← Back
CWE-94

6,471 CVEs • Abstraction: Base • Likelihood of Exploit: Medium

Improper Control of Generation of Code ('Code Injection')

The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.

JSON object

Loading...

CVEs (6,471)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Nuxt
1Nuxt
Nov 21, 2024
Jun 13, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Code Injection in GitHub repository nuxt/nuxt prior to 3.5.3.
1Craftcms
1Craft Cms
Jan 3, 2025
Jun 13, 2023
N/A· v4
7.2 HIGH· v3
N/A· v2
CraftCMS version 3.7.59 is vulnerable to Server-Side Template Injection (SSTI). An authenticated attacker can inject Twig Template to User Photo Location field when setting User Photo Location in User Settings, lead to R...Show more
CraftCMS version 3.7.59 is vulnerable to Server-Side Template Injection (SSTI). An authenticated attacker can inject Twig Template to User Photo Location field when setting User Photo Location in User Settings, lead to Remote Code Execution. NOTE: the vendor disputes this because only Administrators can add this Twig code, and (by design) Administrators are allowed to do that by default.Show less
1Chatwork
1Chatwork
Jan 3, 2025
Jun 13, 2023
N/A· v4
4.4 MEDIUM· v3
N/A· v2
Code injection vulnerability exists in Chatwork Desktop Application (Mac) 2.6.43 and earlier. If this vulnerability is exploited, a non-administrative user of the Mac where the product is installed may store and obtain a...Show more
Code injection vulnerability exists in Chatwork Desktop Application (Mac) 2.6.43 and earlier. If this vulnerability is exploited, a non-administrative user of the Mac where the product is installed may store and obtain audio and image data from the product without the user's consent.Show less
1Siemens
3Simatic Pcs 7
Simatic S7 PmSimatic Step 7
Nov 21, 2024
Jun 13, 2023
N/A· v4
8.8 HIGH· v3
N/A· v2
A vulnerability has been identified in SIMATIC PCS 7 (All versions < V9.1 SP2 UC04), SIMATIC S7-PM (All versions < V5.7 SP1 HF1), SIMATIC S7-PM (All versions < V5.7 SP2 HF1), SIMATIC STEP 7 V5 (All versions < V5.7). The...Show more
A vulnerability has been identified in SIMATIC PCS 7 (All versions < V9.1 SP2 UC04), SIMATIC S7-PM (All versions < V5.7 SP1 HF1), SIMATIC S7-PM (All versions < V5.7 SP2 HF1), SIMATIC STEP 7 V5 (All versions < V5.7). The affected product contains a database management system that could allow remote users with low privileges to use embedded functions of the database (local or in a network share) that have impact on the server. An attacker with network access to the server network could leverage these embedded functions to run code with elevated privileges in the database management system's server.Show less
1Apache
1Nifi
Feb 13, 2025
Jun 12, 2023
N/A· v4
8.8 HIGH· v3
N/A· v2
The DBCPConnectionPool and HikariCPConnectionPool Controller Services in Apache NiFi 0.0.2 through 1.21.0 allow an authenticated and authorized user to configure a Database URL with the H2 driver that enables custom code...Show more
The DBCPConnectionPool and HikariCPConnectionPool Controller Services in Apache NiFi 0.0.2 through 1.21.0 allow an authenticated and authorized user to configure a Database URL with the H2 driver that enables custom code execution. The resolution validates the Database URL and rejects H2 JDBC locations. You are recommended to upgrade to version 1.22.0 or later which fixes this issue.Show less
1Atos
2Unify Openscape 4000 Assistant
Unify Openscape 4000 Manager
Jan 6, 2025
Jun 12, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Atos Unify OpenScape 4000 Assistant V10 R1 before V10 R1.42.0 and V10 R1.34.8 and Manager V10 R1 before V10 R1.42.0 and V10 R1.34.8 allow remote code execution by unauthenticated users, aka OSFOURK-24033.
1Hp
1Softpaq Installer
Jan 6, 2025
Jun 9, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
A potential security vulnerability has been identified with a version of the HP Softpaq installer that can lead to arbitrary code execution.
1Bytedeco
1Javacpp Presets
Nov 21, 2024
Jun 9, 2023
N/A· v4
8.8 HIGH· v3
N/A· v2
JavaCPP Presets is a project providing Java distributions of native C++ libraries. All the actions in the `bytedeco/javacpp-presets` use the `github.event.head_commit.message​` parameter in an insecure way. For example,...Show more
JavaCPP Presets is a project providing Java distributions of native C++ libraries. All the actions in the `bytedeco/javacpp-presets` use the `github.event.head_commit.message​` parameter in an insecure way. For example, the commit message is used in a run statement - resulting in a command injection vulnerability due to string interpolation. No exploitation has been reported. This issue has been addressed in version 1.5.9. Users of JavaCPP Presets are advised to upgrade as a precaution.Show less
2Fedoraproject
Golang
2Fedora
Go
Jan 6, 2025
Jun 8, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
The go command may execute arbitrary code at build time when using cgo. This may occur when running "go get" on a malicious module, or when running any other command which builds untrusted code. This is can by triggered...Show more
The go command may execute arbitrary code at build time when using cgo. This may occur when running "go get" on a malicious module, or when running any other command which builds untrusted code. This is can by triggered by linker flags, specified via a "#cgo LDFLAGS" directive. The arguments for a number of flags which are non-optional are incorrectly considered optional, allowing disallowed flags to be smuggled through the LDFLAGS sanitization. This affects usage of both the gc and gccgo compilers.Show less
2Fedoraproject
Golang
2Fedora
Go
Jan 6, 2025
Jun 8, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
The go command may generate unexpected code at build time when using cgo. This may result in unexpected behavior when running a go program which uses cgo. This may occur when running an untrusted module which contains di...Show more
The go command may generate unexpected code at build time when using cgo. This may result in unexpected behavior when running a go program which uses cgo. This may occur when running an untrusted module which contains directories with newline characters in their names. Modules which are retrieved using the go command, i.e. via "go get", are not affected (modules retrieved using GOPATH-mode, i.e. GO111MODULE=off, may be affected).Show less
1Sabnzbd
1Sabnzbd
Nov 21, 2024
Jun 7, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
SABnzbd is an open source automated Usenet download tool. A design flaw was discovered in SABnzbd that could allow remote code execution. Manipulating the Parameters setting in the Notification Script functionality allow...Show more
SABnzbd is an open source automated Usenet download tool. A design flaw was discovered in SABnzbd that could allow remote code execution. Manipulating the Parameters setting in the Notification Script functionality allows code execution with the privileges of the SABnzbd process. Exploiting the vulnerabilities requires access to the web interface. Remote exploitation is possible if users[exposed their setup to the internet or other untrusted networks without setting a username/password. By default SABnzbd is only accessible from `localhost`, with no authentication required for the web interface. This issue has been patched in commits `e3a722` and `422b4f` which have been included in the 4.0.2 release. Users are advised to upgrade. Users unable to upgrade should ensure that a username and password have been set if their instance is web accessible.Show less
3Colorlib
CpothemesMachothemes
16Activello
AffluentAllegiant+13 more
Apr 8, 2026
Jun 7, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
The following themes for WordPress are vulnerable to Function Injections in versions up to and including Shapely <= 1.2.7, NewsMag <= 2.4.1, Activello <= 1.4.0, Illdy <= 2.1.4, Allegiant <= 1.2.2, Newspaper X <= 1.3.1, P...Show more
The following themes for WordPress are vulnerable to Function Injections in versions up to and including Shapely <= 1.2.7, NewsMag <= 2.4.1, Activello <= 1.4.0, Illdy <= 2.1.4, Allegiant <= 1.2.2, Newspaper X <= 1.3.1, Pixova Lite <= 2.0.5, Brilliance <= 1.2.7, MedZone Lite <= 1.2.4, Regina Lite <= 2.0.4, Transcend <= 1.1.8, Affluent <= 1.1.0, Bonkers <= 1.0.4, Antreas <= 1.0.2, Sparkling <= 2.4.8, and NatureMag Lite <= 1.0.4. This is due to epsilon_framework_ajax_action. This makes it possible for unauthenticated attackers to call functions and achieve remote code execution.Show less
1Advantech
1Webaccess/scada
Nov 21, 2024
Jun 6, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
In Advantech WebAccss/SCADA v9.1.3 and prior, there is an arbitrary file overwrite vulnerability, which could allow an attacker to overwrite any file in the operating system (including system files), inject code into an...Show more
In Advantech WebAccss/SCADA v9.1.3 and prior, there is an arbitrary file overwrite vulnerability, which could allow an attacker to overwrite any file in the operating system (including system files), inject code into an XLS file, and modify the file extension, which could lead to arbitrary code execution. Show less
1Reportlab
1Reportlab
Jan 8, 2025
Jun 5, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
Reportlab up to v3.6.12 allows attackers to execute arbitrary code via supplying a crafted PDF file.
1Southrivertech
1Titan Ftp Server Nextgen
Jan 9, 2025
Jun 2, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
An issue was discovered in South River Technologies TitanFTP NextGen server that allows for a vertical privilege escalation leading to remote code execution.
1Microsoft
16Windows 10 1507
Windows 10 1607Windows 10 1809+13 more
Nov 21, 2024
May 31, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
1Dell
1Networker
Nov 21, 2024
May 31, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Dell NetWorker 19.6.1.2, contains an OS command injection Vulnerability in the NetWorker client. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS c...Show more
Dell NetWorker 19.6.1.2, contains an OS command injection Vulnerability in the NetWorker client. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the application's underlying OS, with the privileges of the vulnerable application. This is a high severity vulnerability as the exploitation allows an attacker to take complete control of a system, so Dell recommends customers to upgrade at the earliest opportunity. Show less
1Codeigniter
1Codeigniter
Nov 21, 2024
May 30, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
CodeIgniter is a PHP full-stack web framework. This vulnerability allows attackers to execute arbitrary code when you use Validation Placeholders. The vulnerability exists in the Validation library, and validation method...Show more
CodeIgniter is a PHP full-stack web framework. This vulnerability allows attackers to execute arbitrary code when you use Validation Placeholders. The vulnerability exists in the Validation library, and validation methods in the controller and in-model validation are also vulnerable because they use the Validation library internally. This issue is patched in version 4.3.5. Show less
1Open Emr
1Openemr
Nov 21, 2024
May 27, 2023
N/A· v4
8.8 HIGH· v3
N/A· v2
Code Injection in GitHub repository openemr/openemr prior to 7.0.1.
1Dedecms
1Dedecms
Nov 21, 2024
May 27, 2023
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
A vulnerability was found in DedeCMS up to 5.7.106. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file uploads/dede/article_allowurl_edit.php. The manipulation of the...Show more
A vulnerability was found in DedeCMS up to 5.7.106. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file uploads/dede/article_allowurl_edit.php. The manipulation of the argument allurls leads to code injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-230083.Show less