CWE-78
High likelihoodImproper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
The product constructs all or part of an OS command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended OS command when it is sent to a downstream component.
6,220 vulnerabilities with CWE-78
CVE-2026-15487
MEDIUM
TRENDnet TEW-821DAP Firmware Update system_ntp sub_41FBD0 os command injection
CVSS 6.3
CVE-2026-15486
MEDIUM
TRENDnet TEW-821DAP Firmware Update tools_ddns sub_42026C os command injection
CVSS 6.3
CVE-2026-15485
MEDIUM
TRENDnet TEW-821DAP DNS Lookup tools_nslookup sub_43F2C4 os command injection
CVSS 6.3
CVE-2026-54149
HIGH
MaxKB MCP tool import validation bypass allows post-authentication remote code execution
CVSS 8.8
CVE-2026-61434
HIGH
PraisonAI before 4.6.78 Allowlist Bypass via find -exec
CVSS 8.8
CVE-2026-56688
CRITICAL
Dell PowerFlex Manager - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVSS 9.1
CVE-2026-41880
CRITICAL
OS Command Injection in R-SOFT DMS
CVE-2026-41876
HIGH
OS Command Injection in R-SOFT DMS
CVE-2026-0286
HIGH
Palo Alto Networks Cloud Ngfw - Command Injection
CVSS 7.2
CVE-2026-59734
HIGH
Coolify: OS Command Injection in Health Check Configuration Allows Remote Code Execution
CVSS 8.8
CVE-2026-59726
CRITICAL
Ruflo: Unauthenticated RCE in MCP bridge default docker-compose deployment
CVSS 10.0
CVE-2026-59721
HIGH
Hoppscotch: Admin RCE via MAILER_SMTP_URL nodemailer sendmail-transport injection
CVSS 7.2
CVE-2026-55420
HIGH
Discourse: Remote code execution via pdf uploads
CVSS 7.5
CVE-2026-58459
HIGH
gpsd gpsprof Command Injection via gnuplot plot title subtype field
CVSS 7.8
CVE-2026-15193
MEDIUM
AidanPark openclaw-android Android WebView Bridge JsBridge.kt os command injection
CVSS 5.3
CVE-2026-41857
HIGH
BOSH CLI Shell Injection
CVSS 7.8
CVE-2026-55849
HIGH
@cyclonedx/cyclonedx-npm: Shell Injection via Unsanitized `--workspace` Argument
CVE-2026-60102
HIGH
Horde VFS < 3.0.1 OS Command Injection via Horde_Vfs_Smb Driver
CVSS 8.8
CVE-2026-54344
MEDIUM
ToolJet GitHub Actions comment body shell injection exposes deployment secrets
CVSS 4.7
CVE-2026-24700
HIGH
Cisco RV130/RV130W <=1.0.3.55 & RV110W 1.2.2.5/8 Auth RCE via start_lltd Machine_Name
CVSS 7.2
CVE-2026-24699
HIGH
Cisco RV130, RV130W and RV110W - Authenticated OS Command Injection via lan_ipv6_prefixlen Parameter in rc Binary
CVSS 7.2
CVE-2026-24698
HIGH
Cisco RV130/RV130W <=1.0.3.55 & RV110W 1.2.2.5/8 - Auth OS Command Injection via save_syslog_to_file
CVSS 7.2
CVE-2026-24697
HIGH
Cisco RV130/RV130W <=1.0.3.55 & RV110W 1.2.2.5/8 Auth RCE via wan_hostname in start_bonjour()
CVSS 7.2
CVE-2026-15035
MEDIUM
bentoml OpenLLM Model Repository Directory Name common.py async_run_command command injection
CVSS 5.3
CVE-2026-15033
MEDIUM
christopherthielen check-peer-dependencies peerDependencies packageUtils.js shelljs.exec os command injection
CVSS 6.3
Details
Vulnerabilities
6,220
Exploit Likelihood
High