Vulnerabilities > Allocation of Resources Without Limits or Throttling

DATE CVE VULNERABILITY TITLE RISK
2023-08-02 CVE-2023-29408 Allocation of Resources Without Limits or Throttling vulnerability in multiple products
The TIFF decoder does not place a limit on the size of compressed tile data.
network
low complexity
golang fedoraproject CWE-770
6.5
2023-08-02 CVE-2022-46485 Allocation of Resources Without Limits or Throttling vulnerability in Ngsurvey 2.4.28
Data Illusion Survey Software Solutions ngSurvey version 2.4.28 and below is vulnerable to Denial of Service if a survey contains a "Text Field", "Comment Field" or "Contact Details".
network
low complexity
ngsurvey CWE-770
7.5
2023-07-28 CVE-2023-37906 Allocation of Resources Without Limits or Throttling vulnerability in Discourse
Discourse is an open source discussion platform.
network
low complexity
discourse CWE-770
4.3
2023-07-28 CVE-2023-38498 Allocation of Resources Without Limits or Throttling vulnerability in Discourse
Discourse is an open source discussion platform.
network
low complexity
discourse CWE-770
6.5
2023-07-28 CVE-2023-38684 Allocation of Resources Without Limits or Throttling vulnerability in Discourse
Discourse is an open source discussion platform.
network
low complexity
discourse CWE-770
7.5
2023-07-27 CVE-2023-37900 Allocation of Resources Without Limits or Throttling vulnerability in Cncf Crossplane
Crossplane is a framework for building cloud native control planes without needing to write code.
network
low complexity
cncf CWE-770
2.7
2023-07-27 CVE-2023-38492 Allocation of Resources Without Limits or Throttling vulnerability in Getkirby Kirby
Kirby is a content management system.
network
low complexity
getkirby CWE-770
7.5
2023-07-26 CVE-2023-3242 Allocation of Resources Without Limits or Throttling vulnerability in Br-Automation Automation Runtime
Allocation of Resources Without Limits or Throttling, Improper Initialization vulnerability in B&R Industrial Automation B&R Automation Runtime allows Flooding, Leveraging Race Conditions.This issue affects B&R Automation Runtime: <G4.93.
network
high complexity
br-automation CWE-770
5.9
2023-07-21 CVE-2023-3603 Allocation of Resources Without Limits or Throttling vulnerability in Libssh
A missing allocation check in sftp server processing read requests may cause a NULL dereference on low-memory conditions.
network
low complexity
libssh CWE-770
6.5
2023-07-20 CVE-2023-32481 Allocation of Resources Without Limits or Throttling vulnerability in Dell Wyse Management Suite
Wyse Management Suite versions prior to 4.0 contain a denial-of-service vulnerability.
network
low complexity
dell CWE-770
6.5