CWE-682: CWE-682

19
Total CVEs
4
Critical
11
High
7.7
Avg CVSS

Yearly Trend

2026
3
2025
3
2024
4
2023
3
2022
6

Top Affected Vendors

1 Fisglobal 2
2 Solana 1
3 Yottadb 1
4 Linux 1
5 Script3 1
6 F5 1
7 Libssh 1
8 Microsoft 1
9 Redhat 1
10 Juniper 1

All CWE-682 CVEs (19)

CVE-2023-2163
10.0

A Linux kernel vulnerability in the BPF verifier incorrectly marks unsafe code paths as safe, allowing attackers to perform arbitrary read/write opera...

Sep 20, 2023
CVE-2026-1229
9.8

A cryptographic vulnerability in CIRCL's P-384 elliptic curve implementation produces incorrect CombinedMult results for specific inputs. This affects...

Feb 24, 2026
CVE-2024-36736
9.8

CVE-2024-36736 is a critical vulnerability in OneFlow's permute component that causes incorrect calculations when performing same-dimension operations...

Jun 6, 2024
CVE-2022-23066
9.1

This vulnerability in Solana's rBPF virtual machine involves an incorrect implementation of the signed division (sdiv) instruction, causing miscalcula...

May 9, 2022
CVE-2023-35641
8.8

CVE-2023-35641 is a remote code execution vulnerability in Windows Internet Connection Sharing (ICS) service. An attacker could exploit this to execut...

Dec 12, 2023
CVE-2026-24783
7.5

This vulnerability in the soroban-fixed-point-math library causes incorrect rounding in division operations when both the intermediate product and div...

Jan 27, 2026
CVE-2025-4435
7.5

This vulnerability in Python's tarfile module allows filtered tar archive members to be extracted when they should be skipped, bypassing intended secu...

Jun 3, 2025
CVE-2025-26622
7.5

This vulnerability in Vyper's sqrt() builtin function causes incorrect square root calculations for decimal numbers, potentially returning rounded-up ...

Feb 21, 2025
CVE-2024-11407
7.5

This CVE describes a data corruption vulnerability in gRPC-C++ servers when transmit zero copy is enabled. The corruption occurs before network transm...

Nov 26, 2024
CVE-2023-24533
7.5

CVE-2023-24533 is a cryptographic vulnerability in Go's P-256 elliptic curve implementation where multiplication of certain unreduced scalars produces...

Mar 8, 2023
CVE-2022-22138
7.5

CVE-2022-22138 is a vulnerability in the fast-string-search npm package where passing non-string inputs causes incorrect computations, leading to memo...

Jun 17, 2022
CVE-2022-30780
7.5

A typo in Lighttpd's connection handling code causes the server to get stuck processing large HTTP headers, consuming CPU resources indefinitely. This...

Jun 11, 2022
CVE-2021-44504
7.5

This vulnerability in FIS GT.M/YottaDB allows attackers to cause a denial of service (crash) by sending crafted input that triggers an integer overflo...

Apr 15, 2022
CVE-2021-44490
7.5

This vulnerability allows attackers to cause a denial-of-service (DoS) by crashing YottaDB applications through crafted input that triggers an integer...

Apr 15, 2022
CVE-2022-23011
7.5

This vulnerability affects F5 BIG-IP platforms running specific versions, causing virtual servers to become unresponsive when processing TCP traffic d...

Jan 25, 2022
CVE-2026-21911
6.5

An incorrect calculation vulnerability in Juniper's Layer 2 Control Protocol Daemon (l2cpd) allows unauthenticated network-adjacent attackers to cause...

Jan 15, 2026
CVE-2024-45056
5.9

A compiler optimization bug in zksolc (Solidity compiler for ZKsync) incorrectly handles bitwise rotation operations, producing wrong machine code. Th...

Aug 29, 2024
CVE-2024-34704
5.9

This vulnerability in the era-compiler-solidity ZKsync compiler for Solidity could cause incorrect compilation of smart contracts when XOR operations ...

May 14, 2024
CVE-2025-5372
5.0

A vulnerability in libssh versions built with OpenSSL <3.0 causes the ssh_kdf() function to incorrectly report successful key derivation when it actua...

Jul 4, 2025

About CWE-682 (CWE-682)

Our database tracks 19 CVEs classified as CWE-682, with 4 rated critical and 11 rated high severity. The average CVSS score for CWE-682 vulnerabilities is 7.7.

External reference: View CWE-682 on MITRE CWE →

Monitor CWE-682 Vulnerabilities

Get alerted when new CWE-682 CVEs affect your infrastructure.

Start Monitoring Free