CWE-770
High likelihoodAllocation of Resources Without Limits or Throttling
The product allocates a reusable resource or group of resources on behalf of an actor without imposing any intended restrictions on the size or number of resources that can be allocated.
1,884 vulnerabilities with CWE-770
CVE-2022-31184
MEDIUM
Discourse < 2.8.6 - Unauthenticated Mass Spam Email via Email Activation Route
CVSS 6.5
CVE-2022-22212
HIGH
Juniper Networks Junos OS Evolved - DoS
CVSS 7.5
CVE-2022-32958
HIGH
Teamplus Pro < 3.011.6.0.1 - Denial of Service via Oversized Chat Message
CVSS 7.7
CVE-2022-29286
HIGH
Pexip Infinity 27-27.9 - Denial of Service via Registrar Resource Mishandling
CVSS 7.5
CVE-2022-2406
MEDIUM
Mattermost <= 6.7.0 - Authenticated Denial of Service via Slack Import REST API
CVSS 4.3
CVE-2022-31080
MEDIUM
KubeEdge <1.11.1, <1.10.2, <1.9.4 - DoS
CVSS 4.4
CVE-2022-31079
MEDIUM
KubeEdge <1.11.1, 1.10.2, 1.9.4 - DoS
CVSS 4.4
CVE-2022-31078
MEDIUM
KubeEdge < 1.9.4, 1.10.0-1.10.1 - Authenticated Denial of Service via CloudCore Router REST Handler
CVSS 4.4
CVE-2022-31075
MEDIUM
KubeEdge < 1.9.4, 1.10.0-1.10.1, >=1.11.0 <1.11.1 - Authenticated Denial of Service via Large HTTP Request Body
CVSS 4.9
CVE-2022-32206
MEDIUM
curl < 7.84.0 - Denial of Service via Unbounded HTTP Compression Chain
CVSS 6.5
CVE-2022-32205
MEDIUM
curl 7.71.0-7.84.0 - Denial of Service via Excessive Set-Cookie Headers
CVSS 4.3
CVE-2022-34750
HIGH
MediaWiki < 1.38.1 - Denial of Service via Unvalidated Lemma Length in Wikibase Lexeme
CVSS 7.5
CVE-2022-31016
MEDIUM
Argo CD 0.7.0-2.1.15 - Authenticated Denial of Service via Large File Processing
CVSS 6.5
CVE-2022-21952
HIGH
SUSE Manager Server <4.1.46, <4.2.37 - DoS
CVSS 7.5
CVE-2022-27871
HIGH
Autodesk AutoCAD, Advance Steel, Revit, Design Review, Navisworks - Memory Corruption via PDFTron PDF Parser
CVSS 7.8
CVE-2022-22979
HIGH
Spring Cloud Function < 3.2.6 - Denial of Service via Function Catalog Caching Issue
CVSS 7.5
CVE-2022-2134
MEDIUM
GitHub inventree/inventree <0.8.0 - DoS
CVSS 6.5
CVE-2022-29863
HIGH
OPC UA .NET Standard Stack < 1.4.368.58 - Denial of Service via Crafted Message
CVSS 7.5
CVE-2022-20143
MEDIUM
Android - Local Denial of Service via ZenModeHelper Resource Exhaustion
CVSS 5.5
CVE-2022-32559
CRITICAL
Couchbase Server 4.0.0-7.0.3 - Resource Exhaustion via Random HTTP Requests
CVSS 9.1
CVE-2022-31287
MEDIUM
Bento4 1.2 - Allocation of Resources Without Limits or Throttling in Ap4RtpAtom.cpp
CVSS 5.5
CVE-2022-31285
MEDIUM
Bento4 1.2 - Denial of Service via Memory Allocation in Ap4Array.h
CVSS 5.5
CVE-2022-30522
HIGH
Apache HTTP Server 2.4.53 - Denial of Service via mod_sed Large Input Transformation
CVSS 7.5
CVE-2022-29404
HIGH
Apache HTTP Server < 2.4.53 - Denial of Service via Lua Script r:parsebody(0)
CVSS 7.5
CVE-2022-1708
HIGH
CRI-O <1.19.7 and >=1.24.0 <1.24.1 - Denial of Service via ExecSync Output Handling
CVSS 7.5
Details
Vulnerabilities
1,884
Exploit Likelihood
High