VulnSea

CWE-77

CVEs classified under CWE-77, newest first.

271 CVEsRSS

CVE-2026-13501Medium· 5.3
3mo ago

A security vulnerability has been detected in antlr ANTLR4 up to 4.13.2

A security vulnerability has been detected in antlr ANTLR4 up to 4.13.2. Affected by this vulnerability is the function GoTarget of the file tool/src/org/antlr/v4/codegen/target/GoTarget.java of the component gofmt. The manipulation lead…

▾ SunlitEPSS 1.2%via NVD
CVE-2026-12537High· 7.8⚖ disputed
3mo ago

Improper Neutralization used in an OS Command in the container launcher in Google Gemini CLI (versions prior to 0.39.1) and run-gemini-cli GitHub Action (versions prior to 0.1.22) on headless CI platforms allows an unprivileged attacker …

Improper Neutralization used in an OS Command in the container launcher in Google Gemini CLI (versions prior to 0.39.1) and run-gemini-cli GitHub Action (versions prior to 0.1.22) on headless CI platforms allows an unprivileged attacker …

▾ Twilightgoogle · gemini-cliEPSS 0.21%via NVD
CVE-2026-56379High· 8.1
3mo ago

ImageMagick before 7.1.2-15 and 6.9.13-40 contains a command injection vulnerability in the SVG decoder that allows attackers to inject arbitrary MVG drawing commands

ImageMagick before 7.1.2-15 and 6.9.13-40 contains a command injection vulnerability in the SVG decoder that allows attackers to inject arbitrary MVG drawing commands. Attackers can craft malicious SVG files with injected Magick Vector G…

▾ Twilightimagemagick · imagemagickEPSS 1.6%via NVD
CVE-2026-52806Critical· 9.9PoC
3mo ago

Gogs vulnerable to RCE via git rebase --exec argument injection in pull request merge

Gogs vulnerable to RCE via git rebase --exec argument injection in pull request merge

▾ Abyssalgogs · gogs.io/gogsEPSS 7.9%via GHSA
CVE-2026-42895Medium· 6.5
3mo ago

Microsoft Copilot Tampering Vulnerability

Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an unauthorized attacker to perform tampering over a network.

▾ SunlitMicrosoft · Microsoft 365 CopilotEPSS 0.71%via CVEORG
GHSA-c969-5x3p-vq3vHigh· 8.1
3mo ago

PraisonAI: IMAP Command Injection via Unsanitized Email Search Parameters

PraisonAI: IMAP Command Injection via Unsanitized Email Search Parameters

▾ Twilightpraisonaiagents · praisonaiagentsvia GHSA
CVE-2026-54090High
3mo ago

File Browser has a Command Execution Allowlist Bypass via Shell Metacharacter Injection

File Browser has a Command Execution Allowlist Bypass via Shell Metacharacter Injection

▾ Twilightfilebrowser · github.com/filebrowser/filebrowser/v2EPSS 0.44%via GHSA
CVE-2026-46529High· 7.8PoC
3mo ago

Atril Document Viewer is the default document reader of the MATE desktop environment for Linux

Atril Document Viewer is the default document reader of the MATE desktop environment for Linux. A single-click remote code execution vulnerability in versions prior to 1.26.3 and 1.28.4 allows an attacker to achieve arbitrary code execut…

▾ MidnightEPSS 0.41%via NVD
CVE-2026-47240Medium
3mo ago

Net::IMAP: Command Injection via non-synchronizing literal in "raw" argument

Net::IMAP: Command Injection via non-synchronizing literal in "raw" argument

▾ Sunlitnet-imap · net-imapEPSS 0.83%via GHSA
CVE-2026-47242Medium
3mo ago

Net::IMAP: Command Injection via ID command argument

Net::IMAP: Command Injection via ID command argument

▾ Sunlitnet-imap · net-imapEPSS 0.18%via GHSA
CVE-2026-42824Medium· 6.5
3mo ago

M365 Copilot Information Disclosure Vulnerability

Improper neutralization of special elements used in a command ('command injection') in M365 Copilot allows an unauthorized attacker to disclose information over a network.

▾ SunlitMicrosoft · Microsoft 365 CopilotEPSS 0.92%via CVEORG
CVE-2026-45497High· 7.7
3mo ago

Microsoft M365 Copilot Remote Code Execution Vulnerability

Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an authorized attacker to execute code over a network.

▾ TwilightMicrosoft · Microsoft 365 CopilotEPSS 0.61%via CVEORG
CVE-2026-8037Critical· 9.6CISA KEVPoC
3mo ago

OS Command Injection Remote Code Execution Vulnerability in API in Progress ADC Products allows an un-authenticated attacker to execute arbitrary commands on the LoadMaster appliance by exploiting unsanitized input in multiple command en…

OS Command Injection Remote Code Execution Vulnerability in API in Progress ADC Products allows an un-authenticated attacker to execute arbitrary commands on the LoadMaster appliance by exploiting unsanitized input in multiple command en…

▾ Hadalprogress · connection_manager_for_objectscaleEPSS 77%via NVD
CVE-2024-52011High· 8.3PoC
3mo ago

launch-editor allows users to open files with line numbers in editor from Node.js

launch-editor allows users to open files with line numbers in editor from Node.js. Prior to version 2.9.0, due to the insufficient sanitization of the `file` argument in the `launchEditor`, an attacker can execute arbitrary commands on W…

▾ MidnightEPSS 0.51%via NVD
CVE-2026-45628Critical· 9.6
4mo ago

Dokploy is a free, self-hostable Platform as a Service (PaaS)

Dokploy is a free, self-hostable Platform as a Service (PaaS). In 0.29.2 and earlier, Dokploy constructs shell commands using JavaScript template literals and executes them via child_process.exec() (which runs through /bin/sh -c). User-s…

▾ MidnightEPSS 0.39%via NVD
CVE-2026-42827Medium· 6.5
4mo ago

Improper neutralization of special elements used in a command ('command injection') in M365 Copilot allows an unauthorized attacker to disclose information over a network.

Improper neutralization of special elements used in a command ('command injection') in M365 Copilot allows an unauthorized attacker to disclose information over a network.

▾ Sunlitmicrosoft · 365_copilotEPSS 0.92%via NVD
CVE-2026-41090Critical· 9.3
4mo ago

Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an unauthorized attacker to perform tampering over a network.

Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an unauthorized attacker to perform tampering over a network.

▾ Midnightmicrosoft · 365_copilotEPSS 0.76%via NVD
CVE-2026-23652Critical· 10.0
4mo ago

Improper neutralization of special elements used in a command ('command injection') in Microsoft Power Pages allows an unauthorized attacker to execute code over a network.

Improper neutralization of special elements used in a command ('command injection') in Microsoft Power Pages allows an unauthorized attacker to execute code over a network.

▾ Midnightmicrosoft · power_pagesEPSS 0.58%via NVD
CVE-2026-9277High· 8.1PoC
4mo ago

shell-quote's `quote()` function did not validate object-token inputs against the operator model used by `parse()`

shell-quote's `quote()` function did not validate object-token inputs against the operator model used by `parse()`. The `.op` field was backslash-escaped character by character using `/(.)/g`, which in JavaScript does not match line term…

▾ MidnightEPSS 0.95%via NVD
CVE-2026-8632High· 7.8
4mo ago

A potential security vulnerability has been identified in the HP Linux Imaging and Printing Software

A potential security vulnerability has been identified in the HP Linux Imaging and Printing Software. This potential vulnerability may allow escalation of privileges and/or arbitrary code execution via operating system command injection.

▾ Twilighthp · linux_imaging_and_printingEPSS 4.6%via NVD
CVE-2026-36741High· 7.2
4mo ago

U-SPEED AC1200 Gigabit Wi-Fi Router (Model: T18-21K) V1.0 is vulnerable to Command Injection

U-SPEED AC1200 Gigabit Wi-Fi Router (Model: T18-21K) V1.0 is vulnerable to Command Injection. The Network Time Protocol (NTP) configuration interface does not properly sanitize user-supplied input. An authenticated user with permission t…

▾ Twilightu-speed · t18-21k_firmwareEPSS 2.6%via NVD
CVE-2026-40698High· 8.7
4mo ago

A vulnerability exists in BIG-IP and BIG-IQ systems where a highly privileged, authenticated attacker with at least the Resource Administrator role can create SNMP configuration objects through iControl REST or the TMOS shell (tmsh) resu…

A vulnerability exists in BIG-IP and BIG-IQ systems where a highly privileged, authenticated attacker with at least the Resource Administrator role can create SNMP configuration objects through iControl REST or the TMOS shell (tmsh) resu…

▾ Twilightf5 · big-ip_access_policy_managerEPSS 0.41%via NVD
CVE-2026-41953High· 8.7
4mo ago

A vulnerability exists in BIG-IP systems where a highly privileged, authenticated attacker with at least the Resource Administrator role can modify configuration objects resulting in privilege escalation.  Note: Software versions which h…

A vulnerability exists in BIG-IP systems where a highly privileged, authenticated attacker with at least the Resource Administrator role can modify configuration objects resulting in privilege escalation.  Note: Software versions which h…

▾ TwilightEPSS 0.41%via NVD
CVE-2026-8431High· 7.2
4mo ago

An administrative user with access to configure webhooks can execute arbitrary commands by configuring and then triggering webhooks containing specific FreeMarker template syntax.  This issue affects all MongoDB Ops Manager 7.0 versio…

An administrative user with access to configure webhooks can execute arbitrary commands by configuring and then triggering webhooks containing specific FreeMarker template syntax.  This issue affects all MongoDB Ops Manager 7.0 versio…

▾ Twilightmongodb · ops_managerEPSS 0.70%via NVD
CVE-2026-8265Medium· 4.7
4mo ago

A security vulnerability has been detected in Tenda AC6 15.03.06.23

A security vulnerability has been detected in Tenda AC6 15.03.06.23. Affected by this issue is the function get_log_file of the file /goform/getLogFile of the component httpd. The manipulation of the argument wans.flag leads to os comman…

▾ Sunlittenda · ac6_firmwareEPSS 8.3%via NVD
CVE-2026-8264Medium· 6.3
4mo ago

A weakness has been identified in Tenda AC6 15.03.06.23

A weakness has been identified in Tenda AC6 15.03.06.23. Affected by this vulnerability is the function formWifiApScan of the file /goform/WifiApScan of the component httpd. Executing a manipulation of the argument wl2g.public.country/wl…

▾ Sunlittenda · ac6_firmwareEPSS 6.5%via NVD
CVE-2026-8263Medium· 4.7
4mo ago

A security flaw has been discovered in Tenda AC6 15.03.06.49_multi_TDE01

A security flaw has been discovered in Tenda AC6 15.03.06.49_multi_TDE01. Affected is the function fromSetWirelessRepeat of the file /goform/WifiExtraSet of the component httpd. Performing a manipulation of the argument mac/ssid results …

▾ Sunlittenda · ac10u_firmwareEPSS 8.7%via NVD
CVE-2026-8259Medium· 4.7
4mo ago

A vulnerability has been found in Tenda AC6 2.0/15.03.06.23

A vulnerability has been found in Tenda AC6 2.0/15.03.06.23. The affected element is an unknown function of the file /goform/telnet of the component httpd. The manipulation of the argument lan.ip leads to os command injection. Remote exp…

▾ Sunlittenda · ac6_firmwareEPSS 8.3%via NVD
CVE-2026-8235Medium· 5.5
4mo ago

A vulnerability was detected in 8421bit MiniClaw 0.8.0/0.9.0

A vulnerability was detected in 8421bit MiniClaw 0.8.0/0.9.0. This issue affects the function resolveSkillScriptPath of the file src/kernel.ts of the component System Command Handler. The manipulation results in os command injection. The…

▾ SunlitEPSS 3.6%via NVD
CVE-2026-8230Medium· 6.3
4mo ago

A flaw has been found in Wavlink NU516U1 240425

A flaw has been found in Wavlink NU516U1 240425. The impacted element is the function sys_login1 of the file /cgi-bin/login.cgi. Executing a manipulation of the argument ipaddr can lead to os command injection. The attack can be executed…

▾ Sunlitwavlink · wl-nu516u1_firmwareEPSS 8.5%via NVD
CWE-77 vulnerabilities (CVEs) — page 6 · VulnSea