Vulnerabilities > Improper Control of Dynamically-Managed Code Resources

DATE CVE VULNERABILITY TITLE RISK
2023-06-26 CVE-2023-35930 Improper Control of Dynamically-Managed Code Resources vulnerability in Authzed Spicedb 1.22.0
SpiceDB is an open source, Google Zanzibar-inspired, database system for creating and managing security-critical application permissions.
network
low complexity
authzed CWE-913
5.3
2023-05-30 CVE-2023-33175 Improper Control of Dynamically-Managed Code Resources vulnerability in Toui Project Toui
ToUI is a Python package for creating user interfaces (websites and desktop apps) from HTML.
network
low complexity
toui-project CWE-913
7.5
2023-03-16 CVE-2022-43441 Improper Control of Dynamically-Managed Code Resources vulnerability in Ghost Sqlite3
A code execution vulnerability exists in the Statement Bindings functionality of Ghost Foundation node-sqlite3 5.1.1.
network
low complexity
ghost CWE-913
critical
9.8
2022-11-16 CVE-2022-44000 Improper Control of Dynamically-Managed Code Resources vulnerability in Backclick 5.9.63
An issue was discovered in BACKCLICK Professional 5.9.63.
network
low complexity
backclick CWE-913
critical
9.8
2022-09-13 CVE-2022-40634 Improper Control of Dynamically-Managed Code Resources vulnerability in Craftercms Crafter CMS
Improper Control of Dynamically-Managed Code Resources vulnerability in Crafter Studio of Crafter CMS allows authenticated developers to execute OS commands via FreeMarker SSTI.
network
low complexity
craftercms CWE-913
7.2
2022-09-13 CVE-2022-40635 Improper Control of Dynamically-Managed Code Resources vulnerability in Craftercms Crafter CMS
Improper Control of Dynamically-Managed Code Resources vulnerability in Crafter Studio of Crafter CMS allows authenticated developers to execute OS commands via Groovy Sandbox Bypass.
network
low complexity
craftercms CWE-913
7.2
2022-09-06 CVE-2022-36067 Improper Control of Dynamically-Managed Code Resources vulnerability in VM2 Project VM2
vm2 is a sandbox that can run untrusted code with whitelisted Node's built-in modules.
network
low complexity
vm2-project CWE-913
critical
10.0
2022-09-05 CVE-2022-39051 Improper Control of Dynamically-Managed Code Resources vulnerability in Otrs
Attacker might be able to execute malicious Perl code in the Template toolkit, by having the admin installing an unverified 3th party package
network
low complexity
otrs CWE-913
8.8
2022-06-14 CVE-2022-27889 Improper Control of Dynamically-Managed Code Resources vulnerability in Palantir Foundry Multipass
The Multipass service was found to have code paths that could be abused to cause a denial of service for authentication or authorization operations.
network
low complexity
palantir CWE-913
critical
9.1
2022-05-16 CVE-2021-23267 Improper Control of Dynamically-Managed Code Resources vulnerability in Craftercms Crafter CMS
Improper Control of Dynamically-Managed Code Resources vulnerability in Crafter Studio of Crafter CMS allows authenticated developers to execute OS commands via FreeMarker static methods.
network
low complexity
craftercms CWE-913
8.8