Vulnerabilities > Uncontrolled Recursion

DATE CVE VULNERABILITY TITLE RISK
2022-08-10 CVE-2022-30631 Uncontrolled Recursion vulnerability in Golang GO
Uncontrolled recursion in Reader.Read in compress/gzip before Go 1.17.12 and Go 1.18.4 allows an attacker to cause a panic due to stack exhaustion via an archive containing a large number of concatenated 0-length compressed files.
network
low complexity
golang CWE-674
7.5
2022-08-10 CVE-2022-30632 Uncontrolled Recursion vulnerability in Golang GO
Uncontrolled recursion in Glob in path/filepath before Go 1.17.12 and Go 1.18.4 allows an attacker to cause a panic due to stack exhaustion via a path containing a large number of path separators.
network
low complexity
golang CWE-674
7.5
2022-08-10 CVE-2022-30633 Uncontrolled Recursion vulnerability in Golang GO
Uncontrolled recursion in Unmarshal in encoding/xml before Go 1.17.12 and Go 1.18.4 allows an attacker to cause a panic due to stack exhaustion via unmarshalling an XML document into a Go struct which has a nested field that uses the 'any' field tag.
network
low complexity
golang CWE-674
7.5
2022-08-10 CVE-2022-30635 Uncontrolled Recursion vulnerability in Golang GO
Uncontrolled recursion in Decoder.Decode in encoding/gob before Go 1.17.12 and Go 1.18.4 allows an attacker to cause a panic due to stack exhaustion via a message which contains deeply nested structures.
network
low complexity
golang CWE-674
7.5
2022-08-01 CVE-2022-37315 Uncontrolled Recursion vulnerability in Graphql-Go Project Graphql-Go
graphql-go (aka GraphQL for Go) through 0.8.0 has infinite recursion in the type definition parser.
network
low complexity
graphql-go-project CWE-674
7.5
2022-08-01 CVE-2022-31173 Uncontrolled Recursion vulnerability in Juniper Project Juniper
Juniper is a GraphQL server library for Rust.
network
low complexity
juniper-project CWE-674
7.5
2022-07-13 CVE-2019-10761 Uncontrolled Recursion vulnerability in VM2 Project VM2
This affects the package vm2 before 3.6.11.
network
low complexity
vm2-project CWE-674
8.3
2022-06-09 CVE-2022-31019 Uncontrolled Recursion vulnerability in Vapor
Vapor is a server-side Swift HTTP web framework.
network
low complexity
vapor CWE-674
7.5
2022-05-18 CVE-2022-30974 Uncontrolled Recursion vulnerability in multiple products
compile in regexp.c in Artifex MuJS through 1.2.0 results in stack consumption because of unlimited recursion, a different issue than CVE-2019-11413.
local
low complexity
artifex debian fedoraproject CWE-674
5.5
2022-04-20 CVE-2022-24675 Uncontrolled Recursion vulnerability in multiple products
encoding/pem in Go before 1.17.9 and 1.18.x before 1.18.1 has a Decode stack overflow via a large amount of PEM data.
network
low complexity
golang fedoraproject netapp CWE-674
7.5