CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
Parent: CWE-834 - Excessive Iteration
The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.
825 vulnerabilities with CWE-835
CVE-2026-23472
MEDIUM
serial: core: fix infinite loop in handle_tx() for PORT_UNKNOWN
CVSS 5.5
CVE-2026-23451
HIGH
bonding: prevent potential infinite loop in bond_header_parse()
CVSS 7.5
CVE-2026-33891
HIGH
Forge has Denial of Service via Infinite Loop in BigInteger.modInverse() with Zero Input
CVSS 7.5
CVE-2026-33699
HIGH
pypdf: Possible infinite loop during recovery attempts in DictionaryObject.read_from_stream
CVSS 7.5
CVE-2026-32287
HIGH
Infinite loop in github.com/antchfx/xpath
CVSS 7.5
CVE-2026-23298
MEDIUM
can: ucan: Fix infinite loop from zero-length messages
CVSS 5.5
CVE-2026-4598
HIGH
jsrsasign < 11.1.1 - Denial of Service via Infinite Loop in bnModInverse
CVSS 7.5
CVE-2026-33013
HIGH
Micronaut vulnerable to DoS via crafted form-urlencoded body binding with descending array indices
CVSS 7.5
CVE-2026-32889
MEDIUM
tinytag: Denial of Service via non-terminating SYLT frame parsing loop
CVSS 6.5
CVE-2026-32875
HIGH
UltraJSON 5.10-5.11.0 Indent Handling - Integer Overflow Denial of Service
CVSS 7.5
CVE-2026-32873
HIGH
ewe: Loop with Unreachable Exit Condition ('Infinite Loop')
CVSS 7.5
CVE-2026-32256
HIGH
music-metadata <11.12.3 ASF Parser - Infinite Loop
CVSS 7.5
CVE-2026-4179
MEDIUM
stm32: usb: Infinite while loop in Interrupt Handler
CVSS 6.1
CVE-2026-32777
MEDIUM
libexpat < 2.7.5 - Denial of Service via Infinite Loop in DTD Parsing
CVSS 4.0
CVE-2026-4111
HIGH
Red Hat Enterprise Linux - Denial of Service via RAR5 Archive Decompression Infinite Loop
CVSS 7.5
CVE-2026-31808
MEDIUM
file-type 13.0.0-21.3.0 - Denial of Service via ASF Sub-Header Size Field
CVSS 5.3
CVE-2026-2219
HIGH
dpkg 1.21.18-1.23.6 - Denial of Service via Zstd Decompression Infinite Loop
CVSS 7.5
CVE-2026-20054
MEDIUM
Cisco Snort 3 - Unauthenticated Denial of Service via VBA Decompression
CVSS 5.8
CVE-2026-27628
HIGH
pypdf < 6.7.2 - Denial of Service via Infinite Loop
CVSS 7.5
CVE-2026-26283
MEDIUM
ImageMagick <7.1.2-15/<6.9.13-40 - DoS
CVSS 6.2
CVE-2026-26066
MEDIUM
ImageMagick <7.1.2-15/6.9.13-40 - DoS
CVSS 6.2
CVE-2026-27024
MEDIUM
pypdf < 6.7.1 - Denial of Service via Infinite Loop in TreeObject Children Access
CVSS 5.5
CVE-2026-2739
MEDIUM
bn.js <5.2.3 - DoS
CVSS 5.3
CVE-2026-27114
HIGH
NanaZip 5.0.1252.0-6.0.1630.0 - DoS
CVSS 7.5
CVE-2026-23220
MEDIUM
Linux Kernel - Infinite Loop via SMB2 Signature Verification Error Handling
CVSS 5.5
Details
Vulnerabilities
825