Threats Tagged 'cwe-394'
View all threats tagged with 'cwe-394'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cwe-394'
Click on any threat for detailed analysis and mitigation recommendations
0 CVE-2026-76956 is a vulnerability in libexpat versions 2.8.2 and 2.8.3 prior to 2.8.4 where the return code of the getentropy function is misinterpreted. This leads to insufficient entropy being used, making the software vulnerable to hash flooding attacks that can cause denial of service through crafted XML content. Join the discussion | CVE Database V5 | 08/20/2026, 04:22:51 UTC Added: 08/20/2026, 11:11:47 UTC |
0 A vulnerability exists in Copeland XWEB Pro version 1.12.1 and prior, in which an unexpected return value from the authentication routine is later on processed as a legitimate value, resulting in an authentication bypass. Join the discussion | CVE Database V5 | 02/27/2026, 00:33:06 UTC Added: 02/27/2026, 00:56:14 UTC |
Improper return value within AMD uProf can allow a local attacker to bypass KSLR, potentially resulting in loss of confidentiality or availability. Join the discussion | CVE Database V5 | 11/24/2025, 20:56:39 UTC Added: 11/24/2025, 21:10:09 UTC |
0 Lack of Graceful Error Handling - HTTP 5xx ErrorThis issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5 . Join the discussion | CVE Database V5 | 10/30/2025, 15:42:21 UTC Added: 10/30/2025, 15:55:49 UTC |
0 Systemic Internal Server Errors - HTTP 500 ResponseThis issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5 . Join the discussion | CVE Database V5 | 10/30/2025, 15:38:45 UTC Added: 10/30/2025, 15:55:49 UTC |
0 Improper handling of non-200 http responses in the PingFederate Google Adapter leads to thread exhaustion under normal usage conditions. Join the discussion | CVE Database V5 | 06/15/2025, 15:00:06 UTC Added: 06/15/2025, 15:04:24 UTC |
Showing 1 to 6 of 6 results