Threats Tagged 'cve-2026-70378'
View all threats tagged with 'cve-2026-70378'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-70378'
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-70378: CWE-1284 Improper Validation of Specified Quantity in Input in theotherphil imagecliCVE-2026-70378 0 imagecli's `carve <ratio>` pipeline operation (Carve::apply() in src/image_ops.rs) only asserts `ratio <= 1.0`, never validating that the ratio is positive. A negative ratio (e.g. -5) causes the computed target width to saturate to 0 via Rust's defined float-to-uint cast, which is then passed to imageproc::seam_carving::shrink_width — a function that panics when given a width below 2, crashing the process. This shares the same missing-input-validation root cause as the sibling `scale` finding in the same file but is an independently fixable, distinct code path. Join the discussion | CVE Database V5 | 08/05/2026, 06:58:50 UTC Added: 08/05/2026, 07:27:07 UTC |
Showing 1 to 1 of 1 result