Vulnerabilities > Improper Handling of Syntactically Invalid Structure

DATE CVE VULNERABILITY TITLE RISK
2022-05-05 CVE-2021-38443 Improper Handling of Syntactically Invalid Structure vulnerability in Eclipse Cyclonedds
Eclipse CycloneDDS versions prior to 0.8.0 improperly handle invalid structures, which may allow an attacker to write arbitrary values in the XML parser.
network
low complexity
eclipse CWE-228
critical
9.8
2021-05-28 CVE-2020-27847 Improper Handling of Syntactically Invalid Structure vulnerability in Linuxfoundation DEX
A vulnerability exists in the SAML connector of the github.com/dexidp/dex library used to process SAML Signature Validation.
network
low complexity
linuxfoundation CWE-228
critical
9.8