CWE-390: Detection of Error Condition Without Action
The product detects a specific error, but takes no actions to handle the error.
19 tracked CVEs are classified under this weakness.
Highest-risk vulnerabilities
- CVE-2024-27919 — HTTP/2: memory exhaustion due to CONTINUATION frame flood
- CVE-2025-46367 — Dell Alienware Command Center 6.x (AWCC), versions prior to 6.10.15.0, contain a Detection of Error Condition Without Ac
- CVE-2024-49841 — Detection of Error Condition Without Action in Hypervisor
- CVE-2026-53434 — Apache Tomcat: Invalid CRL configuration doesn't trigger failure for FFM Connector
- CVE-2026-76642 — util-linux libmount Privilege Escalation via Failed Mount Helper
- CVE-2025-27039 — Detection of Error Condition Without Action in Computer Vision
- CVE-2025-25204 — `gh attestation verify` returns incorrect exit code during verification if no attestations are present
- CVE-2024-20316 — A vulnerability in the data model interface (DMI) services of Cisco IOS XE Software could allow an unauthenticated, remo
- CVE-2024-12086 — Rsync: rsync server leaks arbitrary client files
- CVE-2026-44310 — gitsign --verify panics on empty-certificate PKCS7 and exits 0, bypassing exit-code callers
- CVE-2026-59845 — Libssh: libssh: denial of service via unchecked proxycommand fork() failure
- CVE-2026-48792 — pam_usb: pusb_has_virtual_input_device() silently discards EACCES, disabling remote desktop detection under non-root execution
- CVE-2025-0029 — Improper handling of error condition during host-induced faults can allow a local high-privileged attack to selectively
Recently published
- CVE-2026-76642 — util-linux libmount Privilege Escalation via Failed Mount Helper
- CVE-2026-59845 — Libssh: libssh: denial of service via unchecked proxycommand fork() failure
- CVE-2026-53434 — Apache Tomcat: Invalid CRL configuration doesn't trigger failure for FFM Connector
- CVE-2026-48792 — pam_usb: pusb_has_virtual_input_device() silently discards EACCES, disabling remote desktop detection under non-root execution
- CVE-2026-44310 — gitsign --verify panics on empty-certificate PKCS7 and exits 0, bypassing exit-code callers
- CVE-2025-0029 — Improper handling of error condition during host-induced faults can allow a local high-privileged attack to selectively
- CVE-2025-46367 — Dell Alienware Command Center 6.x (AWCC), versions prior to 6.10.15.0, contain a Detection of Error Condition Without Ac
- CVE-2025-27039 — Detection of Error Condition Without Action in Computer Vision
- CVE-2024-49841 — Detection of Error Condition Without Action in Hypervisor
- CVE-2025-25204 — `gh attestation verify` returns incorrect exit code during verification if no attestations are present
- CVE-2024-12086 — Rsync: rsync server leaks arbitrary client files
- CVE-2024-27919 — HTTP/2: memory exhaustion due to CONTINUATION frame flood
- CVE-2024-20316 — A vulnerability in the data model interface (DMI) services of Cisco IOS XE Software could allow an unauthenticated, remo