Fallos del tipo CWE-327

360 resultados
CVE-2026-10783LOWgradio-app gradio Audio Cache Key save_audio_to_cache weak hashEPSS 0.1%CVE-2026-49322MEDIUMIndian Scout Bobber 2025 Infotainment-to-WCM weak authentication allows recovery of user PIN from observed exchangeEPSS 0.1%CVE-2025-14763MEDIUMMissing cryptographic key commitment in the Amazon S3 Encryption Client for Java may allow a user with write access to the S3 bucket to intrEPSS 0.1%CVE-2026-10803LOWMLflow Dataset Digest Computation digest_utils.py mlflow.data.digest_utils weak hashEPSS 0.1%CVE-2024-20070MEDIUMIn modem, there is a possible information disclosure due to using risky cryptographic algorithm during connection establishment negotiation.EPSS 0.1%CVE-2023-23347MEDIUMUse of a broken cryptographic algorithm affects HCL DRYiCE iAutomateEPSS 0.1%CVE-2025-64429MEDIUMDuckDB Encryption Crypto implementation is vulnerableEPSS 0.1%CVE-2026-6412LOWContinued acceptance of SHA-1/MD5 digests in certificate processingEPSS 0.1%CVE-2026-40641MEDIUMDell PowerFlex Manager, version(s) prior to 5.1.0.1, contain(s) an Use of a Broken or Risky Cryptographic Algorithm vulnerability. An unauthEPSS 0.1%CVE-2023-23346MEDIUMUse of a broken cryptographic algorithm affects HCL DRYiCE MyCloud EPSS 0.1%CVE-2025-51726HIGHCyberGhostVPNSetup.exe (Windows installer) is signed using the weak cryptographic hash algorithm SHA-1, which is vulnerable to collision attEPSS 0.1%CVE-2025-14759MEDIUMMissing cryptographic key commitment in the Amazon S3 Encryption Client for .NET may allow a user with write access to the S3 bucket to intrEPSS 0.1%CVE-2025-7214LOWFNKvision FNK-GU2 MD5 shadow risky encryptionEPSS 0.1%CVE-2025-14764MEDIUMMissing cryptographic key commitment in the Amazon S3 Encryption Client for Go may allow a user with write access to the S3 bucket to introdEPSS 0.1%CVE-2025-9383LOWFNKvision Y215 CCTV Camera passwd crypt weak hashEPSS 0.1%CVE-2026-10814LOWmilvus-io milvus Grantee ID Hash kv_catalog.go weak hashEPSS 0.1%CVE-2024-45394HIGHSecret encryption vulnerable to brute-force attacksEPSS 0.1%CVE-2025-9317HIGHAVEVA Edge Use of a Broken or Risky Cryptographic AlgorithmEPSS 0.1%CVE-2026-23601MEDIUMFrame Injection via Shared GTK Allows Traffic Spoofing and Client CompromiseEPSS 0.1%CVE-2025-7383MEDIUMTiming side-channel vulnerability in AES-CBC decryption with PKCS#7 padding in Oberon PSA Crypto libraryEPSS 0.1%