CWE-74
5,289 CVEs • Abstraction: Class • Likelihood of Exploit: High
Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
The product constructs all or part of a command, data structure, or record using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify how it is parsed or interpreted when it is sent to a downstream component.
CVEs (5,289)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
library/www_browser.pl in SWI-Prolog 7.2.3 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection attacks vi...Show more |
Lib/webbrowser.py in Python through 3.6.3 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection attacks via...Show more |
uiutil.c in FontForge through 20170731 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection attacks via a...Show more |
tools/url_handler.pl in TIN 2.4.1 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection attacks via a craft...Show more |
1Ocaml Batteries Project 1Ocaml Batteries May 13, 2026 Dec 14, 2017 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 batteriesConfig.mlp in OCaml Batteries Included (aka ocaml-batteries) 2.6 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduc...Show more |
1White Dune Project 1White Dune May 13, 2026 Dec 14, 2017 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 swt/motif/browser.c in White_dune (aka whitedune) 0.30.10 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injec...Show more |
libsylph/utils.c in Sylpheed through 3.6 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection attacks via...Show more |
1Reddit Terminal Viewer Project 1Reddit Terminal Viewer May 13, 2026 Dec 14, 2017 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 scripts/inspect_webbrowser.py in Reddit Terminal Viewer (RTV) 1.19.0 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct arg...Show more |
2Debian Ecmwf2Debian Linux MetviewMay 13, 2026 Dec 14, 2017 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 etc/ObjectList in Metview 4.7.3 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection attacks via a crafted...Show more |
2Debian Nip2 Project2Debian Linux Nip2May 13, 2026 Dec 14, 2017 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 boxes.c in nip2 8.4.0 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection attacks via a crafted URL. NOTE...Show more |
TeX Live through 20170524 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection attacks via a crafted URL,...Show more |
2Debian Kildclient2Debian Linux KildclientMay 13, 2026 Dec 14, 2017 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 KildClient 3.1.0 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection attacks via a crafted URL, related t...Show more |
1Sap 1Hana Extended Application Services May 13, 2026 Dec 12, 2017 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Two potential audit log injections in SAP HANA extended application services 1.0, advanced model: 1) Certain HTTP/REST endpoints of controller service are missing user input validation which could allow unprivileged atta...Show more |
2Apache Oracle3Financial Services Market Risk Measurement And Management Peoplesoft Enterprise PeopletoolsSynapseMay 13, 2026 Dec 11, 2017 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 In Apache Synapse, by default no authentication is required for Java Remote Method Invocation (RMI). So Apache Synapse 3.0.1 or all previous releases (3.0.0, 2.1.0, 2.0.0, 1.2, 1.1.2, 1.1.1) allows remote code execution...Show more |
lilypond-invoke-editor in LilyPond 2.19.80 does not validate strings before launching the program specified by the BROWSER environment variable, which allows remote attackers to conduct argument-injection attacks via a c...Show more |
1Sensible Utils Project 1Sensible Utils May 13, 2026 Dec 11, 2017 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 sensible-browser in sensible-utils before 0.0.11 does not validate strings before launching the program specified by the BROWSER environment variable, which allows remote attackers to conduct argument-injection attacks v...Show more |
Opencast 2.3.2 and older versions are vulnerable to script injections through media and metadata in the player and media module resulting in arbitrary code execution, fixed in 2.3.3 and 3.0. |
1Moxa 3Nport 5110 Firmware Nport 5130 FirmwareNport 5150 FirmwareMay 13, 2026 Nov 16, 2017 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 An Injection issue was discovered in Moxa NPort 5110 Version 2.2, NPort 5110 Version 2.4, NPort 5110 Version 2.6, NPort 5110 Version 2.7, NPort 5130 Version 3.7 and prior, and NPort 5150 Version 3.7 and prior. An attacke...Show more |
2Debian Mediawiki2Debian Linux MediawikiMay 13, 2026 Nov 15, 2017 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 api.php in MediaWiki before 1.27.4, 1.28.x before 1.28.3, and 1.29.x before 1.29.2 has a Reflected File Download vulnerability. |
In Apache NiFi before 0.7.2 and 1.x before 1.1.2 in a cluster environment, the proxy chain serialization/deserialization is vulnerable to an injection attack where a carefully crafted username could impersonate another u...Show more |