CWE-78
High likelihoodImproper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
The product constructs all or part of an OS command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended OS command when it is sent to a downstream component.
6,223 vulnerabilities with CWE-78
CVE-2026-48163
HIGH
MariaDB: wsrep SST unsafe parameter handling on the donor side (rsync)
CVSS 8.0
CVE-2026-44170
CRITICAL
MariaDB: Argument injection in CONNECT REST Xcurl on Windows via unsanitized URL
CVSS 9.8
CVE-2026-44168
HIGH
MariaDB: wsrep SST unsafe parameter handling on the donor side
CVSS 8.0
CVE-2026-11845
HIGH
IEI Integration Corp|iVEC-IEI Virtualization Edge Computer - OS Command Injection
CVSS 7.2
CVE-2026-42846
CRITICAL
ClipBucket: Remote Play URL Command Injection
CVSS 9.8
CVE-2026-45172
HIGH
Idira Privileged Session Manager for SSH (PSMP): Arbitrary Command Execution via Improper Neutralization of Special Elements used in an OS Command
CVSS 8.8
CVE-2026-48547
HIGH
KanaDojo < 0.1.18 Command Injection via patchNotesData.json in release.yml
CVSS 7.3
CVE-2026-49261
CRITICAL
MariaDB server has unsafe parameter handling in `wsrep_notify_cmd`
CVSS 10.0
CVE-2026-49219
MEDIUM
ImageMagick: Policy Bypass can read disallowed files
CVSS 5.5
CVE-2026-42563
HIGH
Dulwich Vulnerable to Command Injection via Merge Driver Path
CVE-2026-0273
HIGH
Palo Alto Networks Cloud Ngfw - Command Injection
CVSS 7.2
CVE-2026-6893
HIGH
Dracut: dracut: root code execution via dhcp options command injection
CVSS 7.5
CVE-2026-46643
HIGH
Snappy: Binary path is never shell-escaped due to an inverted is_executable check
CVE-2026-9151
HIGH
TP-Link Archer OpenVPN - Adjacent Authenticated OS Command Injection
CVE-2026-46618
MEDIUM
Fission builder accepts arbitrary buildcmd strings from Environment.spec.builder.command, allowing the builder pod to invoke arbitrary executables
CVE-2026-11417
HIGH
Aws Cloud Development Kit Library < 2.245.0 - Command Injection
CVSS 7.3
CVE-2026-45564
HIGH
Roxy-WI: Authenticated RCE via 'configver' URL parameter (os.system sink in /config/versions/.../save)
CVSS 8.8
CVE-2026-45558
CRITICAL
Roxy-WI: Authenticated RCE on every managed HAProxy load balancer via `option` field config injection in section save
CVSS 9.9
CVE-2026-45556
CRITICAL
Roxy-WI: Authenticated arbitrary file write on every managed load balancer (and downstream RCE) via WAF rule save `config_file_name`
CVSS 9.9
CVE-2026-24719
HIGH
QNAP Systems - QTS, QuTS Hero
CVSS 7.2
CVE-2026-22893
HIGH
QNAP Systems - QTS, QuTS Hero
CVSS 7.2
CVE-2026-49959
HIGH
Hermes WebUI < 0.51.311 RCE via Git Configuration Injection
CVSS 8.8
CVE-2026-38615
CRITICAL
DedeCMS V5.7.118 - OS Command Injection in file_manage_control.php
CVSS 9.8
CVE-2026-25089
CRITICAL
KEV
Fortinet FortiSandbox - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVSS 9.8
CVE-2026-10727
HIGH
Ivanti Endpoint Manager Mobile - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVSS 7.2
Details
Vulnerabilities
6,223
Exploit Likelihood
High