CWE-789: Memory Allocation with Excessive Size Value
The product allocates memory based on an untrusted, large size value, but it does not ensure that the size is within expected limits, allowing arbitrary amounts of memory to be allocated.
223 tracked CVEs are classified under this weakness.
Highest-risk vulnerabilities
- CVE-2026-25579 — Navidrome affected by Denial of Service and disk exhaustion via oversized `size` parameter in `/rest/getCoverArt` and `/share/img/<token>` endpoints
- CVE-2026-5740 — Unauthenticated WebSocket binary frame causes denial of service in Mattermost Server
- CVE-2026-28253 — Memory Allocation with Excessive Size Value vulnerability in Trane Tracer SC, Tracer SC+, and Tracer Concierge
- CVE-2025-54801 — Fiber Susceptible to Crash via `BodyParser` Due to Unvalidated Large Slice Index in Decoder
- CVE-2026-49975 — Apache HTTP Server: mod_http2 denial of service
- CVE-2026-22803 — SvelteKit has a memory amplification DoS in Remote Functions binary form deserializer
- CVE-2026-22026 — CryptoLib Unbounded Memory Allocation in KMC HTTP Response Handler Allows Resource Exhaustion
- CVE-2026-14454 — Imager versions before 1.033 for Perl treat unsigned EXIF IFD entry counts as signed
- CVE-2026-72687 — Memory Allocation with Excessive Size Value in Elasticsearch Leading to Denial of Service
- CVE-2026-72645 — Memory Allocation with Excessive Size Value in Elasticsearch Leading to Denial of Service
- CVE-2025-53893 — File Browser Vulnerable to Uncontrolled Memory Consumption Due to Oversized File Processing
- CVE-2026-24158 — NVIDIA Triton Inference Server contains a vulnerability in the HTTP endpoint where an attacker may cause a denial of ser
- CVE-2026-21452 — MessagePack-Java Vulnerable to Remote Denial of Service via Malicious .msgpack Model File Triggering Unbounded EXT Payload Allocation
- CVE-2025-8696 — DoS attack against the Stork UI from an unauthenticated user
- CVE-2025-61910 — NASA ION-DTN BPv7 4.1.3s Uncontrolled Memory Allocation that leads to Denial-of-Service
- CVE-2025-61600 — Unbounded Memory Allocation in Stalwart IMAP parser
- CVE-2025-3632 — IBM 4769 Developers Toolkit denial of service
- CVE-2025-30211 — KEX init error results with excessive memory usage
- CVE-2025-23331 — NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where a user could cause a memory allocati
- CVE-2025-20140 — A vulnerability in the Wireless Network Control daemon (wncd) of Cisco IOS XE Software for Wireless LAN Controllers (WLC
Recently published
- CVE-2026-83530 — Uncontrolled Memory Allocation in cel-go
- CVE-2026-86776 — KeePass 2.35 through 2.61.1 Memory Exhaustion via KDBX Header Field Size
- CVE-2026-19204 — A client may send a WebSocket frame with an unknown opcode and a very large declared payload length, causing Jetty to at
- CVE-2026-85201 — In Eclipse Ankaios versions 0.1.0 through 1.0.1, the agent does not limit the length declared by a workload in a length-
- CVE-2026-85445 — MOOS-IvP through 24.8.1 BHV_IPF Demultiplexer Memory Exhaustion via Packet Count
- CVE-2026-85442 — MOOS core-moos through 10.4.0 MOOSDB Denial of Service via Unbounded Packet Allocation
- CVE-2026-84888 — RightNow-AI OpenFang tool_runner.rs shell_exec memory allocation
- CVE-2026-84857 — sigoden aichat API Endpoint serve.rs memory allocation
- CVE-2026-84289 — NousResearch hermes-agent MCP Tool mcp_tool.py list_tools memory allocation
- CVE-2026-81693 — openssl_encrypt before 1.4.9 Denial of Service via QR total field
- CVE-2026-81692 — openssl_encrypt before 1.4.9 Denial of Service via STREAMINFO
- CVE-2026-77354 — kin-openapi: Uncontrolled resource consumption in openapi3filter deepObject query parameter decoding
- CVE-2026-44253 — Wazuh: Cluster Protocol Memory Exhaustion (DoS) via unbounded receive_str allocation and div_msg_box accumulation
- CVE-2026-75935 — Memory-amplification denial of service via declared-length preallocation in Amazon ion-java
- CVE-2026-69219 — RabbitMQ Java client ValueReader: Oversized LongString/bytes length triggers OOM via unchecked allocation
- CVE-2026-72639 — Memory Allocation with Excessive Size Value in Elasticsearch Highlighting Leading to Denial of Service
- CVE-2026-72645 — Memory Allocation with Excessive Size Value in Elasticsearch Leading to Denial of Service
- CVE-2026-72656 — Memory Allocation with Excessive Size Value in Elasticsearch Leading to Denial of Service
- CVE-2026-72678 — Memory Allocation with Excessive Size Value in Elasticsearch Leading to Denial of Service
- CVE-2026-72687 — Memory Allocation with Excessive Size Value in Elasticsearch Leading to Denial of Service