Explore

Rule Explorer

Search the public rule index by CVE, GHSA, CWE, language, framework, author, or rule slug. Filter by language, framework, severity, confidence, license, and validation status.

Public rules
2917
Downloads
3.6M
Verified
2917
Authors
2
Search the rule indexUse CVE, GHSA, CWE, language, framework, package, or rule slug.
5 rules matched. Showing 5 loaded rules.
Publish rule
CVE-2026-48155: Python Unbounded Whitespace Multiplicationcve-2026-48155-python-unbounded-whitespace-multiplication

String or list multiplication with dynamically calculated values may lead to uncontrolled memory consumption and Denial of Service (DoS). Ensure the sequence multiplier is explicitly bounded before execution.

by Provallyupdated 2026-06-23Apache-2.0
8580 direct858 via packs
downloads
74quality
CVE-2026-42189: Unchecked Network Decoded Count Vec Capacitycve-2026-42189-unchecked-network-decoded-count-vec-capacity

An integer count decoded from untrusted external data is passed to Vec::with_capacity without bounding it against the remaining readable packet/buffer bytes. A crafted large count (e.g. u32::MAX ~4 billion) can trigger a multi-gigabyte heap allocation, crashing the process via OOM before any credential is verified (pre-auth DoS). Clamp the decoded count to t

by Provallyupdated 2026-06-12Apache-2.0
1.3K0 direct1.3K via packs
downloads
77quality
CVE-2026-33524: Unchecked Stream Array Allocationcve-2026-33524-unchecked-stream-array-allocation

An array is allocated using a length directly read from a stream or payload without bounded validation. An attacker can supply an artificially large variable length, triggering an excessive memory allocation that exhausts JVM memory (OutOfMemoryError) and leads to Denial of Service (DoS). Always check that the requested size does not exceed the remaining ava

by Provallyupdated 2026-06-12Apache-2.0
1.3K0 direct1.3K via packs
downloads
77quality
CVE-2026-22803: Eager Buffer Allocation Doscve-2026-22803-eager-buffer-allocation-dos

Eagerly allocating a buffer based on an unverified length before asynchronously reading chunks can lead to Denial of Service (DoS) via memory exhaustion. Defend against this by deferring allocation until all chunks are successfully read or validating the requested length against known HTTP Content-Length bounds.

by Provallyupdated 2026-06-12Apache-2.0
1.3K0 direct1.3K via packs
downloads
65quality
CVE-2026-21452: Unbounded Array Allocation From Method Parametercve-2026-21452-unbounded-array-allocation-from-method-parameter

An array is allocated using a size directly from a method parameter without an explicit upper bound check wrapping the allocation. If the size is controlled by an attacker during parsing or deserialization, this can lead to unbounded memory allocation, OutOfMemoryError, and Denial of Service (DoS). Validate the size against a reasonable threshold before allo

by Provallyupdated 2026-06-12Apache-2.0
1.3K0 direct1.3K via packs
downloads
81quality
All matching rules loaded.