Vulnerabilities > Improper Control of Generation of Code ('Code Injection')
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-08-20 | CVE-2024-43404 | Code Injection vulnerability in Megacord Megabot MEGABOT is a fully customized Discord bot for learning and fun. | 9.8 |
2024-08-17 | CVE-2024-7899 | Code Injection vulnerability in Innocms 0.3.1 A vulnerability, which was classified as critical, has been found in InnoCMS 0.3.1. | 7.2 |
2024-08-08 | CVE-2024-37382 | Code Injection vulnerability in Abinitio Authorization Gateway and Metadata HUB An issue discovered in import host feature in Ab Initio Metadata Hub and Authorization Gateway before 4.3.1.1 allows attackers to run arbitrary code via crafted modification of server configuration. | 7.2 |
2024-08-08 | CVE-2024-42355 | Code Injection vulnerability in Shopware Shopware, an open ecommerce platform, has a new Twig Tag `sw_silent_feature_call` which silences deprecation messages while triggered in this tag. | 9.8 |
2024-08-08 | CVE-2024-42356 | Code Injection vulnerability in Shopware Shopware is an open commerce platform. | 7.2 |
2024-08-08 | CVE-2024-3958 | Code Injection vulnerability in Gitlab An issue has been discovered in GitLab CE/EE affecting all versions before 17.0.6, 17.1 prior to 17.1.4, and 17.2 prior to 17.2.2. | 6.5 |
2024-08-08 | CVE-2024-6891 | Code Injection vulnerability in Journyx 11.5.4 Attackers with a valid username and password can exploit a python code injection vulnerability during the natural login flow. | 8.8 |
2024-08-05 | CVE-2024-34344 | Code Injection vulnerability in Nuxt Nuxt is a free and open-source framework to create full-stack web applications and websites with Vue.js. | 8.8 |
2024-08-02 | CVE-2024-41127 | Code Injection vulnerability in Monkeytype Monkeytype is a minimalistic and customizable typing test. | 9.6 |
2024-08-02 | CVE-2024-36268 | Code Injection vulnerability in Apache Inlong 1.10.0/1.11.0/1.12.0 Improper Control of Generation of Code ('Code Injection') vulnerability in Apache InLong. This issue affects Apache InLong: from 1.10.0 through 1.12.0, which could lead to Remote Code Execution. | 9.8 |