CWE-770

High likelihood

Allocation of Resources Without Limits or Throttling

Parent: CWE-400 - Uncontrolled Resource Consumption

The product allocates a reusable resource or group of resources on behalf of an actor without imposing any intended restrictions on the size or number of resources that can be allocated.

1,858 vulnerabilities with CWE-770
CVE-2025-14876 MEDIUM
Red Hat Enterprise Linux 6-9 and OpenShift Container Platform 4 - Denial of Service via virtio-crypto AKCIPHER Path
CVSS 5.5
CVE-2025-58471 MEDIUM
Qsync Central 5.0.0.0-5.0.0.3 - Authenticated Denial of Service via Resource Exhaustion
CVSS 4.9
CVE-2025-57711 MEDIUM
Qsync Central 5.0.0.0-5.0.0.3 - Authenticated Denial of Service via Resource Exhaustion
CVSS 4.9
CVE-2025-57710 MEDIUM
Qsync Central 5.0.0.0-5.0.0.3 - Authenticated Denial of Service via Resource Exhaustion
CVSS 4.9
CVE-2025-57708 MEDIUM
Qsync Central 5.0.0.0-5.0.0.3 - Authenticated Denial of Service via Resource Exhaustion
CVSS 6.5
CVE-2025-54161 MEDIUM
QNAP File Station 5.5.6.4691-5.5.6.5067 - Authenticated Denial of Service via Resource Exhaustion
CVSS 4.9
CVE-2025-54155 MEDIUM
QNAP File Station 5.5.6.4691-5.5.6.5017 - Authenticated Denial of Service
CVSS 4.9
CVE-2025-54151 MEDIUM
Qsync Central 5.0.0.0-5.0.0.3 - Denial of Service via Uncontrolled Resource Consumption
CVSS 5.5
CVE-2025-54150 MEDIUM
Qsync Central 5.0.0.0-5.0.0.3 - Authenticated Denial of Service via Uncontrolled Resource Consumption
CVSS 5.5
CVE-2025-54149 MEDIUM
Qsync Central 5.0.0.0-5.0.0.3 - Authenticated Denial of Service via Uncontrolled Resource Consumption
CVSS 5.5
CVE-2025-8099 HIGH
GitLab 10.8-18.6.5, 18.7-18.7.3, 18.8-18.8.3 - Unauthenticated Denial of Service via GraphQL Query Flooding
CVSS 7.5
CVE-2025-15317 MEDIUM
Tanium Server 7.4.6-7.4.6.1154 - Uncontrolled Resource Consumption
CVSS 6.5
CVE-2025-31990 MEDIUM
HCL DevOps Velocity < 5.1.7 - Denial of Service via Unenforced API Rate Limiting
CVSS 6.8
CVE-2025-32393 MEDIUM
AutoGPT <autogpt-platform-beta-v0.6.32 - DoS
CVSS 6.5
CVE-2025-1823 LOW
IBM Jazz Reporting Service - Authenticated Denial of Service via SQL Query Memory Exhaustion
CVSS 3.5
CVE-2025-58348 MEDIUM
Samsung Mobile/Wearable Processor - Memory Corruption
CVSS 5.5
CVE-2025-58347 MEDIUM
Samsung Mobile/Wear Processor - Memory Corruption
CVSS 5.5
CVE-2025-58346 MEDIUM
Samsung Mobile/Wear Proc - Memory Corruption
CVSS 5.5
CVE-2025-58345 MEDIUM
Samsung Mobile/Wear Processor - Memory Corruption
CVSS 5.5
CVE-2025-58344 MEDIUM
Samsung Mobile/Wear Processor - Memory Corruption
CVSS 6.2
CVE-2025-58343 MEDIUM
Samsung Mobile/Wear Processor - Memory Corruption
CVSS 5.5
CVE-2025-58342 MEDIUM
Samsung Mobile/Wear Proc - Memory Corruption
CVSS 6.2
CVE-2025-58341 MEDIUM
Samsung Mobile/Wearable Processor - Memory Corruption
CVSS 6.2
CVE-2025-58340 MEDIUM
Samsung Mobile/Wear Processor - Memory Corruption
CVSS 6.2
CVE-2025-36387 MEDIUM
IBM Db2 11.5.0-11.5.9 - Authenticated Denial of Service via Crafted Query
CVSS 6.5
Details
Vulnerabilities 1,858
Exploit Likelihood High