Vulnerabilities > Uncontrolled Recursion

DATE CVE VULNERABILITY TITLE RISK
2021-05-28 CVE-2020-36373 Uncontrolled Recursion vulnerability in Cesanta MJS 1.20.1
Stack overflow vulnerability in parse_shifts Cesanta MJS 1.20.1, allows remote attackers to cause a Denial of Service (DoS) via a crafted file.
local
low complexity
cesanta CWE-674
5.5
2021-05-28 CVE-2020-36374 Uncontrolled Recursion vulnerability in Cesanta MJS 1.20.1
Stack overflow vulnerability in parse_comparison Cesanta MJS 1.20.1, allows remote attackers to cause a Denial of Service (DoS) via a crafted file.
local
low complexity
cesanta CWE-674
5.5
2021-05-28 CVE-2020-36375 Uncontrolled Recursion vulnerability in Cesanta MJS 1.20.1
Stack overflow vulnerability in parse_equality Cesanta MJS 1.20.1, allows remote attackers to cause a Denial of Service (DoS) via a crafted file.
local
low complexity
cesanta CWE-674
5.5
2021-05-27 CVE-2021-31525 Uncontrolled Recursion vulnerability in multiple products
net/http in Go before 1.15.12 and 1.16.x before 1.16.4 allows remote attackers to cause a denial of service (panic) via a large header to ReadRequest or ReadResponse.
network
high complexity
golang fedoraproject CWE-674
5.9
2021-05-26 CVE-2021-30470 Uncontrolled Recursion vulnerability in multiple products
A flaw was found in PoDoFo 0.9.7.
5.5
2021-05-26 CVE-2021-30471 Uncontrolled Recursion vulnerability in multiple products
A flaw was found in PoDoFo 0.9.7.
5.5
2021-05-20 CVE-2021-28903 Uncontrolled Recursion vulnerability in Cesnet Libyang
A stack overflow in libyang <= v1.0.225 can cause a denial of service through function lyxml_parse_mem().
network
low complexity
cesnet CWE-674
7.5
2021-05-20 CVE-2021-27434 Uncontrolled Recursion vulnerability in Unified-Automation .Net Based OPC UA Client/Server SDK 3.0.7
Products with Unified Automation .NET based OPC UA Client/Server SDK Bundle: Versions V3.0.7 and prior (.NET 4.5, 4.0, and 3.5 Framework versions only) are vulnerable to an uncontrolled recursion, which may allow an attacker to trigger a stack overflow.
network
low complexity
unified-automation CWE-674
7.5
2021-03-11 CVE-2020-1898 Uncontrolled Recursion vulnerability in Facebook Hhvm
The fb_unserialize function did not impose a depth limit for nested deserialization.
network
low complexity
facebook CWE-674
7.5
2021-03-09 CVE-2021-20255 Uncontrolled Recursion vulnerability in multiple products
A stack overflow via an infinite recursion vulnerability was found in the eepro100 i8255x device emulator of QEMU.
local
low complexity
qemu debian CWE-674
5.5