CWE-799: CWE-799

14
Total CVEs
1
Critical
5
High
6.6
Avg CVSS

Yearly Trend

2025
6
2024
7
2023
1

Top Affected Vendors

1 Microsoft 1
2 Ibm 1
3 Ascertia 1
4 Metagauss 1
5 Ethyca 1
6 Meshtastic 1
7 Getopensocial 1
8 63moons 1
9 Shilpisoft 1
10 Reedos 1

All CWE-799 CVEs (14)

CVE-2025-54321
9.8

Ascertia SigningHub versions through 8.6.8 have a rate limiting vulnerability in the password reset function. Authenticated attackers can automate pas...

Nov 18, 2025
CVE-2025-57816
7.5

This vulnerability allows attackers to bypass rate limiting protections in Fides privacy engineering platform deployments that rely on its built-in IP...

Sep 8, 2025
CVE-2024-47654
7.5

This vulnerability allows unauthenticated attackers to send unlimited OTP requests to Shilpi Client Dashboard systems, causing OTP bombing attacks tha...

Oct 4, 2024
CVE-2024-45788
7.5

This vulnerability allows authenticated attackers to send unlimited OTP requests to specific API endpoints in Reedos aiM-Star version 2.0.1, potential...

Sep 11, 2024
CVE-2024-35246
7.5

This vulnerability allows attackers to cause denial-of-service by flooding affected systems with repeated packets. It affects industrial control syste...

Jun 20, 2024
CVE-2023-35621
7.5

This vulnerability in Microsoft Dynamics 365 Finance and Operations allows attackers to cause a denial of service (DoS) condition by sending specially...

Dec 12, 2023
CVE-2024-47065
6.5

This vulnerability in Meshtastic allows attackers to abuse traceroute functionality to force remote nodes to continuously respond, enabling rapid coll...

Jul 11, 2025
CVE-2024-51557
6.5

This vulnerability allows authenticated attackers to send unlimited OTP requests through a vulnerable API endpoint in Wave 2.0, causing OTP bombing/fl...

Nov 4, 2024
CVE-2023-40673
6.5

This vulnerability allows attackers to bypass CAPTCHA protection in the Cartpauj Register Captcha WordPress plugin, enabling automated account registr...

Jun 4, 2024
CVE-2025-13211
5.3

This vulnerability in IBM Aspera Orchestrator allows authenticated users to cause denial of service in the email service by sending requests at a freq...

Dec 11, 2025
CVE-2024-13274
5.3

This vulnerability in Drupal Open Social allows attackers to abuse functionality by making requests more frequently than intended. It affects all Open...

Jan 9, 2025
CVE-2023-51544
5.3

This vulnerability in the RegistrationMagic WordPress plugin allows attackers to bypass form submission limits, enabling functionality misuse. It affe...

Jun 4, 2024
CVE-2023-40332
5.3

This vulnerability in the WP-PostRatings WordPress plugin allows attackers to bypass rating limits, enabling them to submit multiple ratings for the s...

Jun 4, 2024
CVE-2025-48016
4.3

CVE-2025-48016 is a resource exhaustion vulnerability in the OpenFlow discovery protocol where lack of rate limiting allows attackers to flood devices...

May 20, 2025

About CWE-799 (CWE-799)

Our database tracks 14 CVEs classified as CWE-799, with 1 rated critical and 5 rated high severity. The average CVSS score for CWE-799 vulnerabilities is 6.6.

External reference: View CWE-799 on MITRE CWE →

Monitor CWE-799 Vulnerabilities

Get alerted when new CWE-799 CVEs affect your infrastructure.

Start Monitoring Free