Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2023-02-27 CVE-2023-23524 Resource Exhaustion vulnerability in Apple products
A denial-of-service issue was addressed with improved input validation.
network
low complexity
apple CWE-400
7.5
2023-02-25 CVE-2023-26104 Resource Exhaustion vulnerability in Lite-Web-Server Project Lite-Web-Server
All versions of the package lite-web-server are vulnerable to Denial of Service (DoS) when an attacker sends an HTTP request and includes control characters that the decodeURI() function is unable to parse.
network
low complexity
lite-web-server-project CWE-400
7.5
2023-02-25 CVE-2023-25816 Resource Exhaustion vulnerability in Nextcloud Server 25.0.0/25.0.2
Nextcloud is an Open Source private cloud software.
network
low complexity
nextcloud CWE-400
6.5
2023-02-23 CVE-2023-23296 Resource Exhaustion vulnerability in Korenix products
Korenix JetWave 4200 Series 1.3.0 and JetWave 3200 Series 1.6.0 are vulnerable to Denial of Service via /goform/formDefault.
network
low complexity
korenix CWE-400
6.5
2023-02-21 CVE-2023-23009 Resource Exhaustion vulnerability in multiple products
Libreswan 4.9 allows remote attackers to cause a denial of service (assert failure and daemon restart) via crafted TS payload with an incorrect selector length.
network
low complexity
libreswan debian CWE-400
6.5
2023-02-16 CVE-2023-0662 Resource Exhaustion vulnerability in PHP
In PHP 8.0.X before 8.0.28, 8.1.X before 8.1.16 and 8.2.X before 8.2.3, excessive number of parts in HTTP form upload can cause high resource consumption and excessive number of log entries.
network
low complexity
php CWE-400
7.5
2023-02-15 CVE-2023-24580 Resource Exhaustion vulnerability in multiple products
An issue was discovered in the Multipart Request Parser in Django 3.2 before 3.2.18, 4.0 before 4.0.10, and 4.1 before 4.1.7.
network
low complexity
djangoproject debian CWE-400
7.5
2023-02-12 CVE-2022-40513 Resource Exhaustion vulnerability in Qualcomm products
Transient DOS due to uncontrolled resource consumption in WLAN firmware when peer is freed in non qos state.
network
low complexity
qualcomm CWE-400
7.5
2023-02-09 CVE-2023-23625 Resource Exhaustion vulnerability in Protocol Go-Unixfs
go-unixfs is an implementation of a unix-like filesystem on top of an ipld merkledag.
network
low complexity
protocol CWE-400
7.5
2023-02-09 CVE-2023-23631 Resource Exhaustion vulnerability in Protocol Go-Unixfsnode
github.com/ipfs/go-unixfsnode is an ADL IPLD prime node that wraps go-codec-dagpb's implementation of protobuf to enable pathing.
network
low complexity
protocol CWE-400
7.5