Vulnerabilities > Improper Control of Generation of Code ('Code Injection')

DATE CVE VULNERABILITY TITLE RISK
2025-02-16 CVE-2025-1359 A vulnerability, which was classified as problematic, has been found in SIAM Industria de Automação e Monitoramento SIAM 2.0.
network
low complexity
CWE-94
4.3
2025-02-16 CVE-2025-1354 A vulnerability was found in Asus RT-N12E 2.0.0.19.
network
low complexity
CWE-94
2.4
2025-02-16 CVE-2025-1337 A vulnerability was found in Eastnets PaymentSafe 2.5.26.0.
network
low complexity
CWE-94
3.5
2025-02-16 CVE-2025-1332 A vulnerability has been found in FastCMS up to 0.1.5 and classified as problematic.
network
low complexity
CWE-94
2.4
2025-02-13 CVE-2024-13345 Code Injection vulnerability in Theme-Fusion Avada
The Avada Builder plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 3.11.13.
network
low complexity
theme-fusion CWE-94
critical
9.8
2025-02-13 CVE-2024-13346 Code Injection vulnerability in Theme-Fusion Avada
The Avada | Website Builder For WordPress & WooCommerce theme for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 7.11.13.
network
low complexity
theme-fusion CWE-94
critical
9.8
2025-02-12 CVE-2025-1213 A vulnerability was found in pihome-shc PiHome 1.77.
network
low complexity
CWE-94
3.5
2025-02-12 CVE-2024-13814 Code Injection vulnerability in Lcweb Global Gallery
The The Global Gallery - WordPress Responsive Gallery plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 9.1.5.
network
low complexity
lcweb CWE-94
8.8
2025-02-11 CVE-2025-1169 A vulnerability was found in SourceCodester Image Compressor Tool 1.0.
network
low complexity
CWE-94
3.5
2025-02-07 CVE-2025-1105 A vulnerability was found in SiberianCMS 4.20.6.
network
low complexity
CWE-94
4.3