VulnSea

CWE-77

CVEs classified under CWE-77, newest first.

271 CVEsRSS

CVE-2026-19268Medium· 6.3
1mo ago

A vulnerability was identified in abdullah1854 MCPGateway up to 549f494a9e363f40530149de324b8097de424230

A vulnerability was identified in abdullah1854 MCPGateway up to 549f494a9e363f40530149de324b8097de424230. This impacts the function getUsageByDateRange of the file src/services/claude-usage.ts of the component Claude Usage Range Endpoint…

▾ SunlitEPSS 1.8%via NVD
CVE-2026-19266Medium· 5.5
1mo ago

A vulnerability was determined in Kirachon context-engine up to 1.9.0

A vulnerability was determined in Kirachon context-engine up to 1.9.0. This affects the function execGitCommand of the file src/mcp/utils/gitUtils.ts of the component review-git-diff Endpoint. Executing a manipulation of the argument arg…

▾ SunlitEPSS 3.9%via NVD
CVE-2026-19263High· 7.3
1mo ago

A vulnerability was found in INQUIRELAB mcp-bridge-api up to b30a82aa1d1d1139e0de846c41c8aadee6e06114

A vulnerability was found in INQUIRELAB mcp-bridge-api up to b30a82aa1d1d1139e0de846c41c8aadee6e06114. The impacted element is an unknown function of the file mcp-bridge.js of the component Servers Endpoint. Performing a manipulation of …

▾ TwilightEPSS 2.1%via NVD
CVE-2026-19047Medium· 5.3
1mo ago

A vulnerability was detected in NocteDefensor LudusMCP up to 1.0.24

A vulnerability was detected in NocteDefensor LudusMCP up to 1.0.24. This affects the function executeArbitraryCommand/executeCommand of the file src/ludusMCP/cliWrapper.ts of the component ludus_cli_execute. Performing a manipulation of…

▾ SunlitEPSS 1.1%via NVD
CVE-2025-29296Critical· 9.8
1mo ago

H3C Magic BE18000 V200R007, H3C NX400 V100R015, H3C Magic NX30 Pro V100R0011, H3C Magic R3010 V100R009, H3C Magic NX15 V100R017, H3C Magic R1510 V100R016, H3C NE36 Pro V100R002 and H3C MC102G HM1A0V200R010 contain multiple command inject…

H3C Magic BE18000 V200R007, H3C NX400 V100R015, H3C Magic NX30 Pro V100R0011, H3C Magic R3010 V100R009, H3C Magic NX15 V100R017, H3C Magic R1510 V100R016, H3C NE36 Pro V100R002 and H3C MC102G HM1A0V200R010 contain multiple command inject…

▾ MidnightEPSS 2.3%via NVD
GHSA-4vpg-pfj8-m33qHigh· 8.4
1mo ago

Duplicate Advisory: GitPython: command injection via unguarded Git options in `Repo.archive()`, `git.ls_remote()`, and arbitrary file overwrite via `Repo.iter_commits()` / `Repo.blame()`

Duplicate Advisory: GitPython: command injection via unguarded Git options in `Repo.archive()`, `git.ls_remote()`, and arbitrary file overwrite via `Repo.iter_commits()` / `Repo.blame()`

▾ Twilightgitpython · gitpythonvia GHSA
CVE-2026-67323High· 8.4
1mo ago

GitPython before 3.1.51 fails to guard against dangerous Git options passed as keyword arguments in Repo.archive() and git.ls_remote(), allowing command injection via options such as --exec/--upload-pack (leading to arbitrary command exe…

GitPython before 3.1.51 fails to guard against dangerous Git options passed as keyword arguments in Repo.archive() and git.ls_remote(), allowing command injection via options such as --exec/--upload-pack (leading to arbitrary command exe…

▾ TwilightGitPython · GitPythonEPSS 1.3%via NVD
CVE-2026-38710High· 7.2
1mo ago

TR1200 v2.4.15 and TR3000 v2.4.21 were discovered to contain a command injection vulnerability in the system.setclock interface

TR1200 v2.4.15 and TR3000 v2.4.21 were discovered to contain a command injection vulnerability in the system.setclock interface. This vulnerability allows attackers to execute arbitrary commands as root via a crafted input.

▾ TwilightEPSS 2.3%via NVD
CVE-2026-54680Critical· 9.9
2mo ago

Logging operator automates the deployment and configuration of Kubernetes logging pipelines

Logging operator automates the deployment and configuration of Kubernetes logging pipelines. Prior to 6.6.0, the Fluentd configuration renderer FluentRender in pkg/sdk/logging/model/render/fluent.go writes CRD strings such as Flow record…

▾ Midnightkube-logging · github.com/kube-logging/logging-operatorEPSS 0.78%via NVD
GHSA-956x-8gvw-wg5vHigh· 8.4
2mo ago

GitPython: command injection via unguarded Git options in `Repo.archive()`, `git.ls_remote()`, and arbitrary file overwrite via `Repo.iter_commits()` / `Repo.blame()`

GitPython: command injection via unguarded Git options in `Repo.archive()`, `git.ls_remote()`, and arbitrary file overwrite via `Repo.iter_commits()` / `Repo.blame()`

▾ TwilightGitPython · GitPythonvia GHSA
CVE-2026-16133Medium· 5.0
2mo ago

A flaw has been found in LiuMengxuan04 MiniCode 0.1.0

A flaw has been found in LiuMengxuan04 MiniCode 0.1.0. Affected by this vulnerability is the function child_process.spawn of the file mcp.ts. Executing a manipulation can lead to command injection. The attack can be launched remotely. Th…

▾ SunlitEPSS 1.2%via NVD
CVE-2025-71392None
2mo ago

SurrealDB before 2.0.5, 2.1.x before 2.1.5, and 2.2.x before 2.2.2 fails to properly escape table and field names in the command-line export command

SurrealDB before 2.0.5, 2.1.x before 2.1.5, and 2.2.x before 2.2.2 fails to properly escape table and field names in the command-line export command. An authenticated System User with OWNER or EDITOR roles can create tables or fields wit…

▾ SunlitEPSS 0.44%via NVD
CVE-2026-50520High· 8.4
2mo ago

Visual Studio Code Remote Code Execution Vulnerability

Improper neutralization of special elements used in a command ('command injection') in Visual Studio Code allows an unauthorized attacker to execute code locally.

▾ TwilightMicrosoft · Visual Studio CodeEPSS 0.35%via CVEORG
CVE-2026-50488High· 7.8
2mo ago

Clipboard User Service Elevation of Privilege Vulnerability

Improper neutralization of special elements used in a command ('command injection') in Windows Clipboard User Service allows an authorized attacker to elevate privileges locally.

▾ TwilightMicrosoft · Windows 11 Version 24H2EPSS 0.32%via CVEORG
CVE-2026-55145Medium· 6.3
2mo ago

Outlook Copilot Tampering Vulnerability

Improper neutralization of special elements used in a command ('command injection') in Outlook Copilot allows an authorized attacker to perform tampering over a network.

▾ SunlitMicrosoft · Microsoft CopilotEPSS 0.53%via CVEORG
CVE-2026-56197High· 8.8
2mo ago

Windows Admin Center (WAC) Remote Code Execution Vulnerability

Improper neutralization of special elements used in a command ('command injection') in Windows Admin Center allows an authorized attacker to execute code over a network.

▾ TwilightMicrosoft · Windows Admin CenterEPSS 0.99%via CVEORG
CVE-2026-58635High· 7.8PoC
2mo ago

Improper neutralization of special elements used in a command ('command injection') in Windows Narrator Braille allows an authorized attacker to elevate privileges locally.

Improper neutralization of special elements used in a command ('command injection') in Windows Narrator Braille allows an authorized attacker to elevate privileges locally.

▾ Midnightmicrosoft · windows_10_1809EPSS 0.32%via NVD
CVE-2026-48561Critical· 9.6
2mo ago

Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an unauthorized attacker to execute code over a network.

Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an unauthorized attacker to execute code over a network.

▾ Midnightmicrosoft · 365_copilotEPSS 0.86%via NVD
CVE-2026-15547Medium· 6.3
2mo ago

A weakness has been identified in Shibby Tomato up to 1.28.0000

A weakness has been identified in Shibby Tomato up to 1.28.0000. This affects the function sub_2D048 of the component CIFS Mount Handler. Executing a manipulation of the argument cifs1/cifs2 can lead to os command injection. The attack c…

▾ SunlitEPSS 1.8%via NVD
CVE-2026-15546Medium· 6.3
2mo ago

A security flaw has been discovered in Shibby Tomato up to 1.28.0000

A security flaw has been discovered in Shibby Tomato up to 1.28.0000. Affected by this issue is the function sub_2D568 of the component start_jffs2. Performing a manipulation of the argument jffs2_exec results in os command injection. Re…

▾ SunlitEPSS 1.8%via NVD
CVE-2026-15513Medium· 6.3
2mo ago

A security flaw has been discovered in Wavlink WL-NU516U1 260515

A security flaw has been discovered in Wavlink WL-NU516U1 260515. This affects the function wlink_uci_set_value of the file /cgi-bin/adm.cgi. Performing a manipulation of the argument lan_ip results in os command injection. The attack ca…

▾ SunlitEPSS 1.8%via NVD
CVE-2026-15511Critical· 9.8
2mo ago

A vulnerability was determined in Comfast CF-WR631AX V3 up to 2.7.0.8

A vulnerability was determined in Comfast CF-WR631AX V3 up to 2.7.0.8. Affected by this vulnerability is the function system_wl_upload_pic_file of the file /usr/bin/webmgnt of the component FastCGI Backend. This manipulation of the argum…

▾ MidnightEPSS 4.7%via NVD
CVE-2026-15496Medium· 6.3
2mo ago

A vulnerability was found in SonicCloudOrg sonic-agent up to 2.7.2

A vulnerability was found in SonicCloudOrg sonic-agent up to 2.7.2. The impacted element is the function evalIsFailed of the file sonic-agent/src/main/java/org/cloud/sonic/agent/tests/script/GroovyScriptImpl.java of the component Groovy …

▾ SunlitEPSS 2.0%via NVD
CVE-2026-15495Medium· 6.3
2mo ago

A vulnerability has been found in SonicCloudOrg sonic-agent up to 2.7.2

A vulnerability has been found in SonicCloudOrg sonic-agent up to 2.7.2. The affected element is an unknown function of the file AndroidWSServer.java of the component Android WebSocket Server. The manipulation of the argument path leads …

▾ SunlitEPSS 2.7%via NVD
CVE-2026-15487Medium· 6.3
2mo ago

A vulnerability was found in TRENDnet TEW-821DAP 1.11B03

A vulnerability was found in TRENDnet TEW-821DAP 1.11B03. This impacts the function sub_41FBD0 of the file /goform/system_ntp of the component Firmware Update Handler. Performing a manipulation of the argument Hostname results in os comm…

▾ SunlitEPSS 1.8%via NVD
CVE-2026-15486Medium· 6.3
2mo ago

A vulnerability has been found in TRENDnet TEW-821DAP 1.11B03

A vulnerability has been found in TRENDnet TEW-821DAP 1.11B03. This affects the function sub_42026C of the file /goform/tools_ddns of the component Firmware Update Handler. Such manipulation of the argument hostname/username/password lea…

▾ SunlitEPSS 1.8%via NVD
CVE-2026-15485Medium· 6.3
2mo ago

A flaw has been found in TRENDnet TEW-821DAP 1.11B03

A flaw has been found in TRENDnet TEW-821DAP 1.11B03. The impacted element is the function sub_43F2C4 of the file /goform/tools_nslookup of the component DNS Lookup Handler. This manipulation of the argument nslookup_target/dns_server ca…

▾ SunlitEPSS 1.8%via NVD
CVE-2026-15481High· 8.8
2mo ago

A security flaw has been discovered in Trendnet TEW-635BRM up to 1.00.03

A security flaw has been discovered in Trendnet TEW-635BRM up to 1.00.03. This vulnerability affects the function ipoa_test of the file /sbin/rc of the component IPoA WAN Connection Setup. Performing a manipulation of the argument ipoa_i…

▾ TwilightEPSS 2.9%via NVD
CVE-2025-6784High· 8.8
2mo ago

The Code Engine plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 0.3.5 via the 'code-engine' shortcode

The Code Engine plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 0.3.5 via the 'code-engine' shortcode. This is due to the plugin not restricting access to the code injecting functionality…

▾ TwilightEPSS 0.85%via NVD
CVE-2026-13538Medium· 6.3
3mo ago

A vulnerability was determined in Wavlink WL-NU516U1-A M16U1_V240425

A vulnerability was determined in Wavlink WL-NU516U1-A M16U1_V240425. The affected element is the function sub_401D68 of the file /cgi-bin/wireless.cgi of the component POST Parameter Handler. This manipulation of the argument SSID2G2/SS…

▾ SunlitEPSS 2.2%via NVD
CWE-77 vulnerabilities (CVEs) — page 5 · VulnSea