VulnSea

CWE-77

CVEs classified under CWE-77, newest first.

236 CVEsRSS

CVE-2026-79697Critical· 9.9PoC
2w ago

A vulnerability was determined in Advantech WISE-6610-NB, WISE-6610-EB, WISE-6610-TB, WISE-6610-JB, WISE-6610-CB, WISE-6610-EL-NB, WISE-6610-EL-EB, WISE-6610-EL-TB, WISE-6610-EL-JB, WISE-6610-EL-CB, WISE-6610P-DEA, WISE-6610P-DNA and WIS…

A vulnerability was determined in Advantech WISE-6610-NB, WISE-6610-EB, WISE-6610-TB, WISE-6610-JB, WISE-6610-CB, WISE-6610-EL-NB, WISE-6610-EL-EB, WISE-6610-EL-TB, WISE-6610-EL-JB, WISE-6610-EL-CB, WISE-6610P-DEA, WISE-6610P-DNA and WIS…

AbyssalAdvantech · WISE-6610-NBEPSS 3.4%via NVD
CVE-2026-86167Critical· 9.9PoC
2w ago

A vulnerability was identified in Tenda HG10 300001138

A vulnerability was identified in Tenda HG10 300001138. Impacted is the function formgponConf of the file /boaform/admin/formgponConf of the component Boa. The manipulation of the argument fmgpon_loid leads to os command injection. Remot…

AbyssalTenda · HG10EPSS 1.6%via NVD
CVE-2026-86152Critical· 10.0
2w ago

A flaw has been found in Tenda CP3 27.5.57.101

A flaw has been found in Tenda CP3 27.5.57.101. The impacted element is the function CAutoAddWifi::ThreadProc of the file Functions/AutoAddWifi.cpp of the component Kylin. Executing a manipulation can lead to os command injection. The at…

MidnightTenda · CP3EPSS 1.9%via NVD
CVE-2026-86151Critical· 9.1PoC
2w ago

A vulnerability was detected in Tenda CP3 27.5.57.101

A vulnerability was detected in Tenda CP3 27.5.57.101. The affected element is the function sub_2F77E8 of the file Apis/system.c of the component Network Configuration Management. Performing a manipulation results in os command injection…

AbyssalTenda · CP3EPSS 2.0%via NVD
CVE-2026-86149Critical· 9.1
2w ago

A weakness has been identified in Tenda CP3 27.5.57.101

A weakness has been identified in Tenda CP3 27.5.57.101. This issue affects some unknown processing of the file Net/NetCheckPing.cpp. This manipulation of the argument interface_name/host causes os command injection. The attack can be in…

MidnightTenda · CP3EPSS 2.0%via NVD
CVE-2026-86148Critical· 9.1
2w ago

A security flaw has been discovered in Tenda CP3 27.5.57.101

A security flaw has been discovered in Tenda CP3 27.5.57.101. This vulnerability affects the function SystemAsh of the file Apis/system.c of the component Kylin. The manipulation of the argument AlarmVoiceURL results in os command inject…

MidnightTenda · CP3EPSS 2.5%via NVD
CVE-2026-75161High· 8.8
2w ago

An issue in the ugw-restart method of /cgi-bin/wwwugw.cgi in MBS-Solutions X-Serie Gateway firmware V6_00_05 allows a remote authenticated user with the low-privileged Standard role to inject arbitrary code into the dpcheck system utilit…

An issue in the ugw-restart method of /cgi-bin/wwwugw.cgi in MBS-Solutions X-Serie Gateway firmware V6_00_05 allows a remote authenticated user with the low-privileged Standard role to inject arbitrary code into the dpcheck system utilit…

TwilightEPSS 0.53%via NVD
CVE-2026-53932High· 8.0
2w ago

laravel-backup-restore restores database backups made with spatie/laravel-backup

laravel-backup-restore restores database backups made with spatie/laravel-backup. Prior to version 1.9.4, a crafted backup archive can trigger OS command injection during database restore. This issue has been patched in version 1.9.4.

Twilightstefanzweifel · laravel-backup-restoreEPSS 0.91%via NVD
CVE-2026-79754None
2w ago

Nuclio is a "Serverless" framework for Real-Time Events and Data Processing

Nuclio is a "Serverless" framework for Real-Time Events and Data Processing. From version 1.6.19 to before version 1.17.2, Nuclio's Dashboard build pipeline does not sanitize the spec.build.tempDir field before using it to construct a sh…

SunlitEPSS 0.39%via NVD
CVE-2026-73751High· 8.8
2w ago

An authenticated user with low-privileged access could submit crafted input through the web-based management interface to execute arbitrary commands on the underlying operating system.

An authenticated user with low-privileged access could submit crafted input through the web-based management interface to execute arbitrary commands on the underlying operating system.

Twilighthpe · arubaos-cxEPSS 0.38%via NVD
CVE-2026-73763High· 7.1
2w ago

A vulnerability exists in a management component that could allow an unauthenticated adjacent attacker to execute arbitrary commands

A vulnerability exists in a management component that could allow an unauthenticated adjacent attacker to execute arbitrary commands. Successful exploitation could result in remote execution of arbitrary commands in the context of the af…

Twilighthpe · arubaos-cxEPSS 0.33%via NVD
CVE-2026-84190High· 7.2
2w ago

LibreNMS versions before 26.5.0 contain a remote code execution vulnerability in the AboutController where the snmpget configuration parameter is passed to shell_exec() without proper validation

LibreNMS versions before 26.5.0 contain a remote code execution vulnerability in the AboutController where the snmpget configuration parameter is passed to shell_exec() without proper validation. An authenticated administrator can modify…

TwilightEPSS 0.60%via NVD
CVE-2026-50979High· 8.1PoC
3w ago

A command injection vulnerability in the 'advanced/curl' component of Osbil Technology oPanel v1.19.50 and earlier allows authenticated attackers to execute arbitrary shell commands via the 'url' parameter

A command injection vulnerability in the 'advanced/curl' component of Osbil Technology oPanel v1.19.50 and earlier allows authenticated attackers to execute arbitrary shell commands via the 'url' parameter

MidnightEPSS 1.4%via NVD
CVE-2026-55182High
3w ago

LibreNMS is a network monitoring system

LibreNMS is a network monitoring system. In versions from 21.6.0 up to 26.5.0, the Signal alert transport is vulnerable to command injection because the signal-cli path and the Recipient field of an alert transport entry are insufficient…

Twilightlibrenms · librenms/librenmsEPSS 1.1%via NVD
CVE-2026-77988Medium· 6.6
1mo ago

A weakness has been identified in TRENDnet TEW-823DRU 1.1.02b01

A weakness has been identified in TRENDnet TEW-823DRU 1.1.02b01. This vulnerability affects the function nvram_get of the component CLI Configuration Tool. This manipulation causes command injection. The attack is possible to be carried …

SunlitEPSS 2.1%via NVD
CVE-2026-77945High· 7.4
1mo ago

A vulnerability was found in TRENDnet TEW-821DAP 2.2.01b05

A vulnerability was found in TRENDnet TEW-821DAP 2.2.01b05. Affected is an unknown function of the file /cgi-bin/upload.cgi of the component ssi. Performing a manipulation of the argument filename results in command injection. The attack…

TwilightEPSS 1.3%via NVD
CVE-2026-54449High· 8.8
1mo ago

LangBot is a global IM bot platform designed for LLMs

LangBot is a global IM bot platform designed for LLMs. In version 4.10.7 and earlier, any authenticated user can add or change an STDIO MCP server configuration without an adequate authorization boundary. In src/langbot/pkg/provider/tool…

Twilightlangbot · langbotEPSS 0.41%via NVD
CVE-2026-76233Medium· 6.7
1mo ago

Renovate versions from 39.53.0 before 40.33.0 contain a command injection vulnerability in the gleam manager where the depName parameter is appended to gleam deps update commands without proper sanitization

Renovate versions from 39.53.0 before 40.33.0 contain a command injection vulnerability in the gleam manager where the depName parameter is appended to gleam deps update commands without proper sanitization. Attackers with repository wri…

SunlitEPSS 0.91%via NVD
CVE-2026-76232Medium· 6.7
1mo ago

Renovate versions from 31.51.0 before 40.33.0 contain a command injection vulnerability in the helmv3 manager where the repository parameter is appended to helm registry login commands without proper sanitization

Renovate versions from 31.51.0 before 40.33.0 contain a command injection vulnerability in the helmv3 manager where the repository parameter is appended to helm registry login commands without proper sanitization. Attackers with reposito…

SunlitEPSS 0.92%via NVD
CVE-2026-76231Medium· 6.7
1mo ago

Renovate versions from 32.135.0 before 40.33.0 contain a command injection vulnerability in the hermit manager where user-provided dependency names are appended to install and uninstall commands without proper sanitization

Renovate versions from 32.135.0 before 40.33.0 contain a command injection vulnerability in the hermit manager where user-provided dependency names are appended to install and uninstall commands without proper sanitization. Attackers wit…

SunlitEPSS 0.92%via NVD
CVE-2026-76230Medium· 6.7
1mo ago

Renovate versions from 35.63.0 before 40.33.0 contain a command injection vulnerability in the npm manager where user-provided packageName values are appended to npm install commands without proper sanitization

Renovate versions from 35.63.0 before 40.33.0 contain a command injection vulnerability in the npm manager where user-provided packageName values are appended to npm install commands without proper sanitization. Attackers with repository…

SunlitEPSS 0.92%via NVD
CVE-2026-76229Medium· 6.7
1mo ago

Renovate versions from 39.218.0 before 40.33.0 contain an arbitrary command injection vulnerability in the kustomize manager where user-provided chart names are appended to helm pull commands without proper sanitization

Renovate versions from 39.218.0 before 40.33.0 contain an arbitrary command injection vulnerability in the kustomize manager where user-provided chart names are appended to helm pull commands without proper sanitization. Attackers with r…

SunlitEPSS 0.72%via NVD
CVE-2026-24301High· 8.8PoC
1mo ago

Microsoft Copilot Information Disclosure Vulnerability

Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an unauthorized attacker to disclose information over a network.

MidnightMicrosoft · Copilot WebEPSS 2.7%via CVEORG
GHSA-jf24-8g2h-2wg7Medium
1mo ago

LibreNMS Vulnerable to Remote Code Execution via AboutController

LibreNMS Vulnerable to Remote Code Execution via AboutController

Sunlitlibrenms · librenms/librenmsvia GHSA
CVE-2026-53533Medium
1mo ago

aiosmtplib is an asynchronous SMTP client for use with asyncio

aiosmtplib is an asynchronous SMTP client for use with asyncio. Prior to 5.1.1, SMTP.mail(), SMTP.rcpt(), SMTP.vrfy(), and SMTP.expn() send caller-supplied addresses without rejecting embedded CR or LF bytes. Data after the line break is…

Sunlitaiosmtplib · aiosmtplibEPSS 0.39%via NVD
CVE-2026-75004Medium· 4.3
1mo ago

In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, improper rule name quoting could lead to managesieve_disabled_actions setting bypass via a crafted rule name in a Sieve script

In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, improper rule name quoting could lead to managesieve_disabled_actions setting bypass via a crafted rule name in a Sieve script. This issue only affects Roundcube instances using …

Sunlitroundcube · webmailEPSS 0.27%via NVD
CVE-2026-75002High· 7.1
1mo ago

In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, mail search and LITERAL+ byte-count desynchronization could lead to information disclosure or privilege escalation via IMAP command injection.

In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, mail search and LITERAL+ byte-count desynchronization could lead to information disclosure or privilege escalation via IMAP command injection.

Twilightroundcube · webmailEPSS 1.4%via NVD
CVE-2026-75007Medium· 5.4
1mo ago

In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, the LDAP search filter was subject to injection via unescaped %u/%fu/%d substitution, which may lead to information disclosure or privilege escalation.

In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, the LDAP search filter was subject to injection via unescaped %u/%fu/%d substitution, which may lead to information disclosure or privilege escalation.

Sunlitroundcube · webmailEPSS 0.35%via NVD
CVE-2026-50523High· 7.8
1mo ago

Microsoft PowerShell Remote Code Execution Vulnerability

Improper neutralization of special elements used in a command ('command injection') in Microsoft PowerShell allows an authorized attacker to execute code locally.

TwilightMicrosoft · PowerShell 7.4EPSS 0.22%via CVEORG
CVE-2026-73078High· 8.6
1mo ago

Vim is an open source, command line text editor

Vim is an open source, command line text editor. Prior to 9.2.0840, runtime/plugin/netrwPlugin.vim loads netrw and runtime/pack/dist/opt/netrw/autoload/netrw.vim constructs Bookmarks, History, and Targets menu entries by interpolating at…

Twilightvim · vimEPSS 0.34%via NVD
CWE-77 vulnerabilities (CVEs) — page 3 · VulnSea