CWE-459

CWE-459 · 3 records · 1 with a public proof-of-concept

Records the NVD classes under CWE-459, highest CVSS first.

  1. HIGH 7.3CVE-2026-78437

    Incomplete cleanup vulnerability in Apache Tomcat allows a malformed request to potentially (depends on timing) cause one request from another user to fail. This issue affects Apache Tomcat: from 11.0.19 through 11.0.25, from 10.1.53 through 10.1.59, from 9…

    AI risk analysis on Exploit-DB.ai →

  2. MEDIUM 5.4CVE-2026-101100public PoC

    A flaw has been found in ag-ui-protocol ag-ui up to 2026-09-07. This vulnerability affects the function FilterToolCallsMiddleware of the file sdks/typescript/packages/client/src/middleware/filter-tool-calls.ts of the component Middleware. Executing a manipulat…

    AI risk analysis on Exploit-DB.ai →

  3. LOW 3.1CVE-2026-91730

    Incomplete cleanup in GetUserMedia in Google Chrome prior to 153.0.8010.47 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to obtain cross-origin data via a crafted HTML page. (Chromium security severity: Med…

    chrome

    AI risk analysis on Exploit-DB.ai →