CWE-94— Improper Control of Generation of Code (Code Injection)
The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.— MITRE CWE catalog
7,126 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-94page 74 of 143
- CVE-2023-6553CRITICALCVSS 9.8EG 9.82023-12-15
The Backup Migration plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 1.3.7 via the /includes/backup-heart.php file. This is due to an attacker being able to control the values passed to an …
- CVE-2023-6601MEDIUMCVSS 4.7EG 4.72025-01-06
A flaw was found in FFmpeg's HLS demuxer. This vulnerability allows bypassing unsafe file extension checks and triggering arbitrary demuxers via base64-encoded data URIs appended with specific file extensions.
- CVE-2023-6604MEDIUMCVSS 5.3EG 5.32025-01-06
A flaw was found in FFmpeg. This vulnerability allows unexpected additional CPU load and storage consumption, potentially leading to degraded performance or denial of service via the demuxing of arbitrary data as XBIN-formatted data withou…
- CVE-2023-6691HIGHCVSS 7.8EG 7.82023-12-18
Cambium ePMP Force 300-25 version 4.7.0.1 is vulnerable to a code injection vulnerability that could allow an attacker to perform remote code execution and gain root privileges.
- CVE-2023-6743HIGHCVSS 8.8EG 8.82024-05-29
The Unlimited Elements For Elementor (Free Widgets, Addons, Templates) plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 1.5.89 via the template import functionality. This makes it possible f…
- CVE-2023-6846HIGHCVSS 8.8EG 8.82024-02-05
The File Manager Pro plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 8.3.4 via the mk_check_filemanager_php_syntax AJAX function. This makes it possible for authenticated attackers, with su…
- CVE-2023-6851CRITICALCVSS 9.8EG 9.82023-12-16
A vulnerability was found in kalcaddle KodExplorer up to 4.51.03. It has been rated as critical. This issue affects the function unzipList of the file plugins/zipView/app.php of the component ZIP Archive Handler. The manipulation leads to …
- CVE-2023-6886CRITICALCVSS 9.8EG 9.82023-12-17
A vulnerability was found in xnx3 wangmarket 6.1. It has been rated as critical. Affected by this issue is some unknown functionality of the component Role Management Page. The manipulation leads to code injection. The attack may be launch…
- CVE-2023-6899CRITICALCVSS 9.8EG 9.82023-12-17
A vulnerability classified as problematic was found in rmountjoy92 DashMachine 0.5-4. Affected by this vulnerability is an unknown functionality of the file /settings/save_config of the component Config Handler. The manipulation of the arg…
- CVE-2023-6996HIGHCVSS 8.8EG 8.82024-02-05
The Display custom fields in the frontend – Post and User Profile Fields plugin for WordPress is vulnerable to Code Injection via the plugin's vg_display_data shortcode in all versions up to, and including, 1.2.1 due to insufficient inpu…
- CVE-2023-7035MEDIUMCVSS 5.4EG 5.42023-12-21
A vulnerability was found in automad up to 1.10.9 and classified as problematic. Affected by this issue is some unknown functionality of the file packages\standard\templates\post.php of the component Setting Handler. The manipulation of th…
- CVE-2023-7101CRITICALCVSS 7.8EG 9.0⚠ KEV2023-12-24
Spreadsheet::ParseExcel version 0.65 is a Perl module used for parsing Excel files. Spreadsheet::ParseExcel is vulnerable to an arbitrary code execution (ACE) vulnerability due to passing unvalidated input from a file into a string-type ��…
- CVE-2023-7148HIGHCVSS 8.1EG 8.12023-12-29
A vulnerability has been found in ShifuML shifu 0.12.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file src/main/java/ml/shifu/shifu/core/DataPurifier.java of the component Java Expression …
- CVE-2023-7224HIGHCVSS 7.8EG 7.82024-01-08
OpenVPN Connect version 3.0 through 3.4.6 on macOS allows local users to execute code in external third party libraries using the DYLD_INSERT_LIBRARIES environment variable
- CVE-2023-7303LOWCVSS 3.5EG 3.52025-05-07
A vulnerability, which was classified as problematic, was found in q2apro q2apro-on-site-notifications up to 1.4.6. This affects the function process_request of the file q2apro-onsitenotifications-page.php. The manipulation leads to cross …
- CVE-2024-0004CRITICALCVSS 9.1EG 9.12024-09-23
A condition exists in FlashArray Purity whereby an user with array admin role can execute arbitrary commands remotely to escalate privilege on the array.
- CVE-2024-0195CRITICALCVSS 9.8EG 9.82024-01-02
A vulnerability, which was classified as critical, was found in spider-flow 0.4.3. Affected is the function FunctionService.saveFunction of the file src/main/java/org/spiderflow/controller/FunctionController.java. The manipulation leads to…
- CVE-2024-0196HIGHCVSS 8.8EG 8.82024-01-02
A vulnerability has been found in Magic-Api up to 2.0.1 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /resource/file/api/save?auto=1. The manipulation leads to code injection. The attack…
- CVE-2024-0220HIGHCVSS 8.3EG 8.32024-02-22
B&R Automation Studio Upgrade Service and B&R Technology Guarding use insufficient cryptography for communication to the upgrade and the licensing servers. A network-based attacker could exploit the vulnerability to execute arbitrary code …
- CVE-2024-0252CRITICALCVSS 8.8EG 9.92024-01-11
ManageEngine ADSelfService Plus versions 6401 and below are vulnerable to the remote code execution due to the improper handling in the load balancer component. Authentication is required in order to exploit this vulnerability.
- CVE-2024-0325LOWCVSS 3.6EG 3.62024-02-01
In Helix Sync versions prior to 2024.1, a local command injection was identified. Reported by Bryan Riggins.
- CVE-2024-0400HIGHCVSS 7.5EG 7.52024-03-27
SCM Software is a client and server application. An Authenticated System manager client can execute LINQ query in the SCM server, for customized filtering. An Authenticated malicious client can send a specially crafted code to skip the val…
- CVE-2024-0521HIGHCVSS 7.8EG 7.82024-01-20
Code Injection in paddlepaddle/paddle
- CVE-2024-0738MEDIUMCVSS 6.3EG 6.32024-01-19
A vulnerability, which was classified as critical, has been found in 个人开源 mldong 1.0. This issue affects the function ExpressionEngine of the file com/mldong/modules/wf/engine/model/DecisionModel.java. The manipulation leads to cod…
- CVE-2024-0755HIGHCVSS 8.8EG 8.82024-01-23
Memory safety bugs present in Firefox 121, Firefox ESR 115.6, and Thunderbird 115.6. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary co…
- CVE-2024-0866HIGHCVSS 8.1EG 8.12024-03-26
The Check & Log Email plugin for WordPress is vulnerable to Unauthenticated Hook Injection in all versions up to, and including, 1.0.9 via the check_nonce function. This makes it possible for unauthenticated attackers to execute actions wi…
- CVE-2024-0867HIGHCVSS 8.1EG 8.12024-05-24
The Email Log plugin for WordPress is vulnerable to Unauthenticated Hook Injection in all versions up to, and including, 2.4.8 via the check_nonce function. This makes it possible for unauthenticated attackers to execute actions with hooks…
- CVE-2024-0917CRITICALCVSS 9.8EG 9.82024-03-07
remote code execution in paddlepaddle/paddle 2.6.0
- CVE-2024-10001HIGHCVSS 7.1EG 7.12025-01-29
A Code Injection vulnerability was identified in GitHub Enterprise Server that allowed attackers to inject malicious code into the query selector via the identity property in the message handling function. This enabled the exfiltration of…
- CVE-2024-10035CRITICALCVSS 9.8EG 9.82024-11-04
Improper Control of Generation of Code ('Code Injection'), Improper Neutralization of Special Elements used in a Command ('Command Injection'), Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vuln…
- CVE-2024-10073MEDIUMCVSS 5.0EG 5.02024-10-17
A vulnerability, which was classified as critical, was found in flairNLP flair 0.14.0. Affected is the function ClusteringModel of the file flair\models\clustering.py of the component Mode File Loader. The manipulation leads to code inject…
- CVE-2024-10094CRITICALCVSS 9.1EG 9.12024-11-20
Pega Platform versions 6.x to Infinity 24.1.1 are affected by an issue with Improper Control of Generation of Code
- CVE-2024-10131CRITICALCVSS 8.8EG 9.82024-10-19
The `add_llm` function in `llm_app.py` in infiniflow/ragflow version 0.11.0 contains a remote code execution (RCE) vulnerability. The function uses user-supplied input `req['llm_factory']` and `req['llm_name']` to dynamically instantiate c…
- CVE-2024-1015CRITICALCVSS 9.8EG 9.82024-01-29
Remote command execution vulnerability in SE-elektronic GmbH E-DDC3.3 affecting versions 03.07.03 and higher. An attacker could send different commands from the operating system to the system via the web configuration functionality of the …
- CVE-2024-10252HIGHCVSS 7.2EG 8.82025-03-20
A vulnerability in langgenius/dify versions <=v0.9.1 allows for code injection via internal SSRF requests in the Dify sandbox service. This vulnerability enables an attacker to execute arbitrary Python code with root privileges within the …
- CVE-2024-10261HIGHCVSS 7.3EG 7.32024-11-09
The The Paid Membership Subscriptions – Effortless Memberships, Recurring Payments & Content Restriction plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 2.13.0. This is due to the…
- CVE-2024-10262MEDIUMCVSS 6.3EG 6.32024-11-16
The The Drop Shadow Boxes plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 1.7.14. This is due to the software allowing users to execute an action that does not properly validate a v…
- CVE-2024-10263HIGHCVSS 7.3EG 7.32024-11-05
The Tickera – WordPress Event Ticketing plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 3.5.4.4. This is due to the software allowing users to execute an action that does not prop…
- CVE-2024-10382HIGHCVSS 7.5EG 7.52024-11-20
There exists a code execution vulnerability in the Car App Android Jetpack Library. CarAppService uses deserialization logic that allows construction of arbitrary java classes. This can lead to arbitrary code execution when combined with s…
- CVE-2024-10505MEDIUMCVSS 6.3EG 6.32024-10-30
A vulnerability was found in wuzhicms 4.1.0. It has been classified as critical. Affected is the function add/edit of the file www/coreframe/app/content/admin/block.php. The manipulation leads to code injection. It is possible to launch th…
- CVE-2024-10572HIGHCVSS 7.5EG 7.52025-03-20
In h2oai/h2o-3 version 3.46.0.1, the `run_tool` command exposes classes in the `water.tools` package through the `ast` parser. This includes the `XGBoostLibExtractTool` class, which can be exploited to shut down the server and write large …
- CVE-2024-10640HIGHCVSS 7.3EG 7.32024-11-09
The The FOX – Currency Switcher Professional for WooCommerce plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 1.4.2.2. This is due to the software allowing users to execute an acti…
- CVE-2024-10644CRITICALCVSS 9.1EG 9.12025-02-11
Code injection in Ivanti Connect Secure before version 22.7R2.4 and Ivanti Policy Secure before version 22.7R1.3 allows a remote authenticated attacker with admin privileges to achieve remote code execution.
- CVE-2024-10681MEDIUMCVSS 6.3EG 6.32024-12-06
The The ARMember – Membership Plugin, Content Restriction, Member Levels, User Profile & User signup plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 4.0.51. This is due to the sof…
- CVE-2024-10761MEDIUMCVSS 4.3EG 4.32024-11-04
A vulnerability was found in Umbraco CMS up to 10.7.7/12.3.6/13.5.2/14.3.1/15.1.1. It has been classified as problematic. Affected is an unknown function of the file /Umbraco/preview/frame?id{} of the component Dashboard. The manipulation …
- CVE-2024-10771HIGHCVSS 8.8EG 8.82024-12-06
Due to missing input validation during one step of the firmware update process, the product is vulnerable to remote code execution. With network access and the user level ”Service”, an attacker can execute arbitrary system commands in …
- CVE-2024-10899HIGHCVSS 7.3EG 7.32024-11-20
The The WooCommerce Product Table Lite plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 3.8.6. This is due to the software allowing users to execute an action that does not properly …
- CVE-2024-10909MEDIUMCVSS 6.3EG 6.32024-12-06
The The Pojo Forms plugin for WordPress is vulnerable to arbitrary shortcode execution via form_preview_shortcode AJAX action in all versions up to, and including, 1.4.7. This is due to the software allowing users to execute an action that…
- CVE-2024-10910HIGHCVSS 7.3EG 7.32024-12-12
The The Grid Plus – Unlimited grid layout plugin for WordPress is vulnerable to arbitrary shortcode execution via grid_plus_load_by_category AJAX action in all versions up to, and including, 1.3.5. This is due to the software allowing us…
- CVE-2024-10950HIGHCVSS 8.8EG 8.82025-03-20
In binary-husky/gpt_academic version <= 3.83, the plugin `CodeInterpreter` is vulnerable to code injection caused by prompt injection. The root cause is the execution of user-provided prompts that generate untrusted code without a sandbox,…
Map vulnerabilities like CWE-94 to your infrastructure
EchelonGraph correlates every CVE — across CWE-94 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →