Vulnerabilities > Uncontrolled Recursion

DATE CVE VULNERABILITY TITLE RISK
2022-02-18 CVE-2022-25313 Uncontrolled Recursion vulnerability in multiple products
In Expat (aka libexpat) before 2.4.5, an attacker can trigger stack exhaustion in build_model via a large nesting depth in the DTD element.
6.5
2022-02-04 CVE-2022-23591 Uncontrolled Recursion vulnerability in Google Tensorflow
Tensorflow is an Open Source Machine Learning Framework.
network
low complexity
google CWE-674
7.5
2022-01-28 CVE-2022-23889 Uncontrolled Recursion vulnerability in Yzmcms 6.3
The comment function in YzmCMS v6.3 was discovered as being able to be operated concurrently, allowing attackers to create an unusually large number of comments.
network
low complexity
yzmcms CWE-674
5.3
2022-01-27 CVE-2021-46505 Uncontrolled Recursion vulnerability in Jsish 3.5.0
Jsish v3.5.0 was discovered to contain a stack overflow via /usr/lib/x86_64-linux-gnu/libasan.so.4+0x5b1e5.
local
low complexity
jsish CWE-674
5.5
2022-01-27 CVE-2021-46507 Uncontrolled Recursion vulnerability in Jsish 3.5.0
Jsish v3.5.0 was discovered to contain a stack overflow via Jsi_LogMsg at src/jsiUtils.c.
local
low complexity
jsish CWE-674
5.5
2022-01-27 CVE-2021-46509 Uncontrolled Recursion vulnerability in Cesanta MJS 2.20.0
Cesanta MJS v2.20.0 was discovered to contain a stack overflow via snquote at mjs/src/mjs_json.c.
local
low complexity
cesanta CWE-674
7.8
2022-01-21 CVE-2022-21708 Uncontrolled Recursion vulnerability in Graphql-Go Project Graphql-Go 1.0.0/1.1.0/1.2.0
graphql-go is a GraphQL server with a focus on ease of use.
network
low complexity
graphql-go-project CWE-674
6.5
2022-01-14 CVE-2021-46195 Uncontrolled Recursion vulnerability in GNU GCC 12.0
GCC v12.0 was discovered to contain an uncontrolled recursion via the component libiberty/rust-demangle.c.
local
low complexity
gnu CWE-674
5.5
2022-01-05 CVE-2021-45832 Uncontrolled Recursion vulnerability in Hdfgroup Hdf5 1.13.11
A Stack-based Buffer Overflow Vulnerability exists in HDF5 1.13.1-1 at at hdf5/src/H5Eint.c, which causes a Denial of Service (context-dependent).
local
low complexity
hdfgroup CWE-674
5.5
2021-12-18 CVE-2021-45105 Uncontrolled Recursion vulnerability in multiple products
Apache Log4j2 versions 2.0-alpha1 through 2.16.0 (excluding 2.12.3 and 2.3.1) did not protect from uncontrolled recursion from self-referential lookups.
network
high complexity
apache netapp debian sonicwall oracle CWE-674
5.9