CWE-75
37 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-75page 1 of 1
- CVE-2021-22910CRITICALCVSS 9.8EG 9.82021-08-09
A sanitization vulnerability exists in Rocket.Chat server versions <3.13.2, <3.12.4, <3.11.4 that allowed queries to an endpoint which could result in a NoSQL injection, potentially leading to RCE.
- CVE-2021-22911CRITICALCVSS 9.8EG 9.82021-05-27
A improper input sanitization vulnerability exists in Rocket.Chat server 3.11, 3.12 & 3.13 that could lead to unauthenticated NoSQL injection, resulting potentially in RCE.
- CVE-2021-39174HIGHCVSS 8.8EG 8.82021-08-28
Cachet is an open source status page system. Prior to version 2.5.1, authenticated users, regardless of their privileges (User or Admin), can leak the value of any configuration entry of the dotenv file, e.g. the application secret (`APP_K…
- CVE-2022-24039CRITICALCVSS 9.0EG 9.02022-05-10
A vulnerability has been identified in Desigo PXC4 (All versions < V02.20.142.10-10884), Desigo PXC5 (All versions < V02.20.142.10-10884). The “addCell” JavaScript function fails to properly sanitize user-controllable input before incl…
- CVE-2022-3607MEDIUMCVSS 6.0EG 6.02022-10-19
Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) in GitHub repository octoprint/octoprint prior to 1.8.3.
- CVE-2022-4721MEDIUMCVSS 5.4EG 5.42022-12-27
Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) in GitHub repository ikus060/rdiffweb prior to 2.5.5.
- CVE-2022-48217HIGHCVSS 8.1EG 8.12023-01-04
The tf_remapper_node component 1.1.1 for Robot Operating System (ROS) allows attackers, who control the source code of a different node in the same ROS application, to change a robot's behavior. This occurs because a topic name depends on …
- CVE-2023-0302HIGHCVSS 7.8EG 7.82023-01-15
Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) in GitHub repository radareorg/radare2 prior to 5.8.2.
- CVE-2023-1758MEDIUMCVSS 5.4EG 5.42023-04-05
Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) in GitHub repository thorsten/phpmyfaq prior to 3.1.12.
- CVE-2023-23912HIGHCVSS 8.8EG 8.82023-02-09
A vulnerability, found in EdgeRouters Version 2.0.9-hotfix.5 and earlier and UniFi Security Gateways (USG) Version 4.4.56 and earlier with their DHCPv6 prefix delegation set to dhcpv6-stateless or dhcpv6-stateful, allows a malicious actor …
- CVE-2023-27533HIGHCVSS 8.8EG 8.82023-03-30
A vulnerability in input validation exists in curl <8.0 during communication using the TELNET protocol may allow an attacker to pass on maliciously crafted user name and "telnet options" during server negotiation. The lack of proper input …
- CVE-2023-40743CRITICALCVSS 9.8EG 9.82023-09-05
** UNSUPPORTED WHEN ASSIGNED ** When integrating Apache Axis 1.x in an application, it may not have been obvious that looking up a service through "ServiceFactory.getService" allows potentially dangerous lookup mechanisms such as LDAP. Whe…
- CVE-2024-0044MEDIUMCVSS 6.7EG 6.72024-03-11
In createSessionInternal of PackageInstallerService.java, there is a possible run-as any app due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interactio…
- CVE-2024-0801HIGHCVSS 7.5EG 7.52024-03-13
A denial of service vulnerability exists in Arcserve Unified Data Protection 9.2 and 8.1 in ASNative.dll.
- CVE-2024-21503MEDIUMCVSS 5.3EG 5.32024-03-19
Versions of the package black before 24.3.0 are vulnerable to Regular Expression Denial of Service (ReDoS) via the lines_with_leading_tabs_expanded function in the strings.py file. An attacker could exploit this vulnerability by crafting a…
- CVE-2024-23268HIGHCVSS 7.8EG 7.82024-03-08
An injection issue was addressed with improved input validation. This issue is fixed in macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ventura 13.6.5. An app may be able to elevate privileges.
- CVE-2024-23274HIGHCVSS 7.8EG 7.82024-03-08
An injection issue was addressed with improved input validation. This issue is fixed in macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ventura 13.6.5. An app may be able to elevate privileges.
- CVE-2024-24257HIGHCVSS 7.5EG 7.52024-07-26
An issue in skteco.com Central Control Attendance Machine web management platform v.3.0 allows an attacker to obtain sensitive information via a crafted script to the csl/user component.
- CVE-2024-27622HIGHCVSS 7.2EG 7.22024-03-05
A remote code execution vulnerability has been identified in the User Defined Tags module of CMS Made Simple version 2.2.19 / 2.2.21. This vulnerability arises from inadequate sanitization of user-supplied input in the 'Code' section of th…
- CVE-2024-27708CRITICALCVSS 9.6EG 9.62025-12-22
Iframe injection vulnerability in airc.pt/solucoes-servicos.solucoes MyNET v.26.06 and before allows a remote attacker to execute arbitrary code via the src parameter.
- CVE-2024-29686HIGHCVSS 7.2EG 8.82024-03-29
Server-side Template Injection (SSTI) vulnerability in Winter CMS v.1.2.3 allows a remote attacker to execute arbitrary code via a crafted payload to the CMS Pages field and Plugin components. NOTE: the vendor disputes this because the pay…
- CVE-2024-31806MEDIUMCVSS 6.5EG 6.52024-04-08
TOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a Denial-of-Service (DoS) vulnerability in the RebootSystem function which can reboot the system without authorization.
- CVE-2024-31809HIGHCVSS 8.8EG 8.82024-04-08
TOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a remote code execution (RCE) vulnerability via the FileName parameter in the setUpgradeFW function.
- CVE-2024-31812MEDIUMCVSS 6.5EG 6.52024-04-08
In TOTOLINK EX200 V4.0.3c.7646_B20201211, an attacker can obtain sensitive information without authorization through the function getWiFiExtenderConfig.
- CVE-2024-35373CRITICALCVSS 9.8EG 9.82024-05-24
Mocodo Mocodo Online 4.2.6 and below is vulnerable to Remote Code Execution via /web/rewrite.php.
- CVE-2024-36983HIGHCVSS 8.0EG 8.02024-07-01
In Splunk Enterprise versions below 9.2.2, 9.1.5, and 9.0.10 and Splunk Cloud Platform versions below 9.1.2312.109 and 9.1.2308.207, an authenticated user could create an external lookup that calls a legacy internal function. The authentic…
- CVE-2024-36997HIGHCVSS 8.1EG 8.12024-07-01
In Splunk Enterprise versions below 9.2.2, 9.1.5, and 9.0.10 and Splunk Cloud Platform versions below 9.1.2312, an admin user could store and execute arbitrary JavaScript code in the browser context of another Splunk user through the conf-…
- CVE-2024-37570HIGHCVSS 8.8EG 8.82024-06-09
On Mitel 6869i 4.5.0.41 devices, the Manual Firmware Update (upgrade.html) page does not perform sanitization on the username and path parameters (sent by an authenticated user) before appending flags to the busybox ftpget command. This le…
- CVE-2024-37779HIGHCVSS 8.8EG 5.72024-09-23
WoodWing Elvis DAM v6.98.1 was discovered to contain an authenticated remote command execution (RCE) vulnerability via the Apache Ant script functionality.
- CVE-2024-39227CRITICALCVSS 9.8EG 9.82024-08-06
GL-iNet products AR750/AR750S/AR300M/AR300M16/MT300N-V2/B1300/MT1300/SFT1200/X750 v4.3.11, MT3000/MT2500/AXT1800/AX1800/A1300/X300B v4.5.16, XE300 v4.3.16, E750 v4.3.12, AP1300/S1300 v4.3.13, and XE3000/X3000 v4.4 were discovered to contai…
- CVE-2024-39243CRITICALCVSS 9.8EG 9.82024-06-26
An issue discovered in skycaiji 2.8 allows attackers to run arbitrary code via crafted POST request to /index.php?s=/admin/develop/editor_save.
- CVE-2024-51941HIGHCVSS 8.8EG 8.82025-01-21
A remote code injection vulnerability exists in the Ambari Metrics and AMS Alerts feature, allowing authenticated users to inject and execute arbitrary code. The vulnerability occurs when processing alert definitions, where malicious in…
- CVE-2024-7472MEDIUMCVSS 6.5EG 5.32024-10-29
lunary-ai/lunary v1.2.26 contains an email injection vulnerability in the Send email verification API (/v1/users/send-verification) and Sign up API (/auth/signup). An unauthenticated attacker can inject data into outgoing emails by bypassi…
- CVE-2024-9940MEDIUMCVSS 5.3EG 5.32024-10-17
The Calculated Fields Form plugin for WordPress is vulnerable to HTML Injection in all versions up to, and including, 5.2.45. This is due to the plugin not properly neutralizing HTML elements from submitted forms. This makes it possible fo…
- CVE-2025-50213CRITICALCVSS 9.8EG 9.82025-06-24
Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) vulnerability in Apache Airflow Providers Snowflake. This issue affects Apache Airflow Providers Snowflake: before 6.4.0. Sanitation of table and sta…
- CVE-2025-61911MEDIUMCVSS 6.5EG 6.52025-10-10
python-ldap is a lightweight directory access protocol (LDAP) client API for Python. In versions prior to 3.4.5, the sanitization method `ldap.filter.escape_filter_chars` can be tricked to skip escaping of special characters when a crafted…
- CVE-2026-31908CRITICALCVSS 9.1EG 9.12026-04-14
Header injection vulnerability in Apache APISIX. The attacker can take advantage of certain configuration in forward-auth plugin to inject malicious headers. This issue affects Apache APISIX: from 2.12.0 through 3.15.0. Users are recomme…
Map vulnerabilities like CWE-75 to your infrastructure
EchelonGraph correlates every CVE — across CWE-75 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →