CWE-116

High likelihood

Improper Encoding or Escaping of Output

Parent: CWE-707 - Improper Neutralization

The product prepares a structured message for communication with another component, but encoding or escaping of the data is either missing or done incorrectly. As a result, the intended structure of the message is not preserved.

482 vulnerabilities with CWE-116
CVE-2026-35582 HIGH
Emissary <8.43.0 Executrix File Endings - OS Command Injection
CVSS 8.8
CVE-2026-40593 MEDIUM
ChurchCRM: Stored XSS in UserEditor.php via Login Name Field
CVSS 4.8
CVE-2026-40483 MEDIUM
ChurchCRM: Stored XSS in PledgeEditor.php via Donation Comment Field
CVSS 5.4
CVE-2026-40302 MEDIUM
zrok has reflected XSS in GitHub OAuth callback via unsanitized refreshInterval error rendering
CVSS 6.1
CVE-2026-33436 LOW
Stirling-PDF: Reflected XSS through crafted filename in file upload functionality
CVSS 3.1
CVE-2026-35569 HIGH
ApostropheCMS: Stored XSS in SEO Fields Leads to Authenticated API Data Exposure in ApostropheCMS
CVSS 8.7
CVE-2026-20136 MEDIUM
Cisco Identity Services Engine Authenticated Privilege Escalation Vulnerability
CVSS 6.0
CVE-2026-2404 MEDIUM
Schneider Electric PowerChute Serial Shutdown <=1.4 - Log Injection
CVSS 5.3
CVE-2026-33657 MEDIUM
EspoCRM: Stored HTML injection in email notifications about stream notes via unescaped post field
CVSS 4.6
CVE-2026-40023 MEDIUM
Apache Log4cxx, Apache Log4cxx (Conan), Apache Log4cxx (Brew): Silent log event loss in XMLLayout due to unescaped XML 1.0 forbidden characters
CVSS 5.3
CVE-2026-40021 MEDIUM
Apache Log4net: Silent log event loss in XmlLayout and XmlLayoutSchemaLog4J due to unescaped XML 1.0 forbidden characters
CVSS 5.3
CVE-2026-34481 HIGH
Apache Log4j JSON Template Layout: Improper serialization of non-finite floating-point values in JsonTemplateLayout
CVSS 7.5
CVE-2026-34480 HIGH
Apache Log4j Core: Silent log event loss in XmlLayout due to unescaped XML 1.0 forbidden characters
CVSS 7.5
CVE-2026-34479 HIGH
Apache Log4j 1 to Log4j 2 bridge: Silent log event loss in Log4j1XmlLayout due to unescaped XML 1.0 forbidden characters
CVSS 7.5
CVE-2026-34483 HIGH
Apache Tomcat: Incomplete escaping of JSON access logs
CVSS 7.5
CVE-2026-35534 HIGH
ChurchCRM has Stored XSS in PersonView.php via Facebook Field Attribute Injection
CVSS 7.6
CVE-2026-35208 MEDIUM
lichess.org Stream Titles - HTML Injection
CVSS 5.4
CVE-2026-26027 HIGH
GLPI 11.0.0-11.0.5 Inventory - Unauthenticated Stored Cross-Site Scripting
CVSS 7.5
CVE-2026-25932 HIGH
GLPI has Stored XSS in Supplier 'Website' field
CVSS 7.2
CVE-2026-33941 HIGH
Handlebars.js has JavaScript Injection in CLI Precompiler via Unescaped Names and Options
CVSS 8.2
CVE-2026-33758 MEDIUM
OpenBao has Reflected XSS in its OIDC authentication error message
CVSS 6.1
CVE-2026-33628 MEDIUM
Invoice Ninja Denylist Bypass may Lead to Stored XSS via Invoice Line Items
CVSS 5.4
CVE-2026-32986 MEDIUM
Textpattern CMS 4.9.0: Second-Order XSS via Atom Feed Injection
CVSS 6.1
CVE-2026-32811 HIGH
Heimdall: Path received via Envoy gRPC corrupted when containing query string
CVSS 8.2
CVE-2026-29106 MEDIUM
SuiteCRM has blind XSS in return_id parameter
CVSS 5.9
Details
Vulnerabilities 482
Exploit Likelihood High