CWE-404: CWE-404

127
Total CVEs
0
Critical
36
High
5.7
Avg CVSS

Yearly Trend

2026
36
2025
59
2024
18
2023
9
2022
2

Top Affected Vendors

1 Open5gs 18
2 Free5gc 9
3 Iobit 6
4 Tenda 5
5 Gpac 4
6 Linux 4
7 Apple 4
8 F5 3
9 Asrmicro 3
10 Birkir 3

All CWE-404 CVEs (127)

CVE-2026-3408
4.3

A null pointer dereference vulnerability in Open Babel's CDXML file handler allows remote attackers to cause denial of service by crashing the applica...

Mar 2, 2026
CVE-2025-15156
4.3

A null pointer dereference vulnerability exists in omec-project UPF's PFCP Session Establishment Request Handler, allowing remote attackers to cause d...

Dec 28, 2025
CVE-2025-14747
4.3

This vulnerability allows an attacker on the local network to send a malformed RTSP Describe request to the Ningyuanda TC155 device, causing a denial ...

Dec 16, 2025
CVE-2025-14105
4.3

This vulnerability allows local network attackers to cause a denial of service on TOZED ZLT M30S and ZLT M30S PRO routers by sending a specially craft...

Dec 5, 2025
CVE-2025-12917
4.3

A denial-of-service vulnerability exists in TOZED ZLT T10/T10PLUS routers version 3.04.15. Attackers on the local network can exploit the reboot handl...

Nov 9, 2025
CVE-2025-11638
4.3

A vulnerability in Tomofun Furbo 360 and Furbo Mini pet cameras allows attackers on the same local network to cause denial of service by exploiting an...

Oct 12, 2025
CVE-2025-3535
4.3

This vulnerability in shuanx BurpAPIFinder allows remote attackers to cause denial of service by manipulating the BurpApiFinder.db file. It affects us...

Apr 13, 2025
CVE-2025-1893
4.3

A denial-of-service vulnerability in Open5GS AMF component allows a single malicious UE to crash the AMF service by exploiting the gmm_state_authentic...

Mar 4, 2025
CVE-2024-23930
4.3

This vulnerability allows network-adjacent attackers to cause a denial-of-service condition on Pioneer DMH-WT7600NEX car multimedia systems by sending...

Jan 31, 2025
CVE-2025-24160
4.3

This vulnerability in Apple operating systems allows parsing a malicious file to cause unexpected app termination (denial of service). It affects user...

Jan 27, 2025
CVE-2024-12002
4.3

This vulnerability in Tenda FH series routers allows remote attackers to cause a denial-of-service (DoS) by sending specially crafted requests to the ...

Nov 30, 2024
CVE-2025-11642
4.0

A denial-of-service vulnerability exists in Tomofun Furbo 360 and Furbo Mini pet cameras through their Registration Handler component. Physical access...

Oct 12, 2025
CVE-2026-3388
3.3

CVE-2026-3388 is an uncontrolled recursion vulnerability in Squirrel programming language versions up to 3.2. This allows local attackers to cause den...

Mar 1, 2026
CVE-2026-3385
3.3

This vulnerability in wren-lang allows uncontrolled recursion in the resolveLocal function, which can lead to denial of service through stack exhausti...

Mar 1, 2026
CVE-2026-3146
3.3

This CVE describes a null pointer dereference vulnerability in libvips image processing library. Attackers with local access can cause denial of servi...

Feb 25, 2026
CVE-2026-2887
3.3

This vulnerability in aardappel lobster allows uncontrolled recursion in the TypeName function, which could lead to denial of service or potentially a...

Feb 21, 2026
CVE-2026-2642
3.3

A null pointer dereference vulnerability in the_silver_searcher (ag) up to version 2.2.0 allows local attackers to cause a denial of service (crash) b...

Feb 18, 2026
CVE-2026-1991
3.3

This vulnerability in libuvc allows local attackers to cause a denial of service through null pointer dereference in the UVC descriptor handler. Affec...

Feb 6, 2026
CVE-2026-1990
3.3

A null pointer dereference vulnerability in oatpp versions up to 1.3.1 allows local attackers to cause denial of service through application crashes. ...

Feb 6, 2026
CVE-2026-1417
3.3

This CVE describes a null pointer dereference vulnerability in GPAC's MP4Box tool that can cause application crashes. The vulnerability requires local...

Jan 26, 2026
CVE-2026-1416
3.3

A null pointer dereference vulnerability exists in GPAC's DumpMovieInfo function, allowing local attackers to cause denial of service through applicat...

Jan 26, 2026
CVE-2026-1415
3.3

A null pointer dereference vulnerability exists in GPAC multimedia framework versions up to 2.4.0. Attackers with local access can crash the applicati...

Jan 26, 2026
CVE-2025-15535
3.3

A null pointer dereference vulnerability in nicbarker clay library versions up to 0.14 allows local attackers to cause denial of service through the C...

Jan 18, 2026
CVE-2025-15504
3.3

A null pointer dereference vulnerability exists in LIEF's ELF binary parser that can cause denial of service when processing malicious ELF files. This...

Jan 10, 2026
CVE-2025-15418
3.3

A local denial-of-service vulnerability exists in Open5GS versions up to 2.7.6 where the ogs_gtp2_parse_bearer_qos function mishandles Bearer QoS IE L...

Jan 2, 2026
CVE-2025-14841
3.3

A null pointer dereference vulnerability exists in OFFIS DCMTK's DICOM Query/Retrieve Service Class Provider (dcmqrscp) component. This flaw allows lo...

Dec 18, 2025
CVE-2025-14953
3.1

A null pointer dereference vulnerability in Open5GS's PFCP handler allows remote attackers to cause denial of service by crashing the service. This af...

Dec 19, 2025

About CWE-404 (CWE-404)

Our database tracks 127 CVEs classified as CWE-404, with 0 rated critical and 36 rated high severity. The average CVSS score for CWE-404 vulnerabilities is 5.7.

External reference: View CWE-404 on MITRE CWE →

Monitor CWE-404 Vulnerabilities

Get alerted when new CWE-404 CVEs affect your infrastructure.

Start Monitoring Free