-11925 MEDIUM
BLU-IC2 and BLU-IC4 Firmware < 1.20 - Cross-Site Scripting via Incorrect Content-Type Header
CVSS 6.1
CVE-2025-55035 MEDIUM
Mattermost Desktop App <=5.13.0 - DoS
CVSS 6.1
CVE-2025-58289 MEDIUM
Huawei HarmonyOS - Denial of Service via Print Module
CVSS 5.9
CVE-2025-60004 HIGH
Juniper Junos OS and Junos OS Evolved - Unauthenticated Denial of Service via BGP EVPN Update Message
CVSS 7.5
CVE-2025-59958 MEDIUM
Juniper Junos OS Evolved <22.4R3-EVO/23.2<23.2R2-EVO - DoS & Info Disclosure via Firewall Filter
CVSS 6.5
CVE-2025-61668 HIGH
Volto < 16.34.1, 17.0.0-17.22.1, 18.0.0-18.27.1, 19.0.0-alpha.1-19.0.0-alpha.5 - DoS via Specific URL
CVE-2025-58354 MEDIUM
Kata Containers <3.20.0 - Privilege Escalation
CVE-2025-10532 MEDIUM
Firefox < 143.0 and 140.3-140.* - Memory Corruption in JavaScript GC
CVSS 6.5
CVE-2025-8716 MEDIUM
Content Management <25.3 - Info Disclosure
CVE-2025-9998 MEDIUM
PcVue 12.0.0-12.0.30, 15.0.0-15.2.11, 16.0.0-16.3.2 - Denial of Service via Network Packet Sequence
CVE-2025-48581 HIGH
Android - Local Privilege Escalation via Apexd Session Overlap Logic Error
CVSS 8.4
CVE-2025-38566 CRITICAL
Linux Kernel 6.4-6.6.101, 6.7-6.12.41, 6.13-6.15.9, 6.16 - Denial of Service via NFS over TLS Alert Handling
CVSS 9.8
CVE-2025-24975 HIGH
Firebird <4.0.6.3183-6.0.0.609 - Segfault
CVSS 7.1
CVE-2025-24303 HIGH
Intel 800 Series Ethernet <1.17.2 - Privilege Escalation
CVSS 7.8
Details
Vulnerabilities 605
Exploit Likelihood Medium