CWE-407

CWE-407 · 13 records · 11 with a public proof-of-concept

Records the NVD classes under CWE-407, highest CVSS first.

  1. HIGH 7.5CVE-2026-100700public PoC

    nodemailer before 10.0.6 contains a denial of service vulnerability in the addressparser free-text fallback regex pattern that exhibits quadratic backtracking behavior. Attackers can supply crafted email header values with long whitespace-free runs to block th…

    AI risk analysis on Exploit-DB.ai →

  2. HIGH 7.5CVE-2026-61814public PoC

    Jawn is an open source JSON parser. Prior to 1.7.0, Jawn's AsyncParser can perform quadratic work when a single JSON token is delivered across many small chunks because each absorb call rescans the incomplete token from the start. A remote attacker who control…

    AI risk analysis on Exploit-DB.ai →

  3. HIGH 7.5CVE-2026-87081public PoC

    Net::IDN::UTS46 versions before 2.590 for Perl allow CPU exhaustion via quadratic punycode encoding of an overlong label before the length check in to_ascii. to_ascii punycode encodes each label and only then applies the 63-byte DNS limit. encode_punycode in …

    AI risk analysis on Exploit-DB.ai →

  4. HIGH 7.5CVE-2026-87079public PoC

    Net::IDN::Punycode versions before 2.590 for Perl allow CPU exhaustion via quadratic insertion cost when decoding a long label in decode_punycode. The XS backend inserts each decoded code point into a UTF-8 buffer and finds the insertion point by scanning tha…

    AI risk analysis on Exploit-DB.ai →

  5. HIGH 7.5CVE-2026-92987public PoC

    roxmltree through 0.21.1 performs quadratic-time attribute and namespace validation during XML parsing without limits on attribute count. Attackers can craft XML documents with tens of thousands of attributes on a single element to consume excessive CPU time a…

    AI risk analysis on Exploit-DB.ai →

  6. MEDIUM 5.9CVE-2026-92091public PoC

    A flaw was found in jwcrypto. The JWK.import_key() function validates the key_ops JWK member for duplicate values using an algorithm with O(n^2) time complexity, and the length of key_ops is not bounded. A remote, unauthenticated attacker can supply a JWK with…

    AI risk analysis on Exploit-DB.ai →

  7. MEDIUM 5.3CVE-2026-102277public PoC

    The brace-expansion library generates arbitrary strings containing a common prefix and suffix. Prior to 1.1.21, 2.1.7, 3.0.9, and 5.0.12, the expand function handles untrusted {a},b}-shaped patterns with many trailing closing braces by restarting its scan once…

    AI risk analysis on Exploit-DB.ai →

  8. MEDIUM 5.3CVE-2026-19668

    A BIND recursive resolver may experience excessive resource consumption if it encounters large numbers of a particular kind of invalid DNSSEC record. Default limits on "max-records-per-type" and "max-types-per-name" help mitigate the exposure. This issue affe…

    AI risk analysis on Exploit-DB.ai →

  9. MEDIUM 4.3CVE-2026-92365public PoC

    A vulnerability was found in vllm-project vllm up to 0.29.0. Affected by this issue is some unknown functionality of the file vllm/v1/sample/thinking_budget_state.py. The manipulation results in inefficient algorithmic complexity. It is possible to launch the …

    AI risk analysis on Exploit-DB.ai →

  10. UNSCOREDCVE-2026-67419public PoC

    RabbitMQ is a messaging and streaming broker. Prior to 4.3.5, an authenticated user who can bind a queue to a topic exchange and publish to it can use consecutive # segments in a binding key to make both topic matchers revisit the same trie-node and routing-ke…

    AI risk analysis on Exploit-DB.ai →

  11. UNSCOREDCVE-2026-87721

    Uncontrolled Resource Consumption (CWE-400 / CWE-407) in the ANTLR 3 search query parser (QueryParser / Query.g) in Gerrit Code Review versions 2.0.19 through 3.12.9, 3.13.0 through 3.13.8, and 3.14.0 through 3.14.2 allows an unauthenticated remote attacker (o…

    AI risk analysis on Exploit-DB.ai →

  12. UNSCOREDCVE-2026-65634public PoC

    Inefficient algorithmic complexity in the Erlang/OTP asn1 OBJECT IDENTIFIER decoder allows a remote unauthenticated attacker to cause denial of service by sending a crafted OID during the TLS handshake. The BER OID decoder asn1rtt_ber:dec_subidentifiers/3 in …

    AI risk analysis on Exploit-DB.ai →

  13. UNSCOREDCVE-2026-82760public PoC

    Inefficient Algorithmic Complexity vulnerability in team-alembic AshAuthentication allows an unauthenticated attacker to exhaust CPU and memory via an oversized base62 segment in a submitted API key. AshAuthentication.Base.decode62/1 in lib/ash_authentication…

    AI risk analysis on Exploit-DB.ai →