cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2020-25689,https://securityvulnerability.io/vulnerability/CVE-2020-25689,Memory Leak Vulnerability in WildFly by Red Hat,"A memory leak issue exists in WildFly, specifically affecting all versions up to 21.0.0.Final. When the host-controller attempts to reconnect to the domain-controller, it enters a loop that creates new connections without closing the previously established ones. This can lead to exhaustive memory consumption, potentially causing an Out of Memory (OOM) condition and resulting in denial of service. Such behavior significantly impacts the availability of the system, allowing for service interruptions that can affect users and applications relying on the WildFly server.",Red Hat,Wildfly-core,5.3,MEDIUM,0.0005699999746866524,false,,false,false,false,,,false,false,,2020-11-02T21:15:00.000Z,0 CVE-2019-14838,https://securityvulnerability.io/vulnerability/CVE-2019-14838,Improper Permissions in WildFly Core Management Functionality,"A vulnerability in WildFly Core prior to version 7.2.5.GA allows management users with roles such as Monitor, Auditor, and Deployer to incorrectly modify the runtime state of the server. This misconfiguration can lead to unauthorized changes, posing risks to the stability and security of the server environment.",Red Hat,Wildfly-core,5.2,MEDIUM,0.004000000189989805,false,,false,false,false,,,false,false,,2019-10-14T14:32:53.000Z,0 CVE-2018-10934,https://securityvulnerability.io/vulnerability/CVE-2018-10934,,"A cross-site scripting (XSS) vulnerability was found in the JBoss Management Console versions before 7.1.6.CR1, 7.1.6.GA. Users with roles that can create objects in the application can exploit this to attack other privileged users.",Red Hat,Wildfly-core,5.4,MEDIUM,0.00139999995008111,false,,false,false,false,,,false,false,,2019-03-27T12:20:07.000Z,0