CWE-20
12,949 CVEs • Abstraction: Class • Likelihood of Exploit: High
Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
CVEs (12,949)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Apache 1Apache Airflow Providers Apache Hive Jun 17, 2026 Jul 3, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Improper Input Validation vulnerability in Apache Software Foundation Apache Airflow Hive Provider. This issue affects Apache Airflow Apache Hive Provider: before 6.1.1. Before version 6.1.1 it was possible to bypass th...Show more |
A improper input validation vulnerability exists in Ivanti Endpoint Manager 2022 and below that could allow privilege escalation or remote code execution. |
1Apache 1Apache Airflow Providers Jdbc Jun 17, 2026 Jun 29, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 Improper Input Validation vulnerability in Apache Software Foundation Apache Airflow JDBC Provider. Airflow JDBC Provider Connection’s [Connection URL] parameters had no restrictions, which made it possible to implement...Show more |
In setInputMethodWithSubtypeIdLocked of InputMethodManagerService.java, there is a possible way to setup input methods that are not enabled due to improper input validation. This could lead to local escalation of privile...Show more |
1Cisco 1Telepresence Video Communication Server Jun 17, 2026 Jun 28, 2023 N/A· v4 7.7 HIGH· v3 N/A· v2 Multiple vulnerabilities in Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow an authenticated attacker with Administrator-level read-only credentials to elevate their privileges...Show more |
1Cisco 1Telepresence Video Communication Server Jun 17, 2026 Jun 28, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A vulnerability in the change password functionality of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow an authenticated, remote attacker with Read-only credentials to elevate...Show more |
Reflected XSS affects the ‘mode’ parameter in the /admin functionality of the web application in versions <=2.0.44 |
1Ibm 1Qradar Security Information And Event Manager Jun 17, 2026 Jun 27, 2023 N/A· v4 4.3 MEDIUM· v3 N/A· v2 IBM QRadar SIEM 7.5.0 could allow an authenticated user to perform unauthorized actions due to hazardous input validation. IBM X-Force ID: 248134. |
1Apache 2Apache Airflow Providers Microsoft Mssql Apache Airflow Providers OdbcJun 17, 2026 Jun 27, 2023 N/A· v4 4.3 MEDIUM· v3 N/A· v2 Input Validation vulnerability in Apache Software Foundation Apache Airflow ODBC Provider, Apache Software Foundation Apache Airflow MSSQL Provider.This vulnerability is considered low since it requires DAG code to use `...Show more |
A valid, authenticated LXCA user with elevated privileges may be able to delete folders in the LXCA filesystem through a specifically crafted web API call due to insufficient input validation. |
A valid, authenticated LXCA user with elevated privileges may be able to replace filesystem data through a specifically crafted web API call due to insufficient input validation. |
Vega is a decentralized trading platform that allows pseudo-anonymous trading of derivatives on a blockchain. Prior to version 0.71.6, a vulnerability exists that allows a malicious validator to trick the Vega network in...Show more |
NVIDIA Jetson Linux Driver Package contains a vulnerability in nvbootctrl, where a privileged local attacker can configure invalid settings, resulting in denial of service.
|
1Dell 31Alienware M15 R7 Firmware G15 5510 FirmwareG15 5520 Firmware+28 moreJun 17, 2026 Jun 23, 2023 N/A· v4 6.8 MEDIUM· v3 N/A· v2
Dell BIOS contains an Improper Input Validation vulnerability. An unauthenticated physical attacker may potentially exploit this vulnerability to perform arbitrary code execution.
|
1Dell 434Alienware Area 51m R1 Firmware Alienware Area 51m R2 FirmwareAlienware Aurora R11 Firmware+431 moreJun 17, 2026 Jun 23, 2023 N/A· v4 6.7 MEDIUM· v3 N/A· v2
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable.
|
1Dell 434Alienware Area 51m R1 Firmware Alienware Area 51m R2 FirmwareAlienware Aurora R11 Firmware+431 moreJun 17, 2026 Jun 23, 2023 N/A· v4 6.7 MEDIUM· v3 N/A· v2
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable.
|
1Dell 434Alienware Area 51m R1 Firmware Alienware Area 51m R2 FirmwareAlienware Aurora R11 Firmware+431 moreJun 17, 2026 Jun 23, 2023 N/A· v4 6.7 MEDIUM· v3 N/A· v2
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable.
|
1Dell 434Alienware Area 51m R1 Firmware Alienware Area 51m R2 FirmwareAlienware Aurora R11 Firmware+431 moreJun 17, 2026 Jun 23, 2023 N/A· v4 6.7 MEDIUM· v3 N/A· v2
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable.
|
1Dell 434Alienware Area 51m R1 Firmware Alienware Area 51m R2 FirmwareAlienware Aurora R11 Firmware+431 moreJun 17, 2026 Jun 23, 2023 N/A· v4 6.7 MEDIUM· v3 N/A· v2
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable.
|
1Dell 434Alienware Area 51m R1 Firmware Alienware Area 51m R2 FirmwareAlienware Aurora R11 Firmware+431 moreJun 17, 2026 Jun 23, 2023 N/A· v4 6.7 MEDIUM· v3 N/A· v2
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable.
|