CWE-908

Medium likelihood

Use of Uninitialized Resource

Parent: CWE-665 - Improper Initialization

The product uses or accesses a resource that has not been initialized.

761 vulnerabilities with CWE-908
CVE-2026-31693 HIGH
cifs: some missing initializations on replay
CVSS 7.8
CVE-2026-7141 MEDIUM
vllm KV Block kv_cache_interface.py has_mamba_layers uninitialized resource
CVSS 5.6
CVE-2026-31626 HIGH
staging: rtl8723bs: initialize le_tmp64 in rtw_BIP_verify()
CVSS 7.1
CVE-2026-31621 MEDIUM
bnge: return after auxiliary_device_uninit() in error path
CVSS 5.5
CVE-2026-31492 MEDIUM
RDMA/irdma: Initialize free_qp completion before using it
CVSS 5.5
CVE-2026-6749 HIGH
Information disclosure due to uninitialized memory in the Graphics: Canvas2D component
CVSS 7.5
CVE-2026-26175 MEDIUM
Windows Boot Manager Security Feature Bypass Vulnerability
CVSS 4.6
CVE-2026-31428 MEDIUM
netfilter: nfnetlink_log: fix uninitialized padding leak in NFULA_PAYLOAD
CVSS 5.5
CVE-2026-31427 MEDIUM
netfilter: nf_conntrack_sip: fix use of uninitialized rtp_addr in process_sdp
CVSS 5.5
CVE-2026-34543 HIGH
OpenEXR: Heap information disclosure in PXR24 decompression via unchecked decompressed size (undo_pxr24_impl)
CVSS 7.5
CVE-2026-27496 MEDIUM
n8n has In-Process Memory Disclosure in its Task Runner
CVSS 6.5
CVE-2026-23358 MEDIUM
drm/amdgpu: Fix error handling in slot reset
CVSS 5.5
CVE-2026-23317 HIGH
drm/vmwgfx: Return the correct value in vmw_translate_ptr functions
CVSS 7.8
CVE-2026-23282 MEDIUM
smb: client: fix oops due to uninitialised var in smb2_unlink()
CVSS 5.5
CVE-2026-4716 CRITICAL
Incorrect boundary conditions, uninitialized memory in the JavaScript Engine component
CVSS 9.1
CVE-2026-4715 CRITICAL
Uninitialized memory in the Graphics: Canvas2D component
CVSS 9.1
CVE-2026-4147 MEDIUM
MongoDB Server < 8.2.6 - Stack Memory Disclosure via filemd5
CVSS 6.5
CVE-2026-3497 HIGH
OpenSSH GSSAPI Patches in Ubuntu - Use of Uninitialized Resource via Unexpected GSSAPI Message
CVSS 7.5
CVE-2026-2806 CRITICAL
Firefox < 148.0 - Use of Uninitialized Variable in Graphics Text Component
CVSS 9.1
CVE-2026-2794 HIGH
Firefox < 148.0 - Information Disclosure via Uninitialized Memory
CVSS 7.5
CVE-2026-2044 HIGH
GIMP - Remote Code Execution via PGM File Parsing Use of Uninitialized Memory
CVSS 7.8
CVE-2026-23123 MEDIUM
Linux Kernel - Use-After-Free in Interconnect Debugfs
CVSS 5.5
CVE-2026-23101 MEDIUM
Linux Kernel - Use of Uninitialized Resource in LED Class Device Registration
CVSS 4.7
CVE-2026-24826 CRITICAL
cadaver turso3d - Memory Safety and Divide-by-Zero Flaws
CVE-2026-23007 MEDIUM
Linux Kernel 6.11-6.18.7 - Uninitialized Memory Exposure in Block Integrity Buffer
CVSS 5.5
Details
Vulnerabilities 761
Exploit Likelihood Medium