CWE-94— Improper Control of Generation of Code (Code Injection)
The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.— MITRE CWE catalog
7,136 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-94page 102 of 143
- CVE-2025-2710MEDIUMCVSS 4.3EG 4.32025-03-24
A vulnerability was found in Yonyou UFIDA ERP-NC 5.0 and classified as problematic. This issue affects some unknown processing of the file /menu.jsp. The manipulation of the argument flag leads to cross site scripting. The attack may be in…
- CVE-2025-2711MEDIUMCVSS 4.3EG 4.32025-03-24
A vulnerability was found in Yonyou UFIDA ERP-NC 5.0. It has been classified as problematic. Affected is an unknown function of the file /help/systop.jsp. The manipulation of the argument langcode leads to cross site scripting. It is possi…
- CVE-2025-2712MEDIUMCVSS 4.3EG 4.32025-03-24
A vulnerability was found in Yonyou UFIDA ERP-NC 5.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /help/top.jsp. The manipulation of the argument langcode leads to cross site …
- CVE-2025-2714MEDIUMCVSS 4.3EG 4.32025-03-24
A vulnerability was found in JoomlaUX JUX Real Estate 3.4.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /extensions/realestate/index.php/agents/agent-register/addagent. The manipulati…
- CVE-2025-2715LOWCVSS 3.5EG 3.52025-03-24
A vulnerability classified as problematic has been found in timschofield webERP up to 5.0.0.rc+13. This affects an unknown part of the file ConfirmDispatch_Invoice.php of the component Confirm Dispatch and Invoice Page. The manipulation of…
- CVE-2025-27218HIGHCVSS 5.3EG 7.62025-02-20
Sitecore Experience Manager (XM) and Experience Platform (XP) 10.4 before KB1002844 allow remote code execution through insecure deserialization.
- CVE-2025-27407CRITICALCVSS 9.0EG 9.02025-03-12
graphql-ruby is a Ruby implementation of GraphQL. Starting in version 1.11.5 and prior to versions 1.11.8, 1.12.25, 1.13.24, 2.0.32, 2.1.14, 2.2.17, and 2.3.21, loading a malicious schema definition in `GraphQL::Schema.from_introspection` …
- CVE-2025-27429CRITICALCVSS 9.9EG 9.92025-04-08
SAP S/4HANA allows an attacker with user privileges to exploit a vulnerability in the function module exposed via RFC. This flaw enables the injection of arbitrary ABAP code into the system, bypassing essential authorization checks. This v…
- CVE-2025-27554CRITICALCVSS 9.9EG 9.92025-03-01
ToDesktop before 2024-10-03, as used by Cursor before 2024-10-03 and other applications, allows remote attackers to execute arbitrary commands on the build server (e.g., read secrets from the desktopify config.prod.json file), and conseque…
- CVE-2025-27657CRITICALCVSS 9.8EG 9.82025-03-05
Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Remote Code Execution V-2023-008.
- CVE-2025-27678CRITICALCVSS 9.8EG 9.82025-03-05
Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Client Remote Code Execution V-2023-001.
- CVE-2025-2787HIGHCVSS 8.8EG 8.82025-03-26
KNIME Business Hub is affected by the Ingress-nginx CVE-2025-1974 ( a.k.a IngressNightmare ) vulnerability which affects the ingress-nginx component. In the worst case a complete takeover of the Kubernetes cluster is possible. Since the af…
- CVE-2025-27998HIGHCVSS 8.4EG 8.42025-05-21
An issue in Valvesoftware Steam Client Steam Client 1738026274 allows attackers to escalate privileges via a crafted executable or DLL.
- CVE-2025-2801HIGHCVSS 7.3EG 7.32025-04-26
The The Create custom forms for WordPress with a smart form plugin for smart businesses plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 1.2.4. This is due to the software allowing u…
- CVE-2025-2802HIGHCVSS 7.3EG 7.32025-05-06
The LayoutBoxx plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 0.3.1. This is due to the software allowing users to execute an action that does not properly validate a value before …
- CVE-2025-2803HIGHCVSS 7.3EG 7.32025-03-29
The So-Called Air Quotes plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 0.1. This is due to the software allowing users to execute an action that does not properly validate a value…
- CVE-2025-2805HIGHCVSS 7.3EG 7.32025-04-10
The ORDER POST plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 2.0.2. This is due to the software allowing users to execute an action that does not properly validate a value before …
- CVE-2025-2809HIGHCVSS 7.3EG 7.32025-04-10
The azurecurve Shortcodes in Comments plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 2.0.2. This is due to the software allowing users to execute an action that does not properly v…
- CVE-2025-28146CRITICALCVSS 9.8EG 9.82025-04-04
Edimax AC1200 Wave 2 Dual-Band Gigabit Router BR-6478AC V3 1.0.15 was discovered to contain a command injection vulnerability via fota_url in /boafrm/formLtefotaUpgradeQuectel
- CVE-2025-28201MEDIUMCVSS 6.8EG 6.82025-05-09
An issue in Victure RX1800 EN_V1.0.0_r12_110933 allows physically proximate attackers to execute arbitrary code or gain root access.
- CVE-2025-28203CRITICALCVSS 8.8EG 9.82025-05-09
Victure RX1800 EN_V1.0.0_r12_110933 was discovered to contain a command injection vulnerability.
- CVE-2025-28386CRITICALCVSS 9.8EG 9.82025-06-13
A remote code execution (RCE) vulnerability in the Plugin Management component of OpenC3 COSMOS v6.0.0 allows attackers to execute arbitrary code via uploading a crafted .txt file.
- CVE-2025-2867MEDIUMCVSS 4.4EG 4.42025-03-27
An issue has been discovered in the GitLab Duo with Amazon Q affecting all versions from 17.8 before 17.8.6, 17.9 before 17.9.3, and 17.10 before 17.10.1. A specifically crafted issue could manipulate AI-assisted development features to po…
- CVE-2025-2878LOWCVSS 2.4EG 2.42025-03-27
A vulnerability was found in Kentico CMS up to 13.0.178. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /CMSInstall/install.aspx of the component Additional Database Installation…
- CVE-2025-28893CRITICALCVSS 9.9EG 9.92025-03-26
Improper Control of Generation of Code ('Code Injection') vulnerability in Govind Visual Text Editor visual-text-editor allows Remote Code Inclusion.This issue affects Visual Text Editor: from n/a through <= 1.2.1.
- CVE-2025-28993HIGHCVSS 8.6EG 8.62025-06-27
Improper Control of Generation of Code ('Code Injection') vulnerability in Jose Mortellaro Content No Cache content-no-cache allows Code Injection.This issue affects Content No Cache: from n/a through <= 0.1.4.
- CVE-2025-29039HIGHCVSS 7.2EG 7.22025-04-17
An issue in dlink DIR 832x 240802 allows a remote attacker to execute arbitrary code via the function 0x41dda8
- CVE-2025-29058CRITICALCVSS 9.8EG 9.82025-04-18
An issue in Qimou CMS v.3.34.0 allows a remote attacker to execute arbitrary code via the upgrade.php component.
- CVE-2025-29064CRITICALCVSS 9.8EG 9.82025-04-03
An issue in TOTOLINK x18 v.9.1.0cu.2024_B20220329 allows a remote attacker to execute arbitrary code via the sub_410E54 function of the cstecgi.cgi.
- CVE-2025-29281HIGHCVSS 8.8EG 8.82025-04-15
In PerfreeBlog version 4.0.11, regular users can exploit the arbitrary file upload vulnerability in the attach component to upload arbitrary files and execute code within them.
- CVE-2025-29306CRITICALCVSS 9.8EG 9.82025-03-27
An issue in FoxCMS v.1.2.5 allows a remote attacker to execute arbitrary code via the case display page in the index.html component.
- CVE-2025-29401CRITICALCVSS 9.8EG 9.82025-03-19
An arbitrary file upload vulnerability in the component /views/plugin.php of emlog pro v2.5.7 allows attackers to execute arbitrary code via uploading a crafted PHP file.
- CVE-2025-2945CRITICALCVSS 9.9EG 9.92025-04-03
Remote Code Execution security vulnerability in pgAdmin 4 (Query Tool and Cloud Deployment modules). The vulnerability is associated with the 2 POST endpoints; /sqleditor/query_tool/download, where the query_commited parameter and /clo…
- CVE-2025-29629CRITICALCVSS 9.1EG 9.12025-07-25
Gardyn Home Kit firmware before master.619, Home Kit Mobile Application before 2.11.0, and Home Kit Cloud API before 2.12.2026 use weak default credentials for secure shell access. This may result in attackers gaining access to exposed Gar…
- CVE-2025-29631CRITICALCVSS 9.8EG 9.82025-07-25
Gardyn Home Kit firmware before master.619, Home Kit Mobile Application before 2.11.0, and Home Kit Cloud API before 2.12.2026 allow command injection through vulnerable methods that do not sanitize input before passing content to the oper…
- CVE-2025-29661HIGHCVSS 7.2EG 7.22025-04-17
Litepubl CMS <= 7.0.9 is vulnerable to RCE in admin/service/run.
- CVE-2025-29662CRITICALCVSS 9.8EG 9.82025-04-17
A RCE vulnerability in the core application in LandChat 3.25.12.18 allows an unauthenticated attacker to execute system code via remote network access.
- CVE-2025-2974LOWCVSS 3.5EG 3.52025-03-31
A vulnerability has been found in CodeCanyon Perfex CRM up to 3.2.1 and classified as problematic. This vulnerability affects unknown code of the file /contract of the component Contracts. The manipulation of the argument content leads to …
- CVE-2025-2975LOWCVSS 3.5EG 3.52025-03-31
A vulnerability was found in GFI KerioConnect 10.0.6 and classified as problematic. This issue affects some unknown processing of the file Settings/Email/Signature/EditHtmlSource of the component Signature Handler. The manipulation leads t…
- CVE-2025-2976LOWCVSS 3.5EG 3.52025-03-31
A vulnerability was found in GFI KerioConnect 10.0.6. It has been classified as problematic. Affected is an unknown function of the component File Upload. The manipulation leads to cross site scripting. It is possible to launch the attack …
- CVE-2025-2977LOWCVSS 3.5EG 3.52025-03-31
A vulnerability was found in GFI KerioConnect 10.0.6. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component PDF File Handler. The manipulation leads to cross site scripting. The at…
- CVE-2025-2979LOWCVSS 2.4EG 2.42025-03-31
A vulnerability classified as problematic has been found in WCMS 11. This affects an unknown part of the file /index.php?anonymous/setregister of the component Registration. The manipulation of the argument Username leads to cross site scr…
- CVE-2025-29806MEDIUMCVSS 6.5EG 6.52025-03-23
No cwe for this issue in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
- CVE-2025-29807HIGHCVSS 8.7EG 8.72025-03-21
Deserialization of untrusted data in Microsoft Dataverse allows an authorized attacker to execute code over a network.
- CVE-2025-2981LOWCVSS 3.5EG 3.52025-03-31
A vulnerability, which was classified as problematic, has been found in Legrand SMS PowerView 1.x. This issue affects some unknown processing. The manipulation of the argument redirect leads to cross site scripting. The attack may be initi…
- CVE-2025-29902CRITICALCVSS 10.0EG 10.02025-06-13
Remote code execution that allows unauthorized users to execute arbitrary code on the server machine.
- CVE-2025-30013MEDIUMCVSS 6.7EG 6.72025-04-08
SAP ERP BW Business Content is vulnerable to OS Command Injection through certain function modules. These function modules, when executed with elevated privileges, improperly handle user input, allowing attacker to inject arbitrary OS comm…
- CVE-2025-3004LOWCVSS 3.5EG 3.52025-03-31
A vulnerability has been found in Sayski ForestBlog up to 20250321 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /search. The manipulation of the argument keywords leads to cross site…
- CVE-2025-3005LOWCVSS 3.5EG 3.52025-03-31
A vulnerability was found in Sayski ForestBlog up to 20250321 and classified as problematic. Affected by this issue is some unknown functionality of the component Friend Link Handler. The manipulation leads to cross site scripting. The att…
- CVE-2025-30055CRITICALCVSS 9.0EG 9.02025-08-27
The "system" function receives untrusted input from the user. If the "EnableJSCaching" option is enabled, it is possible to execute arbitrary code provided as the "Module" parameter.
Map vulnerabilities like CWE-94 to your infrastructure
EchelonGraph correlates every CVE — across CWE-94 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →