CWE-116— Improper Encoding or Escaping of Output
413 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-116page 6 of 9
- CVE-2024-34510HIGHCVSS 7.5EG 7.52024-05-05
Gradio before 4.20 allows credential leakage on Windows.
- CVE-2024-34715LOWCVSS 2.3EG 2.32024-05-29
Fides is an open-source privacy engineering platform. The Fides webserver requires a connection to a hosted PostgreSQL database for persistent storage of application data. If the password used by the webserver for this database connection …
- CVE-2024-34739HIGHCVSS 7.8EG 7.72024-08-15
In shouldRestrictOverlayActivities of UsbProfileGroupSettingsManager.java, there is a possible escape from SUW due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges neede…
- CVE-2024-35225CRITICALCVSS 9.6EG 9.62024-06-11
Jupyter Server Proxy allows users to run arbitrary external processes alongside their notebook server and provide authenticated web access to them. Versions of 3.x prior to 3.2.4 and 4.x prior to 4.2.0 have a reflected cross-site scripting…
- CVE-2024-38177HIGHCVSS 7.8EG 7.82024-08-13
Windows App Installer Spoofing Vulnerability
- CVE-2024-38473HIGHCVSS 8.1EG 9.02024-07-01
Encoding problem in mod_proxy in Apache HTTP Server 2.4.59 and earlier allows request URLs with incorrect encoding to be sent to backend services, potentially bypassing authentication via crafted requests. Users are recommended to upgrade …
- CVE-2024-38474CRITICALCVSS 9.8EG 9.82024-07-01
Substitution encoding issue in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows attacker to execute scripts in directories permitted by the configuration but not directly reachable by any URL or source disclosure of scripts mea…
- CVE-2024-38475CRITICALCVSS 9.1EG 9.1⚠ KEV2024-07-01
Improper escaping of output in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows an attacker to map URLs to filesystem locations that are permitted to be served by the server but are not intentionally/directly reachable by any U…
- CVE-2024-39682MEDIUMCVSS 6.4EG 6.42024-07-18
Cooked is a recipe plugin for WordPress. The Cooked plugin for WordPress is vulnerable to HTML Injection in versions up to, and including, 1.7.15.4 due to insufficient input sanitization and output escaping. This vulnerability allows authe…
- CVE-2024-39736MEDIUMCVSS 6.5EG 6.52024-07-15
IBM Datacap Navigator 9.1.5, 9.1.6, 9.1.7, 9.1.8, and 9.1.9 is vulnerable to HTTP header injection, caused by improper validation of input by the HOST headers. This could allow an attacker to conduct various attacks against the vulnerable …
- CVE-2024-39929MEDIUMCVSS 5.4EG 5.42024-07-04
Exim through 4.97.1 misparses a multiline RFC 2231 header filename, and thus remote attackers can bypass a $mime_filename extension-blocking protection mechanism, and potentially deliver executable attachments to the mailboxes of end users.
- CVE-2024-40088MEDIUMCVSS 5.3EG 5.32024-10-21
A Directory Traversal vulnerability in the Boa webserver of Vilo 5 Mesh WiFi System <= 5.16.1.33 allows remote, unauthenticated attackers to enumerate the existence and length of any file in the filesystem by placing malicious payloads in …
- CVE-2024-4099LOWCVSS 3.1EG 3.12024-09-26
An issue has been discovered in GitLab EE affecting all versions starting from 16.0 prior to 17.2.8, from 17.3 prior to 17.3.4, and from 17.4 prior to 17.4.1. An AI feature was found to read unsanitized content in a way that could have all…
- CVE-2024-4177HIGHCVSS 8.1EG 8.12024-06-06
A host whitelist parser issue in the proxy service implemented in the GravityZone Update Server allows an attacker to cause a server-side request forgery. This issue only affects GravityZone Console versions before 6.38.1-2 that are runnin…
- CVE-2024-42332LOWCVSS 3.7EG 3.72024-11-27
The researcher is showing that due to the way the SNMP trap log is parsed, an attacker can craft an SNMP trap with additional lines of information and have forged data show in the Zabbix UI. This attack requires SNMP auth to be off and/or …
- CVE-2024-4420HIGHCVSS 7.5EG 7.52024-05-21
There exists a Denial of service vulnerability in Tink-cc in versions prior to 2.1.3. * An adversary can crash binaries using the crypto::tink::JsonKeysetReader in tink-cc by providing an input that is not an encoded JSON object, but s…
- CVE-2024-45219HIGHCVSS 8.5EG 8.52024-10-16
Account users in Apache CloudStack by default are allowed to upload and register templates for deploying instances and volumes for attaching them as data disks to their existing instances. Due to missing validation checks for KVM-compatibl…
- CVE-2024-45271HIGHCVSS 8.4EG 8.42024-10-15
An unauthenticated local attacker can gain admin privileges by deploying a config file due to improper input validation.
- CVE-2024-45299MEDIUMCVSS 6.5EG 6.52024-09-06
alf.io is an open source ticket reservation system for conferences, trade shows, workshops, and meetups. Prior to version 2.0-M5, the preloaded data as json is not escaped correctly, the administrator / event admin could break their own in…
- CVE-2024-45498HIGHCVSS 8.8EG 8.82024-09-07
Example DAG: example_inlet_event_extra.py shipped with Apache Airflow version 2.10.0 has a vulnerability that allows an authenticated attacker with only DAG trigger permission to execute arbitrary commands. If you used that example as the …
- CVE-2024-45808MEDIUMCVSS 6.5EG 6.52024-09-20
Envoy is a cloud-native high-performance edge/middle/service proxy. A vulnerability has been identified in Envoy that allows malicious attackers to inject unexpected content into access logs. This is achieved by exploiting the lack of vali…
- CVE-2024-46547HIGHCVSS 7.5EG 7.52024-12-09
A vulnerability was found in Romain Bourdon Wampserver all versions (discovered in v3.2.3 and v3.2.6) where unauthorized users could access sensitive information due to improper access control validation via PHP Info Page. This issue can l…
- CVE-2024-46901LOWCVSS 3.1EG 3.12024-12-09
Insufficient validation of filenames against control characters in Apache Subversion repositories served via mod_dav_svn allows authenticated users with commit access to commit a corrupted revision, leading to disruption for users of the r…
- CVE-2024-47224MEDIUMCVSS 6.5EG 6.52024-10-21
A vulnerability in the AWV (Audio, Web and Video Conferencing) component of Mitel MiCollab through 9.8 SP1 FP2 (9.8.1.201) could allow an unauthenticated attacker to conduct a CRLF injection attack due to inadequate encoding of user input …
- CVE-2024-47528MEDIUMCVSS 4.8EG 4.82024-10-01
LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. Stored Cross-Site Scripting (XSS) can be achieved by uploading a new Background for a Custom Map. Users with "admin" role can set background for a custom map, this…
- CVE-2024-47531MEDIUMCVSS 4.6EG 4.62024-09-30
Scout is a web-based visualizer for VCF-files. Due to the lack of sanitization in the filename, it is possible bypass intended file extension and make users download malicious files with any extension. With malicious content injected insid…
- CVE-2024-47549HIGHCVSS 7.4EG 7.42024-10-25
Sharp and Toshiba Tec MFPs improperly process query parameters in HTTP requests, which may allow contamination of unintended data to HTTP response headers. Accessing a crafted URL which points to an affected product may cause malicious sc…
- CVE-2024-47845HIGHCVSS 8.2EG 8.22024-10-05
Improper Encoding or Escaping of Output vulnerability in The Wikimedia Foundation Mediawiki - CSS Extension allows Code Injection.This issue affects Mediawiki - CSS Extension: from 1.39.X before 1.39.9, from 1.41.X before 1.41.3, from 1.42…
- CVE-2024-49355MEDIUMCVSS 5.3EG 5.32025-02-20
IBM OpenPages with Watson 8.3 and 9.0 may write improperly neutralized data to server log files when the tracing is enabled per the System Tracing feature.
- CVE-2024-50349MEDIUMCVSS 4.7EG 4.72025-01-14
Git is a fast, scalable, distributed revision control system with an unusually rich command set that provides both high-level operations and full access to internals. When Git asks for credentials via a terminal prompt (i.e. without using …
- CVE-2024-50629MEDIUMCVSS 5.3EG 5.32025-03-19
Improper encoding or escaping of output vulnerability in the webapi component in Synology BeeStation OS (BSM) before 1.1-65374 and Synology DiskStation Manager (DSM) before 7.1.1-42962-7, 7.2-64570-4, 7.2.1-69057-6 and 7.2.2-72806-1 allow …
- CVE-2024-52005HIGHCVSS 8.8EG 8.82025-01-15
Git is a source code management tool. When cloning from a server (or fetching, or pushing), informational or error messages are transported from the remote Git process to the client via the so-called "sideband channel". These messages will…
- CVE-2024-52006HIGHCVSS 7.5EG 7.52025-01-14
Git is a fast, scalable, distributed revision control system with an unusually rich command set that provides both high-level operations and full access to internals. Git defines a line-based protocol that is used to exchange information b…
- CVE-2024-52891MEDIUMCVSS 5.4EG 5.42025-01-07
IBM Concert Software 1.0.0, 1.0.1, 1.0.2, 1.0.2.1, and 1.0.3 could allow an authenticated user to inject malicious information or obtain information from log files due to improper log neutralization.
- CVE-2024-55663CRITICALCVSS 9.8EG 9.82024-12-12
XWiki Platform is a generic wiki platform. Starting in version 6.3-milestone-2 and prior to versions 13.10.5 and 14.3-rc-1, in `getdocument.vm`; the ordering of the returned documents is defined from an unsanitized request parameter (reque…
- CVE-2024-5585HIGHCVSS 7.7EG 7.72024-06-09
In PHP versions 8.1.* before 8.1.29, 8.2.* before 8.2.20, 8.3.* before 8.3.8, the fix for CVE-2024-1874 does not work if the command name includes trailing spaces. Original issue: when using proc_open() command with array syntax, due to…
- CVE-2024-56277MEDIUMCVSS 5.3EG 5.32025-01-21
Improper Encoding or Escaping of Output vulnerability in Ays Pro Poll Maker poll-maker.This issue affects Poll Maker: from n/a through < 5.5.5.
- CVE-2024-56473MEDIUMCVSS 5.3EG 5.32025-02-05
IBM Aspera Shares 1.9.0 through 1.10.0 PL6 could allow an attacker to spoof their IP address, which is written to log files, due to improper verification of 'Client-IP' headers.
- CVE-2024-56524CRITICALCVSS 9.1EG 9.12025-05-12
Radware Cloud Web Application Firewall (WAF) before 2025-05-07 allows remote attackers to bypass firewall filters by adding a special character to the request.
- CVE-2024-58266LOWCVSS 3.2EG 3.22025-07-27
The shlex crate before 1.2.1 for Rust allows unquoted and unescaped instances of the { and \xa0 characters, which may facilitate command injection.
- CVE-2024-6329MEDIUMCVSS 5.7EG 5.72024-08-08
An issue was discovered in GitLab CE/EE affecting all versions starting from 8.16 prior to 17.0.6, starting from 17.1 prior to 17.1.4, and starting from 17.2 prior to 17.2.2, which causes the web interface to fail to render the diff correc…
- CVE-2024-7873CRITICALCVSS 9.4EG 0.02024-09-17
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting'), Improper Encoding or Escaping of Output, CWE - 83 Improper Neutralization of Script in Attributes in a Web Page vulnerability in Veribilim Softwar…
- CVE-2024-8297MEDIUMCVSS 5.3EG 5.32024-08-29
A vulnerability was found in kitsada8621 Digital Library Management System 1.0. It has been classified as problematic. Affected is the function JwtRefreshAuth of the file middleware/jwt_refresh_token_middleware.go. The manipulation of the …
- CVE-2024-9348HIGHCVSS 8.9EG 0.02024-10-16
Docker Desktop before v4.34.3 allows RCE via unsanitized GitHub source link in Build view.
- CVE-2024-9427MEDIUMCVSS 5.4EG 5.42024-12-24
A vulnerability in Koji was found. An unsanitized input allows for an XSS attack. Javascript code from a malicious link could be reflected in the resulting web page. It is not expected to be able to submit an action or make a change in Koj…
- CVE-2024-9606HIGHCVSS 7.5EG 7.52025-03-20
In berriai/litellm before version 1.44.12, the `litellm/litellm_core_utils/litellm_logging.py` file contains a vulnerability where the API key masking code only masks the first 5 characters of the key. This results in the leakage of almost…
- CVE-2025-0083MEDIUMCVSS 4.0EG 4.02025-08-26
In multiple locations, there is a possible way to access content across user profiles due to URI double encoding. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not neede…
- CVE-2025-0607MEDIUMCVSS 4.3EG 4.32025-10-06
Improper Encoding or Escaping of Output vulnerability in Logo Software Inc. Logo Cloud allows Phishing.This issue affects Logo Cloud: before 2.57.
- CVE-2025-11085HIGHCVSS 8.6EG 0.02025-11-11
A security issue exists within DataMosaix™ Private Cloud allowing for Persistent XSS. This vulnerability can result in the execution of malicious JavaScript, allowing for account takeover, credential theft, or redirection to a malicious …
- CVE-2025-11712MEDIUMCVSS 6.1EG 6.12025-10-14
A malicious page could have used the type attribute of an OBJECT tag to override the default browser behavior when encountering a web resource served without a content-type. This could have contributed to an XSS on a site that unsafely ser…
Map vulnerabilities like CWE-116 to your infrastructure
EchelonGraph correlates every CVE — across CWE-116 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →