Vulnerabilities > Improper Control of Generation of Code ('Code Injection')

DATE CVE VULNERABILITY TITLE RISK
2023-12-17 CVE-2023-6886 Code Injection vulnerability in Wang.Market Wangmarket 6.1
A vulnerability was found in xnx3 wangmarket 6.1.
network
low complexity
wang-market CWE-94
critical
9.8
2023-12-16 CVE-2023-6851 Code Injection vulnerability in Kodcloud Kodexplorer
A vulnerability was found in kalcaddle KodExplorer up to 4.51.03.
network
low complexity
kodcloud CWE-94
critical
9.8
2023-12-15 CVE-2023-50721 Code Injection vulnerability in Xwiki
XWiki Platform is a generic wiki platform.
network
low complexity
xwiki CWE-94
8.8
2023-12-15 CVE-2023-50723 Code Injection vulnerability in Xwiki
XWiki Platform is a generic wiki platform.
network
low complexity
xwiki CWE-94
8.8
2023-12-15 CVE-2023-5512 Code Injection vulnerability in Gitlab
An issue has been discovered in GitLab CE/EE affecting all versions from 16.3 before 16.4.4, all versions starting from 16.5 before 16.5.4, all versions starting from 16.6 before 16.6.2.
network
low complexity
gitlab CWE-94
5.7
2023-12-15 CVE-2023-6051 Code Injection vulnerability in Gitlab
An issue has been discovered in GitLab CE/EE affecting all versions before 16.4.4, all versions starting from 16.5 before 16.5.4, all versions starting from 16.6 before 16.6.2.
network
low complexity
gitlab CWE-94
6.5
2023-12-15 CVE-2023-48390 Code Injection vulnerability in Multisuns Easylog Web+ Firmware 1.13.2.8
Multisuns EasyLog web+ has a code injection vulnerability.
network
low complexity
multisuns CWE-94
critical
9.8
2023-12-14 CVE-2023-50710 Code Injection vulnerability in Hono
Hono is a web framework written in TypeScript.
network
low complexity
hono CWE-94
4.3
2023-12-11 CVE-2023-5500 Code Injection vulnerability in Frauscher Diagnostic System 102
This vulnerability allows an remote attacker with low privileges to misuse Improper Control of Generation of Code ('Code Injection') to gain full control of the affected device.
network
low complexity
frauscher CWE-94
8.8
2023-12-06 CVE-2023-6288 Code Injection vulnerability in Devolutions Remote Desktop Manager
Code injection in Remote Desktop Manager 2023.3.9.3 and earlier on macOS allows an attacker to execute code via the DYLIB_INSERT_LIBRARIES environment variable.
local
low complexity
devolutions CWE-94
7.8