CWE-799

Improper Control of Interaction Frequency

Parent: CWE-691 - Insufficient Control Flow Management

The product does not properly limit the number or frequency of interactions that it has with an actor, such as the number of incoming requests.

66 vulnerabilities with CWE-799
CVE-2026-7402 HIGH
Improper Rate Limiting in MeWare Software's PDKS
CVSS 8.1
CVE-2026-41346 MEDIUM
OpenClaw 2026.2.26 < 2026.3.31 - Denial of Service via Improper Pending Pairing Request Cap Enforcement
CVSS 5.3
CVE-2026-41343 MEDIUM
OpenClaw < 2026.3.31 - Denial of Service via LINE Webhook Handler Pre-Auth Concurrency
CVSS 5.3
CVE-2026-41333 LOW
OpenClaw < 2026.3.31 - Authentication Rate Limiting Bypass via Fake DeviceToken
CVSS 3.7
CVE-2026-32729 HIGH
Runtipi <4.8.1 - Auth Bypass
CVSS 8.1
CVE-2026-22216 MEDIUM
wpDiscuz <7.6.47 - Missing Rate Limiting
CVSS 6.5
CVE-2026-30972 HIGH
Parse Server <9.5.2-alpha.10/8.6.23 - Auth Bypass
CVSS 7.5
CVE-2026-24017 HIGH
FortiWeb 7.0.0-8.0.2 - Auth Bypass
CVSS 8.1
CVE-2026-2110 LOW
Tasin1025 SwiftBuy <0f5011372e8d1d7edfd642d57d721c9fadc54ec7 - Auth...
CVSS 3.7
CVE-2026-1685 LOW
D-Link DIR-823X 250416 - Auth Bypass
CVSS 3.7
CVE-2026-1409 LOW
Beetel 777VR1 <01.00.09/01.00.09_55 - Auth Bypass
CVSS 2.0
CVE-2025-55268 MEDIUM
HCL Aftermarket DPC is affected by Spamming Vulnerability
CVSS 4.3
CVE-2025-13212 MEDIUM
IBM Aspera Console Denial of Service
CVSS 5.3
CVE-2025-13211 MEDIUM
IBM Aspera Orchestrator < 4.1.1 - Denial of Service
CVSS 5.3
CVE-2025-54321 CRITICAL
Ascertia SigningHub <8.6.8 - DoS
CVSS 9.8
CVE-2025-12547 LOW
LogicalDOC Community Edition <9.2.1 - Info Disclosure
CVSS 3.7
CVE-2025-12310 MEDIUM
VirtFusion <6.0.2 - Auth Bypass
CVSS 5.3
CVE-2025-11441 LOW
JhumanJ OpnForm <1.9.3 - Auth Bypass
CVSS 3.7
CVE-2025-10761 LOW
Harness 3.3.0 - Auth Bypass
CVSS 3.7
CVE-2025-57816 HIGH
Ethyca Fides < 2.69.1 - Denial of Service
CVSS 7.5
CVE-2025-9004 LOW
mtons mblog <3.5.0 - Auth Bypass
CVSS 3.7
CVE-2025-8927 LOW
mtons mblog <3.5.0 - Auth Bypass
CVSS 3.7
CVE-2025-8742 LOW
macrozheng mall 1.0.3 - Auth Bypass
CVSS 3.7
CVE-2025-7882 LOW
Mercusys MW301R 1.0.2 Build 190726 Rel.59423n - Auth Bypass
CVSS 3.1
CVE-2025-52880 MEDIUM
Komga <1.21.3 - XSS
CVSS 4.2
Details
Vulnerabilities 66