Vulnerabilities > Allocation of Resources Without Limits or Throttling

DATE CVE VULNERABILITY TITLE RISK
2024-01-09 CVE-2024-22164 Allocation of Resources Without Limits or Throttling vulnerability in Splunk Enterprise Security 7.1.0/7.1.1
In Splunk Enterprise Security (ES) versions below 7.1.2, an attacker can use investigation attachments to perform a denial of service (DoS) to the Investigation.
network
low complexity
splunk CWE-770
4.3
2024-01-04 CVE-2024-0241 Allocation of Resources Without Limits or Throttling vulnerability in Diaconou Encodedid::Rails
encoded_id-rails versions before 1.0.0.beta2 are affected by an uncontrolled resource consumption vulnerability.
network
low complexity
diaconou CWE-770
7.5
2024-01-03 CVE-2024-21634 Allocation of Resources Without Limits or Throttling vulnerability in Amazon ION
Amazon Ion is a Java implementation of the Ion data notation.
network
low complexity
amazon CWE-770
7.5
2024-01-03 CVE-2023-46738 Allocation of Resources Without Limits or Throttling vulnerability in Linuxfoundation Cubefs
CubeFS is an open-source cloud-native file storage system.
network
low complexity
linuxfoundation CWE-770
6.5
2023-12-27 CVE-2023-3171 Allocation of Resources Without Limits or Throttling vulnerability in Redhat Jboss Enterprise Application Platform 7.4
A flaw was found in EAP-7 during deserialization of certain classes, which permits instantiation of HashMap and HashTable with no checks on resources consumed.
network
low complexity
redhat CWE-770
7.5
2023-12-22 CVE-2023-50730 Allocation of Resources Without Limits or Throttling vulnerability in Typelevel Grackle
Grackle is a GraphQL server written in functional Scala, built on the Typelevel stack.
network
low complexity
typelevel CWE-770
7.5
2023-12-14 CVE-2023-6563 Allocation of Resources Without Limits or Throttling vulnerability in Redhat products
An unconstrained memory consumption vulnerability was discovered in Keycloak.
network
low complexity
redhat CWE-770
7.7
2023-12-12 CVE-2023-5379 Allocation of Resources Without Limits or Throttling vulnerability in Redhat products
A flaw was found in Undertow.
network
low complexity
redhat CWE-770
7.5
2023-12-12 CVE-2023-50247 Allocation of Resources Without Limits or Throttling vulnerability in Dena H2O
h2o is an HTTP server with support for HTTP/1.x, HTTP/2 and HTTP/3.
network
low complexity
dena CWE-770
7.5
2023-12-10 CVE-2023-50455 Allocation of Resources Without Limits or Throttling vulnerability in Zammad 6.1.0/6.2.0
An issue was discovered in Zammad before 6.2.0.
network
low complexity
zammad CWE-770
7.5