Vulnerabilities > Always-Incorrect Control Flow Implementation

DATE CVE VULNERABILITY TITLE RISK
2023-04-10 CVE-2023-1668 Always-Incorrect Control Flow Implementation vulnerability in multiple products
A flaw was found in openvswitch (OVS).
network
low complexity
cloudbase debian redhat CWE-670
8.2
2023-01-26 CVE-2023-20915 Always-Incorrect Control Flow Implementation vulnerability in Google Android
In addOrReplacePhoneAccount of PhoneAccountRegistrar.java, there is a possible way to enable a phone account without user interaction due to a logic error in the code.
local
low complexity
google CWE-670
7.8
2023-01-26 CVE-2023-20921 Always-Incorrect Control Flow Implementation vulnerability in Google Android
In onPackageRemoved of AccessibilityManagerService.java, there is a possibility to automatically grant accessibility services due to a logic error in the code.
local
low complexity
google CWE-670
7.3
2022-11-12 CVE-2022-45196 Always-Incorrect Control Flow Implementation vulnerability in Hyperledger Fabric 2.3
Hyperledger Fabric 2.3 allows attackers to cause a denial of service (orderer crash) by repeatedly sending a crafted channel tx with the same Channel name.
network
low complexity
hyperledger CWE-670
7.5
2022-10-25 CVE-2022-39354 Always-Incorrect Control Flow Implementation vulnerability in EVM Project EVM
SputnikVM, also called evm, is a Rust implementation of Ethereum Virtual Machine.
network
low complexity
evm-project CWE-670
7.5
2022-06-09 CVE-2022-29255 Always-Incorrect Control Flow Implementation vulnerability in Vyperlang Vyper
Vyper is a Pythonic Smart Contract Language for the ethereum virtual machine.
network
low complexity
vyperlang CWE-670
7.5
2022-03-16 CVE-2021-45852 Always-Incorrect Control Flow Implementation vulnerability in Projectworlds Hospital Management System in PHP 1.0
An issue was discovered in Projectworlds Hospital Management System v1.0.
network
low complexity
projectworlds CWE-670
5.3
2022-01-19 CVE-2022-21679 Always-Incorrect Control Flow Implementation vulnerability in Istio 1.12.0/1.12.1
Istio is an open platform to connect, manage, and secure microservices.
network
low complexity
istio CWE-670
critical
9.8
2021-12-23 CVE-2021-38019 Always-Incorrect Control Flow Implementation vulnerability in multiple products
Insufficient policy enforcement in CORS in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
network
low complexity
google fedoraproject debian CWE-670
6.5
2021-11-17 CVE-2021-43979 Always-Incorrect Control Flow Implementation vulnerability in Openpolicyagent Gatekeeper
Styra Open Policy Agent (OPA) Gatekeeper through 3.7.0 mishandles concurrency, sometimes resulting in incorrect access control.
network
low complexity
openpolicyagent CWE-670
5.3