CWE-20

High likelihood

Improper Input Validation

Parent: CWE-707 - Improper Neutralization

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.

12,423 vulnerabilities with CWE-20
CVE-2026-49840 CRITICAL
FreeSWITCH: Pre-authentication heap buffer overflow in libesl `Content-Length` parsing
CVSS 9.1
CVE-2026-49475 HIGH
FreeSWITCH: Out-of-bounds memory access in core STUN attribute parsing
CVSS 7.5
CVE-2026-48569 HIGH
Visual Studio Code Security Feature Bypass Vulnerability
CVSS 7.1
CVE-2026-48289 LOW
Adobe Experience Manager | Improper Input Validation (CWE-20)
CVSS 3.5
CVE-2026-48288 LOW
Adobe Experience Manager | Improper Input Validation (CWE-20)
CVSS 3.5
CVE-2026-47641 MEDIUM
Microsoft SharePoint Server Spoofing Vulnerability
CVSS 4.6
CVE-2026-45642 LOW
Microsoft Azure Attestation service and Device Health Attestation Service Spoofing Vulnerability
CVSS 3.9
CVE-2026-45636 HIGH
Microsoft Windows 10 Version 1607 - Windows NTFS Remote Code Execution Vulnerability
CVSS 7.8
CVE-2026-44811 HIGH
Microsoft Windows 11 version 26H1 - Windows DWM Core Library Elevation of Privilege Vulnerability
CVSS 7.8
CVE-2026-40376 HIGH
Visual Studio Code Elevation of Privilege Vulnerability
CVSS 7.5
CVE-2026-0419 MEDIUM
NETGEAR JR6150 - Local WiFi OS Command Injection
CVE-2026-0417 MEDIUM
Insufficient input validation in certain NETGEAR routers
CVE-2026-0416 MEDIUM
RAXE450 and RAXE500 routers allow administrators to modify router functionality beyond intended limits
CVE-2026-0415 MEDIUM
NETGEAR Orbi Routers - Authenticated Unauthorized Software Modification
CVE-2026-0412 MEDIUM
NETGEAR JR6150 Web UI - Authenticated Unauthorized Software Modification
CVE-2026-0410 LOW
Insufficient input validation in certain NETGEAR routers
CVE-2026-11701 MEDIUM
Google Chrome - Improper Input Validation
CVSS 5.4
CVE-2026-11697 CRITICAL
Google Chrome - Improper Input Validation
CVSS 9.6
CVE-2026-11691 LOW
Google Chrome - Improper Input Validation
CVSS 3.1
CVE-2026-11689 HIGH
Google Chrome - Improper Input Validation
CVSS 8.1
CVE-2026-11686 LOW
Google Chrome - Improper Input Validation
CVSS 3.1
CVE-2026-11685 MEDIUM
Google Chrome < 149.0.7827.103 - Cross-Origin Data Leak via MediaCapture
CVSS 4.3
CVE-2026-11682 HIGH
Google Chrome - Improper Input Validation
CVSS 8.3
CVE-2026-11676 HIGH
Google Chrome - Improper Input Validation
CVSS 8.3
CVE-2026-11675 LOW
Google Chrome - Improper Input Validation
CVSS 3.1
Details
Vulnerabilities 12,423
Exploit Likelihood High