CWE-94— Improper Control of Generation of Code (Code Injection)
The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.— MITRE CWE catalog
7,127 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-94page 80 of 143
- CVE-2024-24525CRITICALCVSS 9.8EG 9.82024-02-29
An issue in EpointWebBuilder 5.1.0-sp1, 5.2.1-sp1, 5.4.1 and 5.4.2 allows a remote attacker to execute arbitrary code via the infoid parameter of the URL.
- CVE-2024-24707CRITICALCVSS 9.9EG 9.92024-04-03
Improper Control of Generation of Code ('Code Injection') vulnerability in Cwicly Builder, SL. Cwicly allows Code Injection.This issue affects Cwicly: from n/a through 1.4.0.2.
- CVE-2024-24780CRITICALCVSS 9.8EG 9.82025-05-14
Remote Code Execution with untrusted URI of UDF vulnerability in Apache IoTDB. The attacker who has privilege to create UDF can register malicious function from untrusted URI. This issue affects Apache IoTDB: from 1.0.0 before 1.3.4. U…
- CVE-2024-2497MEDIUMCVSS 4.7EG 4.72024-03-15
A vulnerability was found in RaspAP raspap-webgui 3.0.9 and classified as critical. This issue affects some unknown processing of the file includes/provider.php of the component HTTP POST Request Handler. The manipulation of the argument c…
- CVE-2024-25077CRITICALCVSS 9.8EG 9.82024-07-10
An issue was discovered on Renesas SmartBond DA14691, DA14695, DA14697, and DA14699 devices. The Nonce used for on-the-fly decryption of flash images is stored in an unsigned header, allowing its value to be modified without invalidating t…
- CVE-2024-25086HIGHCVSS 7.8EG 7.82024-07-02
Improper privilege management in Jungo WinDriver before 12.2.0 allows local attackers to escalate privileges and execute arbitrary code.
- CVE-2024-25089CRITICALCVSS 9.8EG 9.82024-02-04
Malwarebytes Binisoft Windows Firewall Control before 6.9.9.2 allows remote attackers to execute arbitrary code via gRPC named pipes.
- CVE-2024-25096CRITICALCVSS 10.0EG 10.02024-04-03
Improper Control of Generation of Code ('Code Injection') vulnerability in Canto Inc. Canto allows Code Injection.This issue affects Canto: from n/a through 3.0.7.
- CVE-2024-25110CRITICALCVSS 9.8EG 9.82024-02-12
The UAMQP is a general purpose C library for AMQP 1.0. During a call to open_get_offered_capabilities, a memory allocation may fail causing a use-after-free issue and if a client called it during connection communication it may cause a rem…
- CVE-2024-25180CRITICALCVSS 9.8EG 9.82024-02-29
An issue discovered in pdfmake 0.2.9 allows remote attackers to run arbitrary code via crafted POST request to the /pdf endpoint. NOTE: this is disputed because the behavior of the /pdf endpoint is intentional. The /pdf endpoint is only av…
- CVE-2024-25202MEDIUMCVSS 6.1EG 6.12024-02-28
Cross Site Scripting vulnerability in Phpgurukul User Registration & Login and User Management System 1.0 allows attackers to run arbitrary code via the search bar.
- CVE-2024-25249CRITICALCVSS 9.8EG 9.82024-02-21
An issue in He3 App for macOS version 2.0.17, allows remote attackers to execute arbitrary code via the RunAsNode and enableNodeClilnspectArguments settings.
- CVE-2024-25291CRITICALCVSS 9.8EG 9.82024-02-29
Deskfiler v1.2.3 allows attackers to execute arbitrary code via uploading a crafted plugin.
- CVE-2024-25293CRITICALCVSS 9.3EG 9.32024-03-01
mjml-app versions 3.0.4 and 3.1.0-beta were discovered to contain a remote code execution (RCE) via the href attribute.
- CVE-2024-25298HIGHCVSS 7.2EG 7.22024-02-17
An issue was discovered in REDAXO version 5.15.1, allows attackers to execute arbitrary code and obtain sensitive information via modules.modules.php.
- CVE-2024-25301HIGHCVSS 7.2EG 7.22024-02-14
Redaxo v5.15.1 was discovered to contain a remote code execution (RCE) vulnerability via the component /pages/templates.php.
- CVE-2024-25350CRITICALCVSS 9.8EG 9.82024-02-28
SQL Injection vulnerability in /zms/admin/edit-ticket.php in PHPGurukul Zoo Management System 1.0 via tickettype and tprice parameters.
- CVE-2024-25359MEDIUMCVSS 6.6EG 6.62024-03-21
An issue in zuoxingdong lagom v.0.1.2 allows a local attacker to execute arbitrary code via the pickle_load function of the serialize.py file.
- CVE-2024-25376HIGHCVSS 7.8EG 7.82024-04-11
An issue discovered in Thesycon Software Solutions Gmbh & Co. KG TUSBAudio MSI-based installers before 5.68.0 allows a local attacker to execute arbitrary code via the msiexec.exe repair mode.
- CVE-2024-25415HIGHCVSS 7.2EG 7.22024-02-16
A remote code execution (RCE) vulnerability in /admin/define_language.php of CE Phoenix v1.0.8.20 allows attackers to execute arbitrary PHP code via injecting a crafted payload into the file english.php.
- CVE-2024-25502CRITICALCVSS 9.8EG 9.82024-02-15
Directory Traversal vulnerability in flusity CMS v.2.4 allows a remote attacker to execute arbitrary code and obtain sensitive information via the download_backup.php component.
- CVE-2024-25600CRITICALCVSS 10.0EG 10.02024-06-04
Improper Control of Generation of Code ('Code Injection') vulnerability in Codeer Limited Bricks Builder allows Code Injection.This issue affects Bricks Builder: from n/a through 1.9.6.
- CVE-2024-25624MEDIUMCVSS 6.8EG 6.82024-04-25
Iris is a web collaborative platform aiming to help incident responders sharing technical details during investigations. Due to an improper setup of Jinja2 environment, reports generation in `iris-web` is prone to a Server Side Template In…
- CVE-2024-25706MEDIUMCVSS 6.1EG 6.12024-04-04
There is an HTML injection vulnerability in Esri Portal for ArcGIS 11.0 and below that may allow a remote, unauthenticated attacker to craft a URL which, when clicked, could potentially generate a message that may entice an unsuspecting vi…
- CVE-2024-25713HIGHCVSS 8.6EG 8.62024-02-29
yyjson through 0.8.0 has a double free, leading to remote code execution in some cases, because the pool_free function lacks loop checks. (pool_free is part of the pool series allocator, along with pool_malloc and pool_realloc.)
- CVE-2024-25918CRITICALCVSS 9.9EG 9.92024-04-03
Improper Control of Generation of Code ('Code Injection') vulnerability in InstaWP InstaWP Connect instawp-connect.This issue affects InstaWP Connect: from n/a through <= 0.1.0.8.
- CVE-2024-2610MEDIUMCVSS 6.1EG 6.12024-03-19
Using a markup injection an attacker could have stolen nonce values. This could have been used to bypass strict content security policies. This vulnerability affects Firefox < 124, Firefox ESR < 115.9, and Thunderbird < 115.9.
- CVE-2024-26362HIGHCVSS 8.8EG 8.82024-04-10
HTML injection vulnerability in Enpass Password Manager Desktop Client 6.9.2 for Windows and Linux allows attackers to run arbitrary HTML code via creation of crafted note.
- CVE-2024-26483HIGHCVSS 8.8EG 8.82024-02-22
An arbitrary file upload vulnerability in the Profile Image module of Kirby CMS v4.1.0 allows attackers to execute arbitrary code via a crafted PDF file.
- CVE-2024-27191HIGHCVSS 8.5EG 8.52024-04-03
Improper Control of Generation of Code ('Code Injection') vulnerability in inpersttion Slivery Extender slivery-extender allows Remote Code Inclusion.This issue affects Slivery Extender: from n/a through <= 1.0.2.
- CVE-2024-27476MEDIUMCVSS 4.7EG 4.72024-04-10
Leantime 3.0.6 is vulnerable to HTML Injection via /dashboard/show#/tickets/newTicket.
- CVE-2024-27622HIGHCVSS 7.2EG 7.22024-03-05
A remote code execution vulnerability has been identified in the User Defined Tags module of CMS Made Simple version 2.2.19 / 2.2.21. This vulnerability arises from inadequate sanitization of user-supplied input in the 'Code' section of th…
- CVE-2024-27627MEDIUMCVSS 6.1EG 6.12024-03-05
A reflected cross-site scripting (XSS) vulnerability exists in SuperCali version 1.1.0, allowing remote attackers to execute arbitrary JavaScript code via the email parameter in the bad_password.php page.
- CVE-2024-27705HIGHCVSS 7.6EG 7.62024-04-03
Cross Site Scripting vulnerability in Leantime v3.0.6 allows attackers to execute arbitrary code via upload of crafted PDF file to the files/browse endpoint.
- CVE-2024-27756HIGHCVSS 8.8EG 8.82024-03-15
GLPI through 10.0.12 allows CSV injection by an attacker who is able to create an asset with a crafted title.
- CVE-2024-27766MEDIUMCVSS 5.7EG 5.72024-10-17
An issue in MariaDB v.11.1 allows a remote attacker to execute arbitrary code via the lib_mysqludf_sys.so function. NOTE: this is disputed by the MariaDB Foundation because no privilege boundary is crossed.
- CVE-2024-27793HIGHCVSS 7.8EG 7.82024-05-14
The issue was addressed with improved checks. This issue is fixed in iTunes 12.13.2 for Windows. Parsing a file may lead to an unexpected app termination or arbitrary code execution.
- CVE-2024-27856HIGHCVSS 7.8EG 7.82025-01-15
The issue was addressed with improved checks. This issue is fixed in Safari 17.5, iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tvOS 17.5, visionOS 1.2, watchOS 10.5. Processing a file may lead to unexpected ap…
- CVE-2024-27857HIGHCVSS 7.8EG 7.82024-06-10
An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tvOS 17.5, visionOS 1.2. A remote attacker may be able to cause unexpected app termination or ar…
- CVE-2024-27859HIGHCVSS 8.8EG 8.82025-02-10
The issue was addressed with improved memory handling. This issue is fixed in iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4, tvOS 17.4, visionOS 1.1, watchOS 10.4. Processing web content may lead to arbitrary code execution.
- CVE-2024-27972CRITICALCVSS 9.9EG 9.92024-04-03
Improper Control of Generation of Code ('Code Injection') vulnerability in Jack Arturo WP Fusion Lite wp-fusion-lite.This issue affects WP Fusion Lite: from n/a through <= 3.41.24.
- CVE-2024-28005MEDIUMCVSS 4.7EG 4.72024-03-28
Aterm WG1800HP4, WG1200HS3, WG1900HP2, WG1200HP3, WG1800HP3, WG1200HS2, WG1900HP, WG1200HP2, W1200EX(-MS), WG1200HS, WG1200HP, WF300HP2, W300P, WF800HP, WR8165N, WG2200HP, WF1200HP2, WG1800HP2, WF1200HP, WG600HP, WG300HP, WF300HP, WG1800HP…
- CVE-2024-28116HIGHCVSS 8.8EG 8.82024-03-21
Grav is an open-source, flat-file content management system. Grav CMS prior to version 1.7.45 is vulnerable to a Server-Side Template Injection (SSTI), which allows any authenticated user (editor permissions are sufficient) to execute arbi…
- CVE-2024-28117HIGHCVSS 8.8EG 8.82024-03-21
Grav is an open-source, flat-file content management system. Prior to version 1.7.45, Grav validates accessible functions through the Utils::isDangerousFunction function, but does not impose restrictions on twig functions like twig_array_m…
- CVE-2024-28118HIGHCVSS 8.8EG 8.82024-03-21
Grav is an open-source, flat-file content management system. Prior to version 1.7.45, due to the unrestricted access to twig extension class from Grav context, an attacker can redefine config variable. As a result, attacker can bypass a pr…
- CVE-2024-28119HIGHCVSS 8.8EG 8.82024-03-21
Grav is an open-source, flat-file content management system. Prior to version 1.7.45, due to the unrestricted access to twig extension class from grav context, an attacker can redefine the escape function and execute arbitrary commands. Tw…
- CVE-2024-28253CRITICALCVSS 9.4EG 9.42024-03-15
OpenMetadata is a unified platform for discovery, observability, and governance powered by a central metadata repository, in-depth lineage, and seamless team collaboration. `CompiledRule::validateExpression` is also called from `PolicyRepo…
- CVE-2024-28386CRITICALCVSS 9.8EG 9.82024-03-25
An issue in Home-Made.io fastmagsync v.1.7.51 and before allows a remote attacker to execute arbitrary code via the getPhpBin() component.
- CVE-2024-28396HIGHCVSS 7.5EG 7.52024-03-20
An issue in MyPrestaModules ordersexport v.6.0.2 and before allows a remote attacker to execute arbitrary code via the download.php component.
- CVE-2024-28397HIGHCVSS 5.3EG 8.82024-06-20
An issue in the component js2py.disable_pyimport() of js2py up to v0.74 allows attackers to execute arbitrary code via a crafted API call.
Map vulnerabilities like CWE-94 to your infrastructure
EchelonGraph correlates every CVE — across CWE-94 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →