CWE-908
CWE-908 · 3 records · 0 with a public proof-of-concept
Records the NVD classes under CWE-908, highest CVSS first.
- HIGH 7.5CVE-2026-94056
Exim before 4.100.1, when Proxy-Protocol is used with an attacker-controlled proxy, allows attackers to read certain uninitialized data from stack memory.
exim
- MEDIUM 4.7CVE-2026-91720
Uninitialized resource in ANGLE in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: High)
chrome
- MEDIUM 4.3CVE-2026-91740
Uninitialized resource in Skia in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security severity: High)
chrome