CWE-405

CWE-405 · 5 records · 3 with a public proof-of-concept

Records the NVD classes under CWE-405, highest CVSS first.

  1. HIGH 7.5CVE-2026-104431public PoC

    Zebra before 6.0.0 contains a denial of service vulnerability that allows unauthenticated peers to stall Tokio workers by submitting mempool transactions requiring expensive synchronous script verification. Attackers can send non-standard high-sigop P2SH trans…

    AI risk analysis on Exploit-DB.ai →

  2. HIGH 7.5CVE-2026-104423public PoC

    Zebra (zebrad) before 6.2.1 contains an asymmetric resource consumption vulnerability that allows unauthenticated peers to stall block verification by pushing V6 mempool transactions with invalid Halo2 proofs. Attackers can flood the shared unprioritized Halo2…

    AI risk analysis on Exploit-DB.ai →

  3. MEDIUM 5.3CVE-2026-104425public PoC

    ZcashFoundation Zebra before 6.1.0 contains a resource exhaustion vulnerability that allows unauthenticated peers to degrade block processing by pushing transactions with invalid Orchard proofs without being misbehavior-scored. Attackers can repeatedly push in…

    AI risk analysis on Exploit-DB.ai →

  4. MEDIUM 5.3CVE-2026-75029

    In a query response, an attacker may send `named` multiple copies of a record that should only exist once (such as an SOA record). If the RDATA is the same on all the copies, the record is appended to the in-memory RDATA set, which can cause increased memory u…

    AI risk analysis on Exploit-DB.ai →

  5. UNSCOREDCVE-2026-103880

    Asymmetric Resource Consumption vulnerability in Apache Directory LDAP API. Storing a password using the bcrypt algorithm with a high force like 30 in a LDAP server that supports this algorithm will cause the server CPU to  run for hours checking the creden…

    AI risk analysis on Exploit-DB.ai →