CWE-116— Improper Encoding or Escaping of Output
412 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-116page 2 of 9
- CVE-2020-28954MEDIUMCVSS 5.3EG 5.32020-11-19
web/controllers/ApiController.groovy in BigBlueButton before 2.2.29 lacks certain parameter sanitization, as demonstrated by accepting control characters in a user name.
- CVE-2020-29023LOWCVSS 3.5EG 3.52021-02-16
Improper Encoding or Escaping of Output from CSV Report Generator of Secomea GateManager allows an authenticated administrator to generate a CSV file that may run arbitrary commands on a victim's computer when opened in a spreadsheet progr…
- CVE-2020-35475HIGHCVSS 7.5EG 7.52020-12-18
In MediaWiki before 1.35.1, the messages userrights-expiry-current and userrights-expiry-none can contain raw HTML. XSS can happen when a user visits Special:UserRights but does not have rights to change all userrights, and the table on th…
- CVE-2020-36173MEDIUMCVSS 5.3EG 5.32021-01-06
The Ninja Forms plugin before 3.4.28 for WordPress lacks escaping for submissions-table fields.
- CVE-2020-36567HIGHCVSS 7.5EG 7.52022-12-27
Unsanitized input in the default logger in github.com/gin-gonic/gin before v1.6.0 allows remote attackers to inject arbitrary log lines.
- CVE-2020-36599CRITICALCVSS 9.8EG 9.82022-08-18
lib/omniauth/failure_endpoint.rb in OmniAuth before 1.9.2 (and before 2.0) does not escape the message_key value.
- CVE-2020-4282MEDIUMCVSS 4.3EG 4.32020-04-08
IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, 1.0.2, 1.0.3, 1.0.4, and 1.0.5 could allow an authenticated user to perform unauthorized actions by bypassing illegal character restrictions. X-Force ID: 176205.
- CVE-2020-4850HIGHCVSS 7.5EG 7.52021-05-20
IBM Spectrum Scale 1.1.1.0 through 1.1.8.4 Transparent Cloud Tiering could allow a remote attacker to obtain sensitive information, caused by the leftover files after configuration. IBM X-Force ID: 190298.
- CVE-2020-5304HIGHCVSS 7.5EG 7.52020-06-08
The dashboard in WhiteSource Application Vulnerability Management (AVM) before version 20.4.1 allows Log Injection via a %0A%0D substring in the idp parameter to the /saml/login URI. This closes the current log and creates a new log with o…
- CVE-2020-6227HIGHCVSS 7.5EG 7.52020-04-14
SAP Business Objects Business Intelligence Platform (CMS / Auditing issues), version 4.2, allows attacker to send specially crafted GIOP packets to several services due to Improper Input Validation, allowing to forge additional entries in …
- CVE-2020-6261MEDIUMCVSS 5.3EG 5.32020-07-01
SAP Solution Manager (Trace Analysis), version 7.20, allows an attacker to perform a log injection into the trace file, due to Incomplete XML Validation. The readability of the trace file is impaired.
- CVE-2020-6313MEDIUMCVSS 6.5EG 6.52020-09-09
SAP NetWeaver Application Server JAVA(XML Forms) versions 7.30, 7.31, 7.40, 7.50 does not sufficiently encode user controlled inputs, which allows an authenticated User with special roles to store malicious content, that when accessed by a…
- CVE-2020-7694LOWCVSS 3.7EG 3.72020-07-27
This affects all versions of package uvicorn. The request logger provided by the package is vulnerable to ASNI escape sequence injection. Whenever any HTTP request is received, the default behaviour of uvicorn is to log its details to eith…
- CVE-2020-9862HIGHCVSS 7.8EG 7.82020-10-16
A command injection issue existed in Web Inspector. This issue was addressed with improved escaping. This issue is fixed in iOS 13.6 and iPadOS 13.6, tvOS 13.4.8, watchOS 6.2.8, Safari 13.1.2, iTunes 12.10.8 for Windows, iCloud for Windows…
- CVE-2021-0933HIGHCVSS 8.0EG 8.02021-12-15
In onCreate of CompanionDeviceActivity.java or DeviceChooserActivity.java, there is a possible way for HTML tags to interfere with a consent dialog due to improper input validation. This could lead to remote escalation of privilege, confus…
- CVE-2021-20195CRITICALCVSS 9.6EG 9.62021-05-28
A flaw was found in keycloak in versions before 13.0.0. A Self Stored XSS attack vector escalating to a complete account takeover is possible due to user-supplied data fields not being properly encoded and Javascript code being used to pro…
- CVE-2021-20333MEDIUMCVSS 5.3EG 5.32021-07-23
Sending specially crafted commands to a MongoDB Server may result in artificial log entries being generated or for log entries to be split. This issue affects MongoDB Server v3.6 versions prior to 3.6.20; MongoDB Server v4.0 versions prior…
- CVE-2021-20405HIGHCVSS 7.5EG 7.52021-02-11
IBM Security Verify Information Queue 1.0.6 and 1.0.7 could allow a user to perform unauthorized activities due to improper encoding of output. IBM X-Force ID: 196183.
- CVE-2021-20844MEDIUMCVSS 5.7EG 5.72021-11-24
Improper neutralization of HTTP request headers for scripting syntax vulnerability in the Web GUI of RTX830 Rev.15.02.17 and earlier, NVR510 Rev.15.01.18 and earlier, NVR700W Rev.15.00.19 and earlier, and RTX1210 Rev.14.01.38 and earlier a…
- CVE-2021-21684MEDIUMCVSS 6.1EG 6.12021-10-06
Jenkins Git Plugin 4.8.2 and earlier does not escape the Git SHA-1 checksum parameters provided to commit notifications when displaying them in a build cause, resulting in a stored cross-site scripting (XSS) vulnerability.
- CVE-2021-22254LOWCVSS 3.1EG 3.12021-08-20
Under very specific conditions a user could be impersonated using Gitlab shell. This vulnerability affects GitLab CE/EE 13.1 and later through 14.1.2, 14.0.7 and 13.12.9.
- CVE-2021-23205HIGHCVSS 8.1EG 8.12021-06-11
Improper Encoding or Escaping in Gallagher Command Centre Server allows a Command Centre Operator to alter the configuration of Controllers and other hardware items beyond their privilege. This issue affects: Gallagher Command Centre 8.40 …
- CVE-2021-23266MEDIUMCVSS 4.3EG 4.32022-05-16
An anonymous user can craft a URL with text that ends up in the log viewer as is. The text can then include textual messages to mislead the administrator.
- CVE-2021-25254MEDIUMCVSS 5.3EG 5.32025-05-21
Yandex Browser Lite for Android before 21.1.0 allows remote attackers to spoof the address bar.
- CVE-2021-25262MEDIUMCVSS 5.4EG 5.42025-05-21
Yandex Browser for Android prior to version 21.3.0 allows remote attackers to perform IDN homograph attack.
- CVE-2021-28662MEDIUMCVSS 6.5EG 6.52021-05-27
An issue was discovered in Squid 4.x before 4.15 and 5.x before 5.0.6. If a remote server sends a certain response header over HTTP or HTTPS, there is a denial of service. This header can plausibly occur in benign network traffic.
- CVE-2021-28940CRITICALCVSS 9.8EG 9.82021-04-02
Because of a incorrect escaped exec command in MagpieRSS in 0.72 in the /extlib/Snoopy.class.inc file, it is possible to add a extra command to the curl binary. This creates an issue on the /scripts/magpie_debug.php and /scripts/magpie_sim…
- CVE-2021-29854HIGHCVSS 7.2EG 7.22022-05-03
IBM Maximo Asset Management 7.6.1.1 and 7.6.1.2 is vulnerable to HTTP header injection, caused by improper validation of input by the HOST headers. By sending a specially crafted HTTP request, a remote attacker could exploit this vulnerabi…
- CVE-2021-29872MEDIUMCVSS 5.4EG 5.42022-01-18
IBM Cloud Pak for Automation 21.0.1 and 21.0.2 - Business Automation Studio Component is vulnerable to HTTP header injection, caused by improper validation of input by the HOST headers. By sending a specially crafted HTTP request, a remote…
- CVE-2021-30589MEDIUMCVSS 4.3EG 4.32021-08-03
Insufficient validation of untrusted input in Sharing in Google Chrome prior to 92.0.4515.107 allowed a remote attacker to bypass navigation restrictions via a crafted click-to-call link.
- CVE-2021-30640MEDIUMCVSS 6.5EG 6.52021-07-12
A vulnerability in the JNDI Realm of Apache Tomcat allows an attacker to authenticate using variations of a valid user name and/or to bypass some of the protection provided by the LockOut Realm. This issue affects Apache Tomcat 10.0.0-M1 t…
- CVE-2021-31806MEDIUMCVSS 6.5EG 6.52021-05-27
An issue was discovered in Squid before 4.15 and 5.x before 5.0.6. Due to a memory-management bug, it is vulnerable to a Denial of Service attack (against all clients using the proxy) via HTTP Range request processing.
- CVE-2021-32067MEDIUMCVSS 6.5EG 6.52021-08-13
The MiCollab Client Service component in Mitel MiCollab before 9.3 could allow an attacker to view sensitive system information through an HTTP response due to insufficient output sanitization.
- CVE-2021-32072MEDIUMCVSS 6.5EG 6.52021-08-13
The MiCollab Client Service component in Mitel MiCollab before 9.3 could allow an attacker to get source code information (disclosing sensitive application data) due to insufficient output sanitization. A successful exploit could allow an …
- CVE-2021-32679LOWCVSS 3.5EG 3.52021-07-12
Nextcloud Server is a Nextcloud package that handles data storage. In versions prior to 19.0.13, 20.0.11, and 21.0.3, filenames where not escaped by default in controllers using `DownloadResponse`. When a user-supplied filename was passed …
- CVE-2021-32796MEDIUMCVSS 6.5EG 6.52021-07-27
xmldom is an open source pure JavaScript W3C standard-based (XML DOM Level 2 Core) DOMParser and XMLSerializer module. xmldom versions 0.6.0 and older do not correctly escape special characters when serializing elements removed from their …
- CVE-2021-32812MEDIUMCVSS 4.6EG 4.62021-08-02
Monkshu is an enterprise application server for mobile apps (iOS and Android), responsive HTML 5 apps, and JSON API services. In version 2.90 and earlier, there is a reflected cross-site scripting vulnerability in frontend HTTP server. The…
- CVE-2021-33672CRITICALCVSS 9.6EG 9.62021-09-14
Due to missing encoding in SAP Contact Center's Communication Desktop component- version 700, an attacker could send malicious script in chat message. When the message is accepted by the chat recipient, the script gets executed in their sc…
- CVE-2021-34630MEDIUMCVSS 5.0EG 5.02021-07-30
In the Pro and Enterprise versions of GTranslate < 2.8.65, the gtranslate_request_uri_var function runs at the top of all pages and echoes out the contents of $_SERVER['REQUEST_URI']. Although this uses addslashes, and most modern browsers…
- CVE-2021-38182HIGHCVSS 8.8EG 8.82021-12-14
Due to insufficient input validation of Kyma, authenticated users can pass a Header of their choice and escalate privileges which can completely compromise the cluster.
- CVE-2021-38751MEDIUMCVSS 4.3EG 4.32021-08-16
A HTTP Host header attack exists in ExponentCMS 2.6 and below in /exponent_constants.php. A modified HTTP header can change links on the webpage to an arbitrary value, leading to a possible attack vector for MITM.
- CVE-2021-38997MEDIUMCVSS 5.4EG 5.42022-12-12
IBM API Connect V10.0.0.0 through V10.0.5.0, V10.0.1.0 through V10.0.1.7, and V2018.4.1.0 through 2018.4.1.19 is vulnerable to HTTP header injection, caused by improper validation of input by the HOST headers. This could allow an attacker…
- CVE-2021-39027MEDIUMCVSS 5.0EG 5.02022-05-06
IBM Guardium Data Encryption (GDE) 4.0.0 and 5.0.0 prepares a structured message for communication with another component, but encoding or escaping of the data is either missing or done incorrectly. As a result, the intended structure of t…
- CVE-2021-39170HIGHCVSS 8.0EG 8.02021-09-01
Pimcore is an open source data & experience management platform. Prior to version 10.1.2, an authenticated user could add XSS code as a value of custom metadata on assets. There is a patch for this issue in Pimcore version 10.1.2. As a wor…
- CVE-2021-39367MEDIUMCVSS 5.3EG 5.32021-08-23
Canon Oce Print Exec Workgroup 1.3.2 allows Host header injection.
- CVE-2021-40007MEDIUMCVSS 6.5EG 6.52021-12-13
There is an information leak vulnerability in eCNS280_TD V100R005C10SPC650. The vulnerability is caused by improper log output management. An attacker with the ability to access the log file of device may lead to information disclosure.
- CVE-2021-4041HIGHCVSS 7.8EG 7.82022-08-24
A flaw was found in ansible-runner. An improper escaping of the shell command, while calling the ansible_runner.interface.run_command, can lead to parameters getting executed as host's shell command. A developer could unintentionally write…
- CVE-2021-4068MEDIUMCVSS 6.5EG 6.52021-12-23
Insufficient data validation in new tab page in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
- CVE-2021-40694MEDIUMCVSS 4.9EG 4.92022-09-29
Insufficient escaping of the LaTeX preamble made it possible for site administrators to read files available to the HTTP server system account.
- CVE-2021-41132CRITICALCVSS 9.8EG 9.82021-10-14
OMERO.web provides a web based client and plugin infrastructure. In versions prior to 5.11.0, a variety of templates do not perform proper sanitization through HTML escaping. Due to the lack of sanitization and use of ``jQuery.html()``, th…
Map vulnerabilities like CWE-116 to your infrastructure
EchelonGraph correlates every CVE — across CWE-116 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →