CWE-116
High likelihoodImproper Encoding or Escaping of Output
The product prepares a structured message for communication with another component, but encoding or escaping of the data is either missing or done incorrectly. As a result, the intended structure of the message is not preserved.
414 vulnerabilities with CWE-116
CVE-2024-28245
MEDIUM
KaTeX <0.16.10 - RCE
CVSS 6.3
CVE-2024-29156
MEDIUM
OpenStack Murano <16.0.0 - Info Disclosure
CVSS 6.5
CVE-2024-27938
MEDIUM
Postal <3.0.0 - SMTP Smuggling
CVSS 5.3
CVE-2024-21499
MEDIUM
github.com/greenpau/caddy-security - HTTP Header Injection
CVSS 4.3
CVE-2024-0690
MEDIUM
Ansible-core - Info Disclosure
CVSS 5.0
CVE-2024-1064
HIGH
Craftycontrol Crafty Controller < 4.2.2 - Denial of Service
CVSS 7.5
CVE-2024-0987
MEDIUM
Sichuan Yougou Technology KuERP <1.0.4 - Info Disclosure
CVSS 6.3
CVE-2024-22229
LOW
Dell Unity <5.4 - Info Disclosure
CVSS 3.1
CVE-2024-0233
MEDIUM
Eventon < 2.2.7 - XSS
CVSS 6.1
CVE-2024-22199
CRITICAL
Fiber Views - XSS
CVSS 9.3
CVE-2023-35894
MEDIUM
IBM Control Center <6.3.1 - SSRF
CVSS 5.4
CVE-2023-28362
MEDIUM
Rails - Open Redirect
CVSS 4.0
CVE-2023-45359
MEDIUM
MediaWiki <1.39.5-1.40.1 - XSS
CVSS 6.5
CVE-2023-26289
MEDIUM
IBM Aspera Orchestrator 4.0.1 - HTTP Header Injection
CVSS 5.4
CVE-2023-28952
MEDIUM
IBM Cognos Controller <11.0.0 - Command Injection
CVSS 5.3
CVE-2023-47143
CRITICAL
IBM Tivoli Application Dependency Discovery Manager < 7.3.0.11 - XSS
CVSS 10.0
CVE-2023-28738
HIGH
Intel NUC BIOS <JY0070 - Privilege Escalation
CVSS 7.5
CVE-2023-7234
MEDIUM
OPCUAServerToolkit - Info Disclosure
CVSS 5.3
CVE-2023-6005
MEDIUM
EventON WordPress plugin <4.5.5-2.2.7 - XSS
CVSS 4.8
CVE-2023-52102
HIGH
WMS - Info Disclosure
CVSS 7.5
CVE-2023-52098
HIGH
DMS - DoS
CVSS 7.5
CVE-2023-42183
MEDIUM
lockss-daemon <1.77.3 - Auth Bypass
CVSS 5.3
CVE-2023-45539
HIGH
HAProxy <2.8.2 - Info Disclosure
CVSS 8.2
CVE-2023-26279
LOW
IBM QRadar WinCollect Agent <10.1.7 - Privilege Escalation
CVSS 3.3
CVE-2023-38316
CRITICAL
OpenNDS Captive Portal <10.1.2 - Command Injection
CVSS 9.8
Details
Vulnerabilities
414
Exploit Likelihood
High