VYPR

CWE-669

Incorrect Resource Transfer Between Spheres

ClassDraft

Description

The product does not properly transfer a resource/behavior to another sphere, or improperly imports a resource/behavior from another sphere, in a manner that provides unintended control over that resource.

Hierarchy (View 1000)

CVEs mapped to this weakness (101)

page 3 of 6
  • CVE-2019-1020011HigJul 29, 2019
    risk 0.47cvss 7.2epss 0.01

    SmokeDetector intentionally does automatic deployments of updated copies of SmokeDetector without server operator authority.

  • CVE-2026-24708HigFeb 18, 2026
    risk 0.46cvss 8.2epss 0.00

    An issue was discovered in OpenStack Nova before 30.2.2, 31 before 31.2.1, and 32 before 32.1.1. By writing a malicious QCOW header to a root or ephemeral disk and then triggering a resize, a user may convince Nova's Flat image backend to call qemu-img without a format…

  • CVE-2024-38519HigJul 2, 2024
    risk 0.44cvss 7.8epss 0.00

    `yt-dlp` and `youtube-dl` are command-line audio/video downloaders. Prior to the fixed versions, `yt-dlp` and `youtube-dl` do not limit the extensions of downloaded files, which could lead to arbitrary filenames being created in the download folder (and path traversal on…

  • CVE-2023-22950MedApr 13, 2023
    risk 0.42cvss 6.5epss 0.01

    An issue was discovered in TigerGraph Enterprise Free Edition 3.x. Data loading jobs in gsql_server, created by any user with designer permissions, can read sensitive data from arbitrary locations.

  • CVE-2020-27268MedJan 19, 2021
    risk 0.42cvss 6.5epss 0.01

    In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, a client-side control vulnerability in the insulin pump and its AnyDana-i and AnyDana-A mobile applications allows physically proximate attackers to bypass checks for default PINs via Bluetooth Low Energy.

  • CVE-2020-5188MedFeb 24, 2020
    risk 0.42cvss 6.5epss 0.02

    DNN (formerly DotNetNuke) through 9.4.4 has Insecure Permissions.

  • CVE-2026-33265MedMar 18, 2026
    risk 0.41cvss 6.3epss 0.00

    In LibreChat 0.8.1-rc2, a logged-in user obtains a JWT for both the LibreChat API and the RAG API.

  • CVE-2022-31233MedAug 31, 2022
    risk 0.41cvss 6.3epss 0.00

    Unisphere for PowerMax versions before 9.2.3.15 contain a privilege escalation vulnerability. An adjacent malicious user may potentially exploit this vulnerability to escalate their privileges and access functionalities they do not have access to.

  • CVE-2022-46173HigDec 28, 2022
    risk 0.40cvss 7.2epss 0.01

    Elrond-GO is a go implementation for the Elrond Network protocol. Versions prior to 1.3.50 are subject to a processing issue where nodes are affected when trying to process a cross-shard relayed transaction with a smart contract deploy transaction data. The problem was a bad…

  • CVE-2020-10778MedAug 11, 2020
    risk 0.39cvss 6.0epss 0.01

    In Red Hat CloudForms 4.7 and 5, the read only widgets can be edited by inspecting the forms and dropping the disabled attribute from the fields since there is no server-side validation. This business logic flaw violate the expected behavior.

  • CVE-2020-6862MedJan 17, 2020
    risk 0.38cvss 5.3epss 0.06

    V6.0.10P2T2 and V6.0.10P2T5 of F6x2W product are impacted by Information leak vulnerability. Unauthorized users could log in directly to obtain page information without entering a verification code.

  • CVE-2019-10753MedSep 5, 2019
    risk 0.38cvss 5.9epss 0.01

    In all versions prior to version 3.9.6 for eclipse-wtp, all versions prior to version 9.4.4 for eclipse-cdt, and all versions prior to version 3.0.1 for eclipse-groovy, Spotless was resolving dependencies over an insecure channel (http). If the build occurred over an insecure…

  • CVE-2026-71194MedAug 12, 2026
    risk 0.37cvss 6.8epss 0.01

    In OpenStack Designate before 22.0.2, the mDNS handler performs pool-blind lookups when resolving record queries and NOTIFY requests. When two zones with the same name exist across different pools, the lookup fails with a deterministic error, causing the handler to return…

  • CVE-2025-59378MedSep 15, 2025
    risk 0.37cvss 5.7epss 0.00

    In guix-daemon in GNU Guix before 1618ca7, a content-addressed-mirrors file can be written to create a setuid program that allows a regular user to gain the privileges of the build user that runs it (even after the build has ended).

  • CVE-2017-14013MedOct 17, 2017
    risk 0.36cvss 5.6epss 0.01

    A Client-Side Enforcement of Server-Side Security issue was discovered in ProMinent MultiFLEX M10a Controller web interface. The log out function in the application removes the user's session only on the client side. This may allow an attacker to bypass protection mechanisms,…

  • CVE-2026-46448MedJun 16, 2026
    risk 0.35cvss 5.4epss 0.00

    In OpenStack Nova before 33.0.2, the server create API does not strip certain hint data. The resulting instance has no Placement allocation.

  • CVE-2026-48846MedMay 25, 2026
    risk 0.35cvss 6.5epss 0.00

    In Roundcube Webmail 1.6.x before 1.6.16 and 1.7.x before 1.7.1, the remote image blocking feature can be bypassed via a crafted CSS var() value in an e-mail message, which may lead to information disclosure or access-control bypass.

  • CVE-2026-48845MedMay 25, 2026
    risk 0.35cvss 6.5epss 0.00

    In Roundcube Webmail 1.6.x between 1.6.14 and 1.6.16 and 1.7.x before 1.7.1, remote image blocking was not honored for URLs pointing to local/private destinations, which may lead to information disclosure or privilege escalation via a text/html email message.

  • CVE-2026-41525MedApr 28, 2026
    risk 0.35cvss 6.5epss 0.00

    KDE Dolphin before 25.12.3 allows applications in a Flatpak (or with AppArmor confinement) to open folders outside of the application sandbox without additional scrutiny. Dolphin's implementation of the FileManager1 protocol allows the path given to be any type of file,…

  • CVE-2026-40225MedApr 10, 2026
    risk 0.35cvss 6.4epss 0.00

    In udev in systemd before 260, local root execution can occur via malicious hardware devices and unsanitized kernel output.