CWE-459— Incomplete Cleanup
The product does not properly "clean up" and remove temporary or supporting resources after they have been used.— MITRE CWE catalog
237 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-459page 4 of 5
- CVE-2021-22450MEDIUMCVSS 5.5EG 5.52021-10-28
A component of the HarmonyOS has a Incomplete Cleanup vulnerability. Local attackers may exploit this vulnerability to cause memory exhaustion.
- CVE-2020-36322MEDIUMCVSS 5.5EG 5.52021-04-14
An issue was discovered in the FUSE filesystem implementation in the Linux kernel before 5.10.6, aka CID-5d069dbe8aaf. fuse_do_getattr() calls make_bad_inode() in inappropriate situations, causing a system crash. NOTE: the original fix for…
- CVE-2020-15024MEDIUMCVSS 5.5EG 5.52020-09-10
An issue was discovered in the Login Password feature of the Password Manager component in Avast Antivirus 20.1.5069.562. An entered password continues to be stored in Windows main memory after a logout, and after a Lock Vault operation.
- CVE-2019-14115MEDIUMCVSS 5.5EG 5.52020-09-08
u'Information disclosure issue occurs as in current logic as secure touch is released without clearing the display session which can result in user reading the secure input while touch is in non-secure domain as secure display is active' i…
- CVE-2020-0258MEDIUMCVSS 5.5EG 5.52020-08-11
In stopZygoteLocked of AppZygote.java, there is an insufficient cleanup. This could lead to local information disclosure in the application that is started next with no additional execution privileges needed. User interaction is not needed…
- CVE-2020-0543MEDIUMCVSS 5.5EG 5.52020-06-15
Incomplete cleanup from specific special register read operations in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
- CVE-2020-5961MEDIUMCVSS 5.5EG 5.52020-03-12
NVIDIA vGPU graphics driver for guest OS contains a vulnerability in which an incorrect resource clean up on a failure path can impact the guest VM, leading to denial of service.
- CVE-2019-13014MEDIUMCVSS 5.5EG 5.52019-08-23
Little Snitch versions 4.4.0 fixes a vulnerability in a privileged helper tool. However, the operating system may have made a copy of the privileged helper which is not removed or updated immediately. Computers may therefore still be vulne…
- CVE-2019-5011MEDIUMCVSS 5.5EG 5.52019-03-21
An exploitable privilege escalation vulnerability exists in the helper service CleanMyMac X, version 4.20, due to improper updating. The application failed to remove the vulnerable components upon upgrading to the latest version, leaving t…
- CVE-2019-5595MEDIUMCVSS 5.5EG 5.52019-02-12
In FreeBSD before 11.2-STABLE(r343782), 11.2-RELEASE-p9, 12.0-STABLE(r343781), and 12.0-RELEASE-p3, kernel callee-save registers are not properly sanitized before return from system calls, potentially allowing some kernel data used in the …
- CVE-2018-15407MEDIUMCVSS 5.5EG 5.52018-10-05
A vulnerability in the installation process of Cisco HyperFlex Software could allow an authenticated, local attacker to read sensitive information. The vulnerability is due to insufficient cleanup of installation files. An attacker could e…
- CVE-2005-2293MEDIUMCVSS 5.5EG 5.52005-07-18
Oracle Formsbuilder 9.0.4 stores database usernames and passwords in a temporary file, which is not deleted after it is used, which allows local users to obtain sensitive information.
- CVE-2002-0788MEDIUMCVSS 5.5EG 5.52002-08-12
An interaction between PGP 7.0.3 with the "wipe deleted files" option, when used on Windows Encrypted File System (EFS), creates a cleartext temporary files that cannot be wiped or deleted due to strong permissions, which could allow certa…
- CVE-2000-0552MEDIUMCVSS 5.5EG 5.52000-06-06
ICQwebmail client for ICQ 2000A creates a world readable temporary file during login and does not delete it, which allows local users to obtain sensitive information.
- CVE-2021-46766MEDIUMCVSS 2.5EG 5.52023-11-14
Improper clearing of sensitive data in the ASP Bootloader may expose secret keys to a privileged attacker accessing ASP SRAM, potentially leading to a loss of confidentiality.
- CVE-2026-101100MEDIUMCVSS 5.4EG 5.42026-09-28
A flaw has been found in ag-ui-protocol ag-ui up to 2026-09-07. This vulnerability affects the function FilterToolCallsMiddleware of the file sdks/typescript/packages/client/src/middleware/filter-tool-calls.ts of the component Middleware. …
- CVE-2026-106243MEDIUMCVSS 5.3EG 5.32026-10-06
Incomplete cleanup in Proxy Auth in Google Chrome prior to 155.0.8059.39 allowed an adjacent attacker to obtain sensitive information via crafted network traffic. (Chromium security severity: High)
- CVE-2026-104421MEDIUMCVSS 5.3EG 5.32026-10-02
Zebra before 6.2.1 contains an incomplete cleanup vulnerability that allows unauthenticated peers to block downloading of valid blocks by leaving rejected hashes in SentHashes. Attackers can send a contextually invalid block sharing an hon…
- CVE-2026-88932MEDIUMCVSS 5.3EG 5.32026-09-14
multer is a Node.js middleware for handling multipart/form-data uploads. In versions 2.2.0 through 2.3.0, when a request using disk storage is aborted mid-upload, file writes that complete after multer has already run its abort cleanup are…
- CVE-2026-79265MEDIUMCVSS 5.3EG 5.32026-08-25
Incomplete cleanup in GetUserMedia in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to obtain sensitive information via a crafted HTML page. (Chromi…
- CVE-2026-21438MEDIUMCVSS 5.3EG 5.32026-02-12
webtransport-go is an implementation of the WebTransport protocol. Prior to 0.10.0, an attacker can cause unbounded memory consumption repeatedly creating and closing many WebTransport streams. Closed streams were not removed from an inter…
- CVE-2025-29934MEDIUMCVSS 5.3EG 5.32025-11-21
A bug within some AMD CPUs could allow a local admin-privileged attacker to run a SEV-SNP guest using stale TLB entries, potentially resulting in loss of data integrity.
- CVE-2025-20293MEDIUMCVSS 5.3EG 5.32025-09-24
A vulnerability in the Day One setup process of Cisco IOS XE Software for Catalyst 9800 Series Wireless Controllers for Cloud (9800-CL) could allow an unauthenticated, remote attacker to access the public-key infrastructure (PKI) server th…
- CVE-2023-42795MEDIUMCVSS 5.3EG 5.32023-10-10
Incomplete Cleanup vulnerability in Apache Tomcat.When recycling various internal objects in Apache Tomcat from 11.0.0-M1 through 11.0.0-M11, from 10.1.0-M1 through 10.1.13, from 9.0.0-M1 through 9.0.80 and from 8.5.0 through 8.5.93, an er…
- CVE-2019-20850MEDIUMCVSS 5.3EG 5.32020-06-19
An issue was discovered in Mattermost Mobile Apps before 1.26.0. A view cache can persist on a device after a logout.
- CVE-2019-20849MEDIUMCVSS 5.3EG 5.32020-06-19
An issue was discovered in Mattermost Mobile Apps before 1.26.0. Cookie data can persist on a device after a logout.
- CVE-2020-12494MEDIUMCVSS 5.3EG 5.32020-06-16
Beckhoff's TwinCAT RT network driver for Intel 8254x and 8255x is providing EtherCAT functionality. The driver implements real-time features. Except for Ethernet frames sent from real-time functionality, all other Ethernet frames sent thro…
- CVE-2019-8768MEDIUMCVSS 5.3EG 5.32019-12-18
"Clear History and Website Data" did not clear the history. The issue was addressed with improved data deletion. This issue is fixed in macOS Catalina 10.15. A user may be unable to delete browsing history items.
- CVE-2019-17420MEDIUMCVSS 5.3EG 5.32019-10-10
In OISF LibHTP before 0.5.31, as used in Suricata 4.1.4 and other products, an HTTP protocol parsing error causes the http_header signature to not alert on a response with a single \r\n ending.
- CVE-2020-24458MEDIUMCVSS 5.2EG 5.22021-02-17
Incomplete cleanup in some Intel(R) PROSet/Wireless WiFi and Killer (TM) drivers before version 22.0 may allow a privileged user to potentially enable information disclosure and denial of service<b> </b>via adjacent access.
- CVE-2020-10685MEDIUMCVSS 5.0EG 5.02020-05-11
A flaw was found in Ansible Engine affecting Ansible Engine versions 2.7.x before 2.7.17 and 2.8.x before 2.8.11 and 2.9.x before 2.9.7 as well as Ansible Tower before and including versions 3.4.5 and 3.5.5 and 3.6.3 when using modules whi…
- CVE-2021-32571MEDIUMCVSS 4.9EG 4.92021-10-14
In OSS-RC systems of the release 18B and older during data migration procedures certain files containing usernames and passwords are left in the system undeleted but in folders accessible by top privileged accounts only. NOTE: This vulnera…
- CVE-2019-3733MEDIUMCVSS 4.9EG 4.92019-09-30
RSA BSAFE Crypto-C Micro Edition, all versions prior to 4.1.4, is vulnerable to three (3) different Improper Clearing of Heap Memory Before Release vulnerability, also known as 'Heap Inspection vulnerability'. A malicious remote user could…
- CVE-2026-19019MEDIUMCVSS 4.8EG 4.82026-08-06
A security flaw has been discovered in poco-ai poco-agent up to 0.5.4. Affected is the function WorkspaceManager._setup_session_persistence of the file executor/app/core/workspace.py of the component Claude File Handler. The manipulation r…
- CVE-2024-26005MEDIUMCVSS 4.8EG 4.82024-03-12
An unauthenticated remote attacker can gain service level privileges through an incomplete cleanup during service restart after a DoS.
- CVE-2024-36952MEDIUMCVSS 4.7EG 4.72024-05-30
In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Move NPIV's transport unregistration to after resource clean up There are cases after NPIV deletion where the fabric switch still believes the NPIV is logged…
- CVE-2026-0427MEDIUMCVSS 4.6EG 4.62026-05-15
Improper cleanup of shared register resources in GPU firmware could allow an admin-privileged attacker from a Guest Virtual machine (VM) to access these shared resources from another Guest VM, potentially resulting in the loss of confident…
- CVE-2022-23035MEDIUMCVSS 4.6EG 4.62022-01-25
Insufficient cleanup of passed-through device IRQs The management of IRQs associated with physical devices exposed to x86 HVM guests involves an iterative operation in particular when cleaning up after the guest's use of the device. In the…
- CVE-2019-1586MEDIUMCVSS 4.6EG 4.62019-05-03
A vulnerability in Cisco Application Policy Infrastructure Controller (APIC) Software could allow an unauthenticated, local attacker with physical access to obtain sensitive information from an affected device. The vulnerability is due to …
- CVE-2018-11068MEDIUMCVSS 4.6EG 4.62018-09-11
RSA BSAFE SSL-J versions prior to 6.2.4 contain a Heap Inspection vulnerability that could allow an attacker with physical access to the system to recover sensitive key material.
- CVE-2023-31356MEDIUMCVSS 4.4EG 4.42024-08-13
Incomplete system memory cleanup in SEV firmware could allow a privileged attacker to corrupt guest private memory, potentially resulting in a loss of data integrity.
- CVE-2023-52617MEDIUMCVSS 4.4EG 4.42024-03-18
In the Linux kernel, the following vulnerability has been resolved: PCI: switchtec: Fix stdev_release() crash after surprise hot remove A PCI device hot removal may occur while stdev->cdev is held open. The call to stdev_release() then h…
- CVE-2022-26074MEDIUMCVSS 4.4EG 4.42022-08-18
Incomplete cleanup in a firmware subsystem for Intel(R) SPS before versions SPS_E3_04.08.04.330.0 and SPS_E3_04.01.04.530.0 may allow a privileged user to potentially enable denial of service via local access.
- CVE-2021-4002MEDIUMCVSS 4.4EG 4.42022-03-03
A memory leak flaw in the Linux kernel's hugetlbfs memory usage was found in the way the user maps some regions of memory twice using shmget() which are aligned to PUD alignment with the fault of some of the memory pages. A local user coul…
- CVE-2021-4032MEDIUMCVSS 4.4EG 4.42022-01-21
A vulnerability was found in the Linux kernel's KVM subsystem in arch/x86/kvm/lapic.c kvm_free_lapic when a failure allocation was detected. In this flaw the KVM subsystem may crash the kernel due to mishandling of memory errors that happe…
- CVE-2026-106394MEDIUMCVSS 4.3EG 4.32026-10-06
Incomplete cleanup in Glic in Google Chrome prior to 155.0.8059.39 allowed a remote attacker leveraging social engineering to leak cross-origin data via a crafted HTML page. (Chromium security severity: Low)
- CVE-2026-53867MEDIUMCVSS 4.3EG 4.32026-06-12
Capgo before 12.128.2 fails to delete previously uploaded profile images from backend storage when users replace or remove them. Attackers can access orphaned image files through previously generated URLs, allowing unauthorized retrieval o…
- CVE-2025-15331MEDIUMCVSS 4.3EG 4.32026-02-05
Tanium addressed an uncontrolled resource consumption vulnerability in Connect.
- CVE-2024-4767MEDIUMCVSS 4.3EG 4.32024-05-14
If the `browser.privatebrowsing.autostart` preference is enabled, IndexedDB files were not properly deleted when the window was closed. This preference is disabled by default in Firefox. This vulnerability affects Firefox < 126, Firefox ES…
- CVE-2019-8550MEDIUMCVSS 4.3EG 4.32019-12-18
An issue existed in the pausing of FaceTime video. The issue was resolved with improved logic. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, watchOS 5.2. A user’s video may not be paused in a FaceTime call if they exit the FaceT…
Map vulnerabilities like CWE-459 to your infrastructure
EchelonGraph correlates every CVE — across CWE-459 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →