CWE-330: CWE-330
Yearly Trend
Top Affected Vendors
All CWE-330 CVEs (61)
The BuddyForms WordPress plugin has an email verification bypass vulnerability due to insufficiently random activation codes. Unauthenticated attacker...
Jun 5, 2024This vulnerability in FIWARE Keyrock allows attackers to predict activation tokens due to insufficient randomness, enabling unauthorized account activ...
Aug 12, 2024A vulnerability in gokey versions before 0.2.0 causes passwords derived from seed files to use only 28 bytes of entropy instead of the intended 240 by...
Dec 2, 2025The Login Lockdown & Protection WordPress plugin has an IP block bypass vulnerability where attackers can generate valid unblock keys if they know an ...
Dec 13, 2025This vulnerability allows unauthenticated attackers to cancel arbitrary bookings in the Hydra Booking WordPress plugin. Attackers can brute-force canc...
Nov 11, 2025This vulnerability allows unauthenticated attackers to bypass the Banhammer WordPress plugin's traffic monitoring and blocking features. Attackers can...
Sep 26, 2025This vulnerability in Fuchsia OS allows attackers to predict network protocol header values like TCP sequence numbers and source ports, enabling netwo...
Jan 30, 2025This vulnerability in Avahi-daemon allows attackers to more easily inject malicious DNS responses by exploiting predictable source ports in wide-area ...
Nov 21, 2024Nextcloud Calendar versions before 6.0.3 generate participant tokens for meeting proposals using a predictable hash function instead of cryptographica...
Dec 5, 2025This vulnerability allows attackers within Wi-Fi range to calculate the default password for EZCast Pro II dongles using observable device identifiers...
Dec 10, 2025An authentication bypass vulnerability in the IFTTT integration feature allows authenticated attackers to potentially gain unauthorized access to affe...
Nov 25, 2025About CWE-330 (CWE-330)
Our database tracks 61 CVEs classified as CWE-330, with 21 rated critical and 24 rated high severity. The average CVSS score for CWE-330 vulnerabilities is 7.9.
External reference: View CWE-330 on MITRE CWE →
Monitor CWE-330 Vulnerabilities
Get alerted when new CWE-330 CVEs affect your infrastructure.
Start Monitoring Free