Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2023-03-31 CVE-2022-4899 Resource Exhaustion vulnerability in Facebook Zstandard 1.4.10
A vulnerability was found in zstd v1.4.10, where an attacker can supply empty string as an argument to the command line tool to cause buffer overrun.
network
low complexity
facebook CWE-400
7.5
2023-03-30 CVE-2023-28846 Resource Exhaustion vulnerability in Unpoly Unpoly-Rails
Unpoly is a JavaScript framework for server-side web applications.
network
low complexity
unpoly CWE-400
7.5
2023-03-28 CVE-2023-28626 Resource Exhaustion vulnerability in Comrak Project Comrak
comrak is a CommonMark + GFM compatible Markdown parser and renderer written in rust.
network
low complexity
comrak-project CWE-400
7.5
2023-03-27 CVE-2023-1654 Resource Exhaustion vulnerability in Gpac
Denial of Service in GitHub repository gpac/gpac prior to 2.4.0.
local
low complexity
gpac CWE-400
7.8
2023-03-24 CVE-2023-20910 Resource Exhaustion vulnerability in Google Android
In add of WifiNetworkSuggestionsManager.java, there is a possible way to trigger permanent DoS due to resource exhaustion.
local
low complexity
google CWE-400
5.5
2023-03-23 CVE-2023-1605 Resource Exhaustion vulnerability in Radare Radare2
Denial of Service in GitHub repository radareorg/radare2 prior to 5.8.6.
network
low complexity
radare CWE-400
7.5
2023-03-14 CVE-2023-23396 Resource Exhaustion vulnerability in Microsoft Office Online Server and Office web Apps Server
Microsoft Excel Denial of Service Vulnerability
network
low complexity
microsoft CWE-400
6.5
2023-03-14 CVE-2023-23411 Resource Exhaustion vulnerability in Microsoft products
Windows Hyper-V Denial of Service Vulnerability
local
low complexity
microsoft CWE-400
6.5
2023-03-14 CVE-2023-24862 Resource Exhaustion vulnerability in Microsoft products
Windows Secure Channel Denial of Service Vulnerability
local
low complexity
microsoft CWE-400
5.5
2023-03-14 CVE-2023-27270 Resource Exhaustion vulnerability in SAP Netweaver Application Server Abap
SAP NetWeaver Application Server for ABAP and ABAP Platform - versions 700, 701, 702, 731, 740, 750, 751, 752, 753, 754, 755, 756, 757, 791, has multiple vulnerabilities in a class for test purposes in which an attacker authenticated as a non-administrative user can craft a request with certain parameters, which will consume the server's resources sufficiently to make it unavailable.
network
low complexity
sap CWE-400
6.5