CWE-642— External Control of Critical State Data
17 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-642page 1 of 1
- CVE-2017-0928MEDIUMCVSS 6.1EG 6.12018-06-04
html-janitor node module suffers from an External Control of Critical State Data vulnerability via user-control of the '_sanitized' variable causing sanitization to be bypassed.
- CVE-2018-15382HIGHCVSS 8.6EG 8.62018-10-05
A vulnerability in Cisco HyperFlex Software could allow an unauthenticated, remote attacker to generate valid, signed session tokens. The vulnerability is due to a static signing key that is present in all Cisco HyperFlex systems. An attac…
- CVE-2019-9496HIGHCVSS 7.5EG 7.52019-04-17
An invalid authentication sequence could result in the hostapd process terminating due to missing state validation steps when processing the SAE confirm message when in hostapd/AP mode. All version of hostapd with SAE support are vulnerabl…
- CVE-2020-1976MEDIUMCVSS 4.7EG 4.72020-02-12
A denial-of-service (DoS) vulnerability in Palo Alto Networks GlobalProtect software running on Mac OS allows authenticated local users to cause the Mac OS kernel to hang or crash. This issue affects GlobalProtect 5.0.5 and earlier version…
- CVE-2020-26186MEDIUMCVSS 6.8EG 6.82021-01-08
Dell Inspiron 5675 BIOS versions prior to 1.4.1 contain a UEFI BIOS RuntimeServices overwrite vulnerability. A local attacker with access to system memory may exploit this vulnerability by overwriting the RuntimeServices structure to execu…
- CVE-2020-27872HIGHCVSS 8.8EG 8.82021-02-04
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R7450 1.2.0.62_1.0.1 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within …
- CVE-2022-22154MEDIUMCVSS 6.8EG 6.82022-01-19
In a Junos Fusion scenario an External Control of Critical State Data vulnerability in the Satellite Device (SD) control state machine of Juniper Networks Junos OS allows an attacker who is able to make physical changes to the cabling of t…
- CVE-2022-32859MEDIUMCVSS 5.3EG 5.32022-11-01
A logic issue was addressed with improved state management. This issue is fixed in iOS 16. Deleted contacts may still appear in spotlight search results.
- CVE-2023-0575HIGHCVSS 7.2EG 9.82023-02-09
External Control of Critical State Data, Improper Control of Generation of Code ('Code Injection') vulnerability in YugaByte, Inc. Yugabyte DB on Windows, Linux, MacOS, iOS (DevopsBase.Java:execCommand, TableManager.Java:runCommand modules…
- CVE-2023-29403HIGHCVSS 7.8EG 7.82023-06-08
On Unix platforms, the Go runtime does not behave differently when a binary is run with the setuid/setgid bits. This can be dangerous in certain cases, such as when dumping memory state, or assuming the status of standard i/o file descript…
- CVE-2024-22387MEDIUMCVSS 6.8EG 6.82024-07-11
External Control of Critical State Data (CWE-642) in the Controller 6000 and Controller 7000 diagnostic web interface allows an authenticated user to modify device I/O connections leading to unexpected behavior that in some circumstances c…
- CVE-2024-58265LOWCVSS 3.1EG 3.12025-07-27
The snow crate before 0.9.5 for Rust, when stateful TransportState is used, allows incrementing a nonce and thereby denying message delivery.
- CVE-2024-8754MEDIUMCVSS 6.4EG 6.42024-09-12
An issue has been discovered in GitLab EE/CE affecting all versions from 16.9.7 prior to 17.1.7, 17.2 prior to 17.2.5, and 17.3 prior to 17.3.2. An improper input validation error allows attacker to squat on accounts via linking arbitrary …
- CVE-2025-26787MEDIUMCVSS 4.7EG 4.72025-12-22
An error in the SignServer container startup logic was found in Keyfactor SignServer versions prior to 7.2. The Admin CLI command used to configure Certificate access to the initial startup of the container sets a property of "allowany" to…
- CVE-2025-49090HIGHCVSS 7.1EG 7.12025-10-02
The Matrix specification before 1.16 (i.e., with a room version before 12 and State Resolution before 2.1) has deficient state resolution.
- CVE-2025-54566MEDIUMCVSS 4.2EG 4.22025-07-25
hw/pci/pcie_sriov.c in QEMU through 10.0.3 has a migration state inconsistency, a related issue to CVE-2024-26327.
- CVE-2026-29146HIGHCVSS 7.5EG 7.52026-04-09
Padding Oracle vulnerability in Apache Tomcat's EncryptInterceptor with default configuration. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.18, from 10.0.0-M1 through 10.1.52, from 9.0.13 through 9..115, from 8.5.38 throu…
Map vulnerabilities like CWE-642 to your infrastructure
EchelonGraph correlates every CVE — across CWE-642 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →