Vulnerabilities > Uncontrolled Recursion

DATE CVE VULNERABILITY TITLE RISK
2022-08-10 CVE-2022-30635 Uncontrolled Recursion vulnerability in Golang GO
Uncontrolled recursion in Decoder.Decode in encoding/gob before Go 1.17.12 and Go 1.18.4 allows an attacker to cause a panic due to stack exhaustion via a message which contains deeply nested structures.
network
low complexity
golang CWE-674
7.5
2022-08-01 CVE-2022-37315 Uncontrolled Recursion vulnerability in Graphql-Go Project Graphql-Go
graphql-go (aka GraphQL for Go) through 0.8.0 has infinite recursion in the type definition parser.
network
low complexity
graphql-go-project CWE-674
7.5
2022-08-01 CVE-2022-31173 Uncontrolled Recursion vulnerability in Juniper Project Juniper
Juniper is a GraphQL server library for Rust.
network
low complexity
juniper-project CWE-674
7.5
2022-07-13 CVE-2019-10761 Uncontrolled Recursion vulnerability in VM2 Project VM2
This affects the package vm2 before 3.6.11.
network
low complexity
vm2-project CWE-674
8.3
2022-06-09 CVE-2022-31019 Uncontrolled Recursion vulnerability in Vapor
Vapor is a server-side Swift HTTP web framework.
network
low complexity
vapor CWE-674
7.5
2022-05-18 CVE-2022-30974 Uncontrolled Recursion vulnerability in multiple products
compile in regexp.c in Artifex MuJS through 1.2.0 results in stack consumption because of unlimited recursion, a different issue than CVE-2019-11413.
local
low complexity
artifex debian fedoraproject CWE-674
5.5
2022-04-20 CVE-2022-24675 Uncontrolled Recursion vulnerability in multiple products
encoding/pem in Go before 1.17.9 and 1.18.x before 1.18.1 has a Decode stack overflow via a large amount of PEM data.
network
low complexity
golang fedoraproject netapp CWE-674
7.5
2022-04-05 CVE-2022-23974 Uncontrolled Recursion vulnerability in Apache Pinot
In 0.9.3 or older versions of Apache Pinot segment upload path allowed segment directories to be imported into pinot tables.
network
low complexity
apache CWE-674
7.5
2022-04-05 CVE-2021-41752 Uncontrolled Recursion vulnerability in Jerryscript
Stack overflow vulnerability in Jerryscript before commit e1ce7dd7271288be8c0c8136eea9107df73a8ce2 on Oct 20, 2021 due to an unbounded recursive call to the new opt() function.
network
low complexity
jerryscript CWE-674
critical
9.8
2022-03-26 CVE-2022-27943 Uncontrolled Recursion vulnerability in multiple products
libiberty/rust-demangle.c in GNU GCC 11.2 allows stack consumption in demangle_const, as demonstrated by nm-new.
local
low complexity
gnu fedoraproject CWE-674
5.5