CWE-116— Improper Encoding or Escaping of Output
The product prepares a structured message for communication with another component, but encoding or escaping of the data is either missing or done incorrectly. As a result, the intended structure of the message is not preserved.— MITRE CWE catalog
574 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-116page 5 of 12
- CVE-2026-34479HIGHCVSS 7.5EG 7.52026-04-10
The Log4j1XmlLayout from the Apache Log4j 1-to-Log4j 2 bridge fails to escape characters forbidden by the XML 1.0 standard, producing malformed XML output. Conforming XML parsers are required to reject documents containing such characters …
- CVE-2026-34483HIGHCVSS 7.5EG 7.52026-04-09
Improper Encoding or Escaping of Output vulnerability in the JsonAccessLogValve component of Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.20, from 10.1.0-M1 through 10.1.53, from 9.0.40 through 9.0.116. Us…
- CVE-2026-26027HIGHCVSS 7.5EG 7.52026-04-06
GLPI is a free asset and IT management software package. From 11.0.0 to before 11.0.6, an unauthenticated user can store an XSS payload through the inventory endpoint. This vulnerability is fixed in 11.0.6.
- CVE-2026-32811HIGHCVSS 7.5EG 7.52026-03-20
Heimdall is a cloud native Identity Aware Proxy and Access Control Decision service. When using Heimdall in envoy gRPC decision API mode with versions 0.7.0-alpha through 0.17.10, wrong encoding of the query URL string allows rules with no…
- CVE-2026-3644HIGHCVSS 7.5EG 7.52026-03-16
The fix for CVE-2026-0672, which rejected control characters in http.cookies.Morsel, was incomplete. The Morsel.update(), |= operator, and unpickling paths were not patched, allowing control characters to bypass input validation. Additiona…
- CVE-2024-9606HIGHCVSS 7.5EG 7.52025-03-20
In berriai/litellm before version 1.44.12, the `litellm/litellm_core_utils/litellm_logging.py` file contains a vulnerability where the API key masking code only masks the first 5 characters of the key. This results in the leakage of almost…
- CVE-2024-52006HIGHCVSS 7.5EG 7.52025-01-14
Git is a fast, scalable, distributed revision control system with an unusually rich command set that provides both high-level operations and full access to internals. Git defines a line-based protocol that is used to exchange information b…
- CVE-2024-46547HIGHCVSS 7.5EG 7.52024-12-09
A vulnerability was found in Romain Bourdon Wampserver all versions (discovered in v3.2.3 and v3.2.6) where unauthorized users could access sensitive information due to improper access control validation via PHP Info Page. This issue can l…
- CVE-2024-4420HIGHCVSS 7.5EG 7.52024-05-21
There exists a Denial of service vulnerability in Tink-cc in versions prior to 2.1.3. * An adversary can crash binaries using the crypto::tink::JsonKeysetReader in tink-cc by providing an input that is not an encoded JSON object, but s…
- CVE-2024-34510HIGHCVSS 7.5EG 7.52024-05-05
Gradio before 4.20 allows credential leakage on Windows.
- CVE-2024-1064HIGHCVSS 7.5EG 7.52024-02-03
A host header injection vulnerability in the HTTP handler component of Crafty Controller allows a remote, unauthenticated attacker to trigger a Denial of Service (DoS) condition via a modified host header
- CVE-2023-28738HIGHCVSS 7.5EG 7.52024-01-19
Improper input validation for some Intel NUC BIOS firmware before version JY0070 may allow a privileged user to potentially enable escalation of privilege via local access.
- CVE-2023-52102HIGHCVSS 7.5EG 7.52024-01-16
Vulnerability of parameters being not verified in the WMS module. Successful exploitation of this vulnerability may affect service confidentiality.
- CVE-2023-52098HIGHCVSS 7.5EG 7.52024-01-16
Denial of Service (DoS) vulnerability in the DMS module. Successful exploitation of this vulnerability will affect availability.
- CVE-2023-39390HIGHCVSS 7.5EG 7.52023-08-13
Vulnerability of input parameter verification in certain APIs in the window management module. Successful exploitation of this vulnerability may cause the device to restart.
- CVE-2023-39386HIGHCVSS 7.5EG 7.52023-08-13
Vulnerability of input parameters being not strictly verified in the PMS module. Successful exploitation of this vulnerability may cause newly installed apps to fail to restart.
- CVE-2023-39382HIGHCVSS 7.5EG 7.52023-08-13
Input verification vulnerability in the audio module. Successful exploitation of this vulnerability may cause virtual machines (VMs) to restart.
- CVE-2023-39381HIGHCVSS 7.5EG 7.52023-08-13
Input verification vulnerability in the storage module. Successful exploitation of this vulnerability may cause the device to restart.
- CVE-2022-43713HIGHCVSS 7.5EG 7.52023-07-26
Interactive Forms (IAF) in GX Software XperienCentral versions 10.33.1 until 10.35.0 was vulnerable to invalid data input because form validation could be bypassed.
- CVE-2022-30351HIGHCVSS 7.5EG 7.52023-03-30
PDFZorro PDFZorro Online r20220428 using TCPDF 6.2.5, despite having workflows claiming to correctly remove redacted information from a supplied PDF file, does not properly sanitize this information in all cases, causing redacted informati…
- CVE-2022-45143HIGHCVSS 7.5EG 7.52023-01-03
The JsonErrorReportValve in Apache Tomcat 8.5.83, 9.0.40 to 9.0.68 and 10.1.0-M1 to 10.1.1 did not escape the type, message or description values. In some circumstances these are constructed from user provided data and it was therefore pos…
- CVE-2020-36567HIGHCVSS 7.5EG 7.52022-12-27
Unsanitized input in the default logger in github.com/gin-gonic/gin before v1.6.0 allows remote attackers to inject arbitrary log lines.
- CVE-2022-39958HIGHCVSS 7.5EG 7.52022-09-20
The OWASP ModSecurity Core Rule Set (CRS) is affected by a response body bypass to sequentially exfiltrate small and undetectable sections of data by repeatedly submitting an HTTP Range header field with a small byte range. A restricted re…
- CVE-2021-45848HIGHCVSS 7.5EG 7.52022-03-15
Denial of service (DoS) vulnerability in Nicotine+ 3.0.3 and later allows a user with a modified Soulseek client to crash Nicotine+ by sending a file download request with a file path containing a null character.
- CVE-2021-41191HIGHCVSS 7.5EG 7.52021-10-27
Roblox-Purchasing-Hub is an open source Roblox product purchasing hub. A security risk in versions 1.0.1 and prior allowed people who have someone's API URL to get product files without an API key. This issue is fixed in version 1.0.2. As …
- CVE-2020-4850HIGHCVSS 7.5EG 7.52021-05-20
IBM Spectrum Scale 1.1.1.0 through 1.1.8.4 Transparent Cloud Tiering could allow a remote attacker to obtain sensitive information, caused by the leftover files after configuration. IBM X-Force ID: 190298.
- CVE-2021-20405HIGHCVSS 7.5EG 7.52021-02-11
IBM Security Verify Information Queue 1.0.6 and 1.0.7 could allow a user to perform unauthorized activities due to improper encoding of output. IBM X-Force ID: 196183.
- CVE-2020-13654HIGHCVSS 7.5EG 7.52020-12-31
XWiki Platform before 12.8 mishandles escaping in the property displayer.
- CVE-2020-35475HIGHCVSS 7.5EG 7.52020-12-18
In MediaWiki before 1.35.1, the messages userrights-expiry-current and userrights-expiry-none can contain raw HTML. XSS can happen when a user visits Special:UserRights but does not have rights to change all userrights, and the table on th…
- CVE-2020-25646HIGHCVSS 7.5EG 7.52020-10-29
A flaw was found in Ansible Collection community.crypto. openssl_privatekey_info exposes private key in logs. This directly impacts confidentiality
- CVE-2019-4326HIGHCVSS 7.5EG 7.52020-10-06
"HCL AppScan Enterprise security rules update administration section of the web application console is missing HTTP Strict-Transport-Security Header."
- CVE-2020-5304HIGHCVSS 7.5EG 7.52020-06-08
The dashboard in WhiteSource Application Vulnerability Management (AVM) before version 20.4.1 allows Log Injection via a %0A%0D substring in the idp parameter to the /saml/login URI. This closes the current log and creates a new log with o…
- CVE-2020-13625HIGHCVSS 7.5EG 7.52020-06-08
PHPMailer before 6.1.6 contains an output escaping bug when the name of a file attachment contains a double quote character. This can result in the file type being misinterpreted by the receiver or any mail relay processing the message.
- CVE-2020-6227HIGHCVSS 7.5EG 7.52020-04-14
SAP Business Objects Business Intelligence Platform (CMS / Auditing issues), version 4.2, allows attacker to send specially crafted GIOP packets to several services due to Improper Input Validation, allowing to forge additional entries in …
- CVE-2019-1968HIGHCVSS 7.5EG 7.52019-08-30
A vulnerability in the NX-API feature of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause an NX-API system process to unexpectedly restart. The vulnerability is due to incorrect validation of the HTTP header of…
- CVE-2018-16386HIGHCVSS 7.5EG 7.52019-07-05
An issue was discovered in SWIFT Alliance Web Platform 7.1.23. A log injection (and an arbitrary log filename) can be achieved via the PATH_INFO to swp/login/EJBRemoteService/, related to com.swift.ejbgwt.j2ee.client.EjBlnvocationException…
- CVE-2018-18838HIGHCVSS 7.5EG 7.52019-06-18
An issue was discovered in Netdata 1.10.0. Log Injection (or Log Forgery) exists via a %0a sequence in the url parameter to api/v1/registry.
- CVE-2018-1048HIGHCVSS 7.5EG 7.52018-01-24
It was found that the AJP connector in undertow, as shipped in Jboss EAP 7.1.0.GA, does not use the ALLOW_ENCODED_SLASH option and thus allow the the slash / anti-slash characters encoded in the url which may lead to path traversal and res…
- CVE-2017-12064HIGHCVSS 7.5EG 7.52017-08-01
The csv_log_html function in library/edihistory/edih_csv_inc.php in OpenEMR 5.0.0 and prior allows attackers to bypass intended access restrictions via a crafted name.
- CVE-2016-3063HIGHCVSS 7.5EG 7.52017-02-07
Multiple functions in NetApp OnCommand System Manager before 8.3.2 do not properly escape special characters, which allows remote authenticated users to execute arbitrary API calls via unspecified vectors.
- CVE-2022-39957HIGHCVSS 7.3EG 7.52022-09-20
The OWASP ModSecurity Core Rule Set (CRS) is affected by a response body bypass. A client can issue an HTTP Accept header field containing an optional "charset" parameter in order to receive the response in an encoded form. Depending on th…
- CVE-2022-43883HIGHCVSS 6.5EG 7.52022-12-19
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 could be vulnerable to a Log Injection attack by constructing URLs from user-controlled data. This could enable attackers to make arbitrary requests to the internal network or to the local f…
- CVE-2022-0741HIGHCVSS 5.8EG 7.52022-04-01
Improper input validation in all versions of GitLab CE/EE using sendmail to send emails allowed an attacker to steal environment variables via specially crafted email addresses.
- CVE-2013-4547HIGHCVSS v2 7.5EG 7.52013-11-23
nginx 0.8.41 through 1.4.3 and 1.5.x before 1.5.7 allows remote attackers to bypass intended restrictions via an unescaped space character in a URI.
- CVE-2025-36254HIGHCVSS 7.4EG 7.42026-08-19
IBM System Storage DS8A00 10.1.3.0 through 10.11.35.0 and IBM DS8900F 89.40.83.0 through 89.44.25.0 could allow an attacker to bypass security authentication due to improperly encoding of DSCLI command output to obtain sensitive informatio…
- CVE-2024-47549HIGHCVSS 7.4EG 7.42024-10-25
Sharp and Toshiba Tec MFPs improperly process query parameters in HTTP requests, which may allow contamination of unintended data to HTTP response headers. Accessing a crafted URL which points to an affected product may cause malicious sc…
- CVE-2022-29258HIGHCVSS 7.4EG 7.42022-05-31
XWiki Platform Filter UI provides a generic user interface to convert from a XWiki Filter input stream to an output stream with settings for each stream. Starting with versions 6.0-milestone-2 and 5.4.4 and prior to versions 12.10.11, 14.0…
- CVE-2022-29252HIGHCVSS 7.4EG 7.42022-05-25
XWiki Platform Wiki UI Main Wiki is a package for managing subwikis. Starting with version 5.3-milestone-2, XWiki Platform Wiki UI Main Wiki contains a possible cross-site scripting vector in the `WikiManager.JoinWiki ` wiki page related t…
- CVE-2022-29251HIGHCVSS 7.4EG 7.42022-05-25
XWiki Platform Flamingo Theme UI is a tool that allows customization and preview of any Flamingo-based skin. Starting with versions 6.2.4 and 6.3-rc-1, a possible cross-site scripting vector is present in the `FlamingoThemesCode.WebHomeShe…
- CVE-2021-42324HIGHCVSS 7.4EG 7.42022-04-05
An issue was discovered on DCN (Digital China Networks) S4600-10P-SI devices before R0241.0470. Due to improper parameter validation in the console interface, it is possible for a low-privileged authenticated attacker to escape the sandbox…
Map vulnerabilities like CWE-116 to your infrastructure
EchelonGraph correlates every CVE — across CWE-116 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →