CWE-401

CWE-401 · 3 records · 3 with a public proof-of-concept

Records the NVD classes under CWE-401, highest CVSS first.

  1. HIGH 8.4CVE-2026-51400public PoC

    An issue in Vim Project v9.2.0389 and earlier allows a local attacker to execute arbitrary code via the vms_fixfilename() function within file vim/src/os_vms.c

    AI risk analysis on Exploit-DB.ai →

  2. HIGH 7.5CVE-2026-54876public PoC

    Issue summary: A malicious TLS server can cause a memory leak in a TLS client that has enabled OCSP response checking by sending an OCSP response that contains no single response entries. Impact summary: An attacker can leak an attacker-tunable amount of memo

    AI risk analysis on Exploit-DB.ai →

  3. HIGH 7.5CVE-2026-63252public PoC

    In Eclipse Milo versions 0.6.0 through 1.1.4, UASC server transport handlers fail to release retained partial message chunks when a channel disconnects, allowing a remote unauthenticated client to exhaust pooled direct memory by repeatedly sending incomplete c

    milo

    AI risk analysis on Exploit-DB.ai →