← Back
CWE-94

7,058 CVEs • Abstraction: Base • Likelihood of Exploit: Medium

Improper Control of Generation of Code ('Code Injection')

The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.

JSON object

Loading...

CVEs (7,058)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Cmsuno Project
1Cmsuno
Jun 17, 2026
Oct 11, 2021
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
CMSUno version 1.7.2 is affected by a PHP code execution vulnerability. sauvePass action in {webroot}/uno/central.php file calls to file_put_contents() function to write username in password.php file when a user successf...Show more
CMSUno version 1.7.2 is affected by a PHP code execution vulnerability. sauvePass action in {webroot}/uno/central.php file calls to file_put_contents() function to write username in password.php file when a user successfully changed their password. The attacker can inject malicious PHP code into password.php and then use the login function to execute code.Show less
1Deno
1Deno Standard Modules
Jun 17, 2026
Oct 11, 2021
N/A· v4
9.8 CRITICAL· v3
6.8 MEDIUM· v2
Deno Standard Modules before 0.107.0 allows Code Injection via an untrusted YAML file in certain configurations.
1Myucms Project
1Myucms
Jun 17, 2026
Oct 6, 2021
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Myucms v2.2.1 contains a remote code execution (RCE) vulnerability in the component \controller\Config.php, which can be exploited via the addqq() method.
1Myucms Project
1Myucms
Jun 17, 2026
Oct 6, 2021
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Myucms v2.2.1 contains a remote code execution (RCE) vulnerability in the component \controller\point.php, which can be exploited via the add() method.
1Myucms Project
1Myucms
Jun 17, 2026
Oct 6, 2021
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
Myucms v2.2.1 contains a remote code execution (RCE) vulnerability in the component \controller\Config.php, which can be exploited via the add() method.
1Google
1Android
Jun 17, 2026
Oct 6, 2021
N/A· v4
7.9 HIGH· v3
3.6 LOW· v2
An improper caller check logic of SMC call in TEEGRIS secure OS prior to SMR Oct-2021 Release 1 can be used to compromise TEE.
1Google
1Slo Generator
Jun 17, 2026
Oct 4, 2021
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
SLO generator allows for loading of YAML files that if crafted in a specific format can allow for code execution within the context of the SLO Generator. We recommend upgrading SLO Generator past https://github.com/googl...Show more
SLO generator allows for loading of YAML files that if crafted in a specific format can allow for code execution within the context of the SLO Generator. We recommend upgrading SLO Generator past https://github.com/google/slo-generator/pull/173Show less
1Cobbler Project
1Cobbler
Jun 17, 2026
Oct 4, 2021
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Cobbler before 3.3.0 allows log poisoning, and resultant Remote Code Execution, via an XMLRPC method that logs to the logfile for template injection.
1Wuzhicms
1Wuzhicms
Jun 17, 2026
Sep 28, 2021
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
Wuzhi CMS v4.1.0 contains a remote code execution (RCE) vulnerability in \attachment\admin\index.php.
1Ui
1Unifi Talk
Jun 17, 2026
Sep 23, 2021
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
A vulnerability found in UniFi Talk application V1.12.3 and earlier permits a malicious actor who has already gained access to a network to subsequently control Talk device(s) assigned to said network if they are not yet...Show more
A vulnerability found in UniFi Talk application V1.12.3 and earlier permits a malicious actor who has already gained access to a network to subsequently control Talk device(s) assigned to said network if they are not yet adopted. This vulnerability is fixed in UniFi Talk application V1.12.5 and later.Show less
1Redhat
3Ansible Automation Platform
Ansible EngineAnsible Tower
Jun 17, 2026
Sep 22, 2021
N/A· v4
7.1 HIGH· v3
3.6 LOW· v2
A flaw was found in Ansible, where a user's controller is vulnerable to template injection. This issue can occur through facts used in the template if the user is trying to put templates in multi-line YAML strings and th...Show more
A flaw was found in Ansible, where a user's controller is vulnerable to template injection. This issue can occur through facts used in the template if the user is trying to put templates in multi-line YAML strings and the facts being handled do not routinely include special template characters. This flaw allows attackers to perform command injection, which discloses sensitive information. The highest threat from this vulnerability is to confidentiality and integrity.Show less
1Maianmedia
1Maianaffiliate
Jun 17, 2026
Sep 20, 2021
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
MaianAffiliate v.1.0 is suffers from code injection by adding a new product via the admin panel. The injected payload is reflected on the affiliate main page for all authenticated and unauthenticated visitors.
1Atlassian
2Jira Data Center
Jira Server
Jun 17, 2026
Sep 16, 2021
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
Affected versions of Atlassian Jira Server or Data Center using the Jira Service Management addon allow remote attackers with JIRA Administrators access to execute arbitrary Java code via a server-side template injection...Show more
Affected versions of Atlassian Jira Server or Data Center using the Jira Service Management addon allow remote attackers with JIRA Administrators access to execute arbitrary Java code via a server-side template injection vulnerability in the Email Template feature. The affected versions of Jira Server or Data Center are before version 8.13.12, and from version 8.14.0 before 8.19.1.Show less
1Sap
1Cloud Connector
Jun 17, 2026
Sep 15, 2021
N/A· v4
6.8 MEDIUM· v3
7.7 HIGH· v2
SAP Cloud Connector, version - 2.0, allows an authenticated administrator to modify a configuration file to inject malicious codes that could potentially lead to OS command execution.
1Playsms
1Playsms
Jun 17, 2026
Sep 10, 2021
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
playSMS before 1.4.5 allows Arbitrary Code Execution by entering PHP code at the #tabs-information-page of core_main_config, and then executing that code via the index.php?app=main&inc=core_welcome URI.
1Zstack
1Zstack
Jun 17, 2026
Sep 9, 2021
N/A· v4
8.1 HIGH· v3
6.8 MEDIUM· v2
ZStack is open source IaaS(infrastructure as a service) software. In ZStack before versions 3.10.12 and 4.1.6 there is a pre-auth unsafe deserialization vulnerability in the REST API. An attacker in control of the reques...Show more
ZStack is open source IaaS(infrastructure as a service) software. In ZStack before versions 3.10.12 and 4.1.6 there is a pre-auth unsafe deserialization vulnerability in the REST API. An attacker in control of the request body will be able to provide both the class name and the data to be deserialized and therefore will be able to instantiate an arbitrary type and assign arbitrary values to its fields. This issue may lead to a Denial Of Service. If a suitable gadget is available, then an attacker may also be able to exploit this vulnerability to gain pre-auth remote code execution. For additional details see the referenced GHSL-2021-087.Show less
1Eclipse
1Keti
Jun 17, 2026
Sep 9, 2021
N/A· v4
9.9 CRITICAL· v3
6.5 MEDIUM· v2
Eclipse Keti is a service that was designed to protect RESTfuls API using Attribute Based Access Control (ABAC). In Keti a user able to create Policy Sets can run arbitrary code by sending malicious Groovy scripts which...Show more
Eclipse Keti is a service that was designed to protect RESTfuls API using Attribute Based Access Control (ABAC). In Keti a user able to create Policy Sets can run arbitrary code by sending malicious Groovy scripts which will escape the configured Groovy sandbox. This vulnerability is known to exist in the latest commit at the time of writing this CVE (commit a1c8dbe). For more details see the referenced GHSL-2021-063.Show less
1Phpmywind
1Phpmywind
Jun 17, 2026
Sep 7, 2021
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
PHPMyWind 5.6 is vulnerable to Remote Code Execution. Becase input is filtered without "<, >, ?, =, `,...." In WriteConfig() function, an attacker can inject php code to /include/config.cache.php file.
1Atlassian
2Jira Service Desk
Jira Service Management
Jun 17, 2026
Sep 1, 2021
N/A· v4
7.2 HIGH· v3
9.0 HIGH· v2
Affected versions of Atlassian Jira Service Management Server and Data Center allow remote attackers with "Jira Administrators" access to execute arbitrary Java code or run arbitrary system commands via a Server_Side Tem...Show more
Affected versions of Atlassian Jira Service Management Server and Data Center allow remote attackers with "Jira Administrators" access to execute arbitrary Java code or run arbitrary system commands via a Server_Side Template Injection vulnerability in the Email Template feature. The affected versions are before version 4.13.9, and from version 4.14.0 before 4.18.0.Show less
1Totaljs
1Total.js
Jun 17, 2026
Aug 30, 2021
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
Total.js framework (npm package total.js) is a framework for Node.js platfrom written in pure JavaScript similar to PHP's Laravel or Python's Django or ASP.NET MVC. In total.js framework before version 3.4.9, calling the...Show more
Total.js framework (npm package total.js) is a framework for Node.js platfrom written in pure JavaScript similar to PHP's Laravel or Python's Django or ASP.NET MVC. In total.js framework before version 3.4.9, calling the utils.set function with user-controlled values leads to code-injection. This can cause a variety of impacts that include arbitrary code execution. This is fixed in version 3.4.9.Show less