CWE-440: Expected Behavior Violation
A feature, API, or function does not perform according to its specification.
44 tracked CVEs are classified under this weakness.
Highest-risk vulnerabilities
- CVE-2024-32971 — Defect in query plan cache may cause incorrect operations to be executed in Apollo Router
- CVE-2026-8806 — Denial-of-service (DoS) vulnerability in MELSEC iQ-F Series FX5-ENET/IP Ethernet module
- CVE-2025-52953 — Junos OS and Junos OS Evolved: An unauthenticated adjacent attacker sending a valid BGP UPDATE packet forces a BGP session reset
- CVE-2025-6211 — MD5 Hash Collision in run-llama/llama_index
- CVE-2026-65934 — BT122 plaintext pause encryption request causes DOS
- CVE-2026-16769 — RS9116W/SiWx917 plaintext pause encryption request causes DOS
- CVE-2024-47762 — Unexpected visibility of environment variable configurations in @backstage/plugin-app-backend
- CVE-2026-42534 — Jostle logic bypass degrades resolution performance
- CVE-2026-3344 — WatchGuard Firebox System Integrity Check Bypass
- CVE-2025-13940 — WatchGuard Firebox Boot Time System Integrity Check Bypass
- CVE-2026-42752 — WordPress Stripe Payments plugin <= 2.0.98 - Bypass Vulnerability vulnerability
- CVE-2025-27094 — Tuleap allows default values to be cleared from field configuration
- CVE-2025-40555 — A vulnerability has been identified in APOGEE PXC+TALON TC Series (BACnet) (All versions). Affected devices start sendin
- CVE-2025-3044 — MD5 Hash Collision in run-llama/llama_index
- CVE-2025-27401 — In Tuleap, deleting a report can delete criteria filters in other reports
- CVE-2026-41136 — free5GC AMF missing default case in Content-Type switch in HTTPUEContextTransfer
- CVE-2026-65932 — BT122 stops advertising
- CVE-2026-35040 — fast-jwt: Stateful RegExp (/g or /y) causes non-deterministic allowed-claim validation (logical DoS)
- CVE-2025-32728 — In sshd in OpenSSH before 10.0, the DisableForwarding directive does not adhere to the documentation stating that it dis
- CVE-2024-38806 — UAA Failure to Remove Shadow User’s Access
Recently published
- CVE-2026-16769 — RS9116W/SiWx917 plaintext pause encryption request causes DOS
- CVE-2026-65934 — BT122 plaintext pause encryption request causes DOS
- CVE-2026-65932 — BT122 stops advertising
- CVE-2026-8806 — Denial-of-service (DoS) vulnerability in MELSEC iQ-F Series FX5-ENET/IP Ethernet module
- CVE-2026-42752 — WordPress Stripe Payments plugin <= 2.0.98 - Bypass Vulnerability vulnerability
- CVE-2026-49316 — Indian Scout Bobber 2025 WCM CAN bus-off attack silently bypasses anti-theft shutdown
- CVE-2026-42534 — Jostle logic bypass degrades resolution performance
- CVE-2026-41136 — free5GC AMF missing default case in Content-Type switch in HTTPUEContextTransfer
- CVE-2026-35040 — fast-jwt: Stateful RegExp (/g or /y) causes non-deterministic allowed-claim validation (logical DoS)
- CVE-2026-3344 — WatchGuard Firebox System Integrity Check Bypass
- CVE-2025-13940 — WatchGuard Firebox Boot Time System Integrity Check Bypass
- CVE-2025-8850 — Insecure API Design in danny-avila/librechat
- CVE-2025-52953 — Junos OS and Junos OS Evolved: An unauthenticated adjacent attacker sending a valid BGP UPDATE packet forces a BGP session reset
- CVE-2025-6211 — MD5 Hash Collision in run-llama/llama_index
- CVE-2025-3044 — MD5 Hash Collision in run-llama/llama_index
- CVE-2025-40555 — A vulnerability has been identified in APOGEE PXC+TALON TC Series (BACnet) (All versions). Affected devices start sendin
- CVE-2025-46712 — Erlang/OTP SSH Has Strict KEX Violations
- CVE-2025-32728 — In sshd in OpenSSH before 10.0, the DisableForwarding directive does not adhere to the documentation stating that it dis
- CVE-2024-56202 — Apache Traffic Server: Expect header field can unreasonably retain resource
- CVE-2025-27401 — In Tuleap, deleting a report can delete criteria filters in other reports
More specific weaknesses
- CWE-1434 — Insecure Setting of Generative AI/ML Model Inference Parameters