CVEs classified under CWE-694, ordered by CVSS severity, with EPSS exploit prediction and CISA KEV status.
CVEs (8)
CVE-2025-13609 — CVSS 8.2 (high): A vulnerability has been identified in keylime where an attacker can exploit this flaw by registering a new agent using a different Trusted…
CVE-2025-59048 — CVSS 8.1 (high): OpenBao's AWS Plugin generates AWS access credentials based on IAM policies. Prior to version 0.1.1, the AWS Plugin is vulnerable to…
CVE-2026-71327: Traefik is an open source HTTP reverse proxy and load balancer. From 3.0.0 until 3.6.25 and 3.7.10, Traefik's Kubernetes Gateway API…
CVE-2023-20100 — CVSS 6.8 (medium): A vulnerability in the access point (AP) joining process of the Control and Provisioning of Wireless Access Points (CAPWAP) protocol of…
CVE-2026-57024 — CVSS 5.3 (medium): A Use of Multiple Resources with Duplicate Identifier vulnerability in the IKE daemon (iked) of Juniper Networks Junos OS on MX with SPC3…
CVE-2026-5794: A vulnerability affecting the detailed versions of Cryptobox allows a legitimate user to prevent another to login by triggering an account…
CVE-2024-41146 — CVSS 4.6 (medium): Use of Multiple Resources with Duplicate Identifier (CWE-694) in the Controller 6000 and Controller 7000 Platforms could allow an attacker…
CVE-2021-3436 — CVSS 4.3 (medium): BT: Possible to overwrite an existing bond during keys distribution phase when the identity address of the bond is known. Zephyr versions…