Vulnerabilities > Failure to Sanitize Special Elements into a Different Plane (Special Element Injection)

DATE CVE VULNERABILITY TITLE RISK
2024-10-17 CVE-2024-9940 The Calculated Fields Form plugin for WordPress is vulnerable to HTML Injection in all versions up to, and including, 5.2.45.
network
low complexity
CWE-75
5.3
2023-04-05 CVE-2023-1758 Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) vulnerability in PHPmyfaq
Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) in GitHub repository thorsten/phpmyfaq prior to 3.1.12.
network
low complexity
phpmyfaq CWE-75
5.4
2022-12-27 CVE-2022-4721 Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) vulnerability in Ikus-Soft Rdiffweb
Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) in GitHub repository ikus060/rdiffweb prior to 2.5.5.
network
low complexity
ikus-soft CWE-75
5.4
2021-08-28 CVE-2021-39174 Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) vulnerability in Catchethq Catchet
Cachet is an open source status page system.
network
low complexity
catchethq CWE-75
8.8