CWE-772: CWE-772

30
Total CVEs
0
Critical
17
High
6.5
Avg CVSS

Yearly Trend

2026
2
2025
11
2024
7
2023
2
2022
4

Top Affected Vendors

1 Linux 5
2 Debian 2
3 Wago 2
4 F5 2
5 Ibm 2
6 Juniper 2
7 Apple 2
8 Phoenixcontact 1
9 Zoom 1
10 Qemu 1

All CWE-772 CVEs (30)

CVE-2024-2398
8.6

CVE-2024-2398 is a memory leak vulnerability in libcurl that occurs when HTTP/2 server push headers exceed the 1000-header limit. This allows attacker...

Mar 27, 2024
CVE-2025-36128
7.5

IBM MQ is vulnerable to denial of service attacks where attackers can exploit improper timeout enforcement on read operations to exhaust server resour...

Oct 16, 2025
CVE-2025-22891
7.5

This vulnerability in F5 BIG-IP PEM allows undisclosed traffic to cause a denial of service by stopping the Virtual Server from processing new client ...

Feb 5, 2025
CVE-2025-24120
7.5

A memory management vulnerability in macOS allows attackers to cause application crashes through improper object lifetime handling. This affects macOS...

Jan 27, 2025
CVE-2024-39562
7.5

A resource management vulnerability in xinetd on Juniper Junos OS Evolved allows unauthenticated attackers to cause denial of service by sending high ...

Jul 10, 2024
CVE-2024-21789
7.5

CVE-2024-21789 is a memory exhaustion vulnerability in F5 BIG-IP ASM/Advanced WAF security policies. When configured on a virtual server, specially cr...

Feb 14, 2024
CVE-2023-1150
7.5

CVE-2023-1150 is a denial-of-service vulnerability in WAGO 750-3x/-8x series industrial controllers. Unauthenticated remote attackers can send special...

Jun 26, 2023
CVE-2022-29884
7.5

This vulnerability affects Siemens CP-8000 and CP-8021/8022 master modules running firmware versions below CPC80 V16.30. An unauthenticated remote att...

Jul 12, 2022
CVE-2021-42859
7.5

A memory leak vulnerability in Mini-XML v3.2 could allow attackers to cause denial of service by exhausting system memory. This affects applications u...

May 26, 2022
CVE-2022-26353
7.5

A memory leak vulnerability in QEMU's virtio-net device occurs when cached virtqueue elements aren't unmapped during error conditions. This flaw affec...

Mar 16, 2022
CVE-2022-22170
7.5

This CVE describes a memory leak vulnerability in Juniper Junos OS Packet Forwarding Engine (PFE) that allows unauthenticated attackers to cause denia...

Jan 19, 2022
CVE-2021-40008
7.5

This memory leak vulnerability in Huawei CloudEngine switches allows attackers to cause memory exhaustion by sending crafted binary messages. Affected...

Dec 13, 2021
CVE-2021-34581
7.5

This CVE describes a memory leak vulnerability in OpenSSL implementation on specific WAGO PLC devices. Unauthenticated attackers can cause denial-of-s...

Aug 31, 2021
CVE-2021-21002
7.5

This vulnerability affects Phoenix Contact FL COMSERVER UNI devices running firmware versions below 2.40. An attacker can send specially crafted inval...

Jun 25, 2021
CVE-2020-9375
7.5

This vulnerability allows remote attackers to cause a denial of service (DoS) on TP-Link Archer C50 V3 routers by sending HTTP requests with a special...

Mar 25, 2020
CVE-2022-50189
7.1

This CVE describes a file pointer leak vulnerability in the Linux kernel's turbostat tool. If fscanf fails during execution, the tool doesn't properly...

Jun 18, 2025
CVE-2023-36533
7.1

This vulnerability in Zoom SDKs allows unauthenticated attackers to cause denial of service by consuming excessive resources through network access. I...

Aug 8, 2023
CVE-2025-36071
6.5

IBM Db2 database servers running vulnerable versions can crash when processing specially crafted queries due to improper memory resource release. This...

Jul 29, 2025
CVE-2023-53199
5.5

A memory leak vulnerability in the Linux kernel's ath9k WiFi driver allows attackers to cause denial of service through resource exhaustion. Systems u...

Sep 15, 2025
CVE-2023-53152
5.5

This CVE describes a memory management vulnerability in the AMDGPU driver for Linux kernels where buffer objects (BOs) allocated for the Platform Secu...

Sep 15, 2025
CVE-2024-53074
5.5

A memory leak vulnerability in the Linux kernel's iwlwifi driver prevents access points from restarting on certain Intel WiFi hardware. This affects L...

Nov 19, 2024
CVE-2024-35821
5.5

This Linux kernel vulnerability in the UBIFS filesystem allows concurrent readers to see stale data when reading from page cache. It affects systems u...

May 17, 2024
CVE-2026-21874
5.3

This vulnerability allows unauthenticated attackers to exhaust Redis connections by repeatedly opening and closing browser tabs on NiceGUI application...

Jan 8, 2026
CVE-2023-32255
5.3

A memory leak vulnerability exists in the Linux kernel's ksmbd component when handling session setup requests with unknown NTLMSSP message types. This...

Aug 2, 2025
CVE-2024-20493
5.3

This vulnerability allows unauthenticated remote attackers to temporarily deny VPN authentication for several minutes by sending crafted packets that ...

Oct 23, 2024
CVE-2024-41888
5.3

Apache Answer versions through 1.3.5 have a vulnerability where password reset links remain valid after being used, allowing potential account takeove...

Aug 12, 2024
CVE-2025-54983
5.2

A health check port in Zscaler Client Connector (ZCC) on Windows fails to properly close after use under specific circumstances, potentially allowing ...

Nov 12, 2025
CVE-2025-14969
4.3

A vulnerability in Hibernate Reactive allows remote attackers to cause a Denial of Service (DoS) by prematurely closing HTTP connections during databa...

Jan 26, 2026
CVE-2025-44003
4.3

A resource management vulnerability in Gallagher T-Series Readers allows attackers with physical access to cause limited denial of service when 125 kH...

Jul 10, 2025
CVE-2025-64734
2.4

A resource management vulnerability (CWE-772) in Gallagher Command Centre T21 Reader allows attackers with physical access to cause a denial-of-servic...

Nov 18, 2025

About CWE-772 (CWE-772)

Our database tracks 30 CVEs classified as CWE-772, with 0 rated critical and 17 rated high severity. The average CVSS score for CWE-772 vulnerabilities is 6.5.

External reference: View CWE-772 on MITRE CWE →

Monitor CWE-772 Vulnerabilities

Get alerted when new CWE-772 CVEs affect your infrastructure.

Start Monitoring Free