CWE-841: CWE-841

11
Total CVEs
2
Critical
3
High
6.9
Avg CVSS

Yearly Trend

2026
1
2025
6
2024
1
2023
1
2022
2

Top Affected Vendors

1 Freescout 3
2 Microsoft 2
3 Secheron 2
4 Aimeos 1
5 Decesoftware 1

All CWE-841 CVEs (11)

CVE-2025-48481
9.8

This vulnerability allows attackers with unactivated email invitations to self-activate blocked or deleted accounts in FreeScout help desk software. A...

May 30, 2025
CVE-2022-2105
9.4

This vulnerability allows attackers to bypass client-side JavaScript controls to change user credentials and permissions without authentication, inclu...

Jun 24, 2022
CVE-2025-48476
8.8

FreeScout versions before 1.8.180 have a mass-assignment vulnerability in user record editing that allows authenticated users with edit permissions to...

May 30, 2025
CVE-2022-1667
7.5

CVE-2022-1667 allows attackers to bypass client-side JavaScript controls and reboot Programmable Logic Controllers (PLCs) by directly executing JavaSc...

Jun 24, 2022
CVE-2023-5921
7.1

This vulnerability allows attackers to bypass intended functionality in DECE Software Geodi by exploiting improper enforcement of behavioral workflows...

Nov 22, 2023
CVE-2025-58051
6.5

This vulnerability in Nextcloud Tables allows authenticated users to read arbitrary files from the server by importing specially crafted tables. The a...

Oct 16, 2025
CVE-2025-55337
6.1

This vulnerability allows an unauthorized attacker with physical access to bypass Windows BitLocker security features. It affects Windows systems usin...

Oct 14, 2025
CVE-2025-55330
6.1

This vulnerability allows an unauthorized attacker with physical access to bypass a Windows BitLocker security feature. It affects systems using BitLo...

Oct 14, 2025
CVE-2024-39325
5.3

This vulnerability in Aimeos frontend controller allows improper payment status persistence after purchase completion. Attackers could potentially man...

Jul 2, 2024
CVE-2025-48478
4.9

FreeScout versions before 1.8.180 have a mass assignment vulnerability during user creation that allows attackers to manipulate all fields in the User...

May 30, 2025
CVE-2026-24774
4.3

This CVE describes a business logic vulnerability in Open eClass (formerly GUnet eClass) where authenticated students can improperly mark themselves a...

Feb 3, 2026

About CWE-841 (CWE-841)

Our database tracks 11 CVEs classified as CWE-841, with 2 rated critical and 3 rated high severity. The average CVSS score for CWE-841 vulnerabilities is 6.9.

External reference: View CWE-841 on MITRE CWE →

Monitor CWE-841 Vulnerabilities

Get alerted when new CWE-841 CVEs affect your infrastructure.

Start Monitoring Free