Fallos del tipo CWE-404
695 resultadosLiberação ou encerramento inadequado de recursos
Quando o software não libera corretamente recursos (conexões de banco, arquivo aberto, memória alocada, socket de rede) após o uso. O programa continua consumindo esses recursos até ficar sem espaço ou conexões disponíveis, causando falhas, lentidão ou negação de serviço.
Ejemplo
Um servidor web abre uma conexão com banco de dados para cada requisição, mas esquece de fechar a conexão quando termina. Após centenas de requisições, todas as conexões disponíveis estão esgotadas e novas requisições falham.
Cómo mitigar
Use padrões como try-with-resources (Java), context managers (Python), ou equivalentes na sua linguagem para garantir liberação automática. Implemente timeouts e monitore uso de recursos em produção para detectar vazamentos cedo.
CVE-2026-60624MEDIUMVulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/J). Supported versions that are affected are 9.7.0-9.7.EPSS 0.4%CVE-2026-90816MEDIUMFFmpeg Duration hlsproto.c parse_playlist denial of serviceEPSS 0.4%CVE-2025-58473HIGHAutomationDirect CLICK PLUS Improper Resource Shutdown or ReleaseEPSS 0.4%CVE-2023-2870LOWEnTech Monitor Asset Manager IoControlCode 0x80002014 denial of serviceEPSS 0.3%CVE-2024-12345MEDIUMINW Krbyyyzo Daily Huddle Site gbo.aspx resource consumptionEPSS 0.3%CVE-2023-1487MEDIUMLespeed WiseCleaner Wise System Monitor IoControlCode WiseHDInfo64.dll 0x9C40A0E0 denial of serviceEPSS 0.3%CVE-2024-1193LOWNavicat MySQL Conecction denial of serviceEPSS 0.3%CVE-2026-19746MEDIUMCalix GigaSpire traceroute.cmd denial of serviceEPSS 0.3%CVE-2026-19745MEDIUMCalix GigaSpire Web Management utilities_configurationsave.cgi denial of serviceEPSS 0.3%CVE-2025-1632MEDIUMlibarchive bsdunzip.c list null pointer dereferenceEPSS 0.3%CVE-2026-7585MEDIUMOpen5GS AMF nudm-handler.c amf_nudm_sdm_handle_provisioned denial of serviceEPSS 0.3%CVE-2025-11638MEDIUMTomofun Furbo 360/Furbo Mini Bluetooth denial of serviceEPSS 0.3%CVE-2026-86515MEDIUMvgmstream txtp txtp_parser.c add_entry resource consumptionEPSS 0.3%CVE-2026-93312MEDIUMFreedesktop Poppler JBIG2Stream.cc rewind null pointer dereferenceEPSS 0.3%CVE-2026-92881MEDIUMvgmstream AWB parser awb.c init_vgmstream_awb_memory divide by zeroEPSS 0.3%CVE-2026-84887MEDIUMsimular-ai Agent-S Model-generated GUI Action Execution Workflow grounding.py denial of serviceEPSS 0.3%CVE-2026-29771HIGHNetmaker: Denial of Service via Server Shutdown EndpointEPSS 0.3%CVE-2025-57882HIGHAutomationDirect CLICK PLUS Improper Resource Shutdown or ReleaseEPSS 0.3%CVE-2025-3730MEDIUMPyTorch LossCTC.cpp torch.nn.functional.ctc_loss denial of serviceEPSS 0.3%CVE-2023-1643MEDIUMIObit Malware Fighter IOCTL ImfHpRegFilter.sys 0x8001E040 denial of serviceEPSS 0.3%