VYPR

CWE-94

Improper Control of Generation of Code ('Code Injection')

BaseDraftLikelihood: Medium

Description

The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-242 · CAPEC-35 · CAPEC-77

CVEs mapped to this weakness (6,984)

page 305 of 350
  • CVE-2026-46512CriJul 16, 2026
    risk 0.00cvss 9.9epss 0.00

    Frogman provides headless PBX control through MCP and HTTP API. Prior to 1.6.2, fm_dialplan_apply accepted template parameters including greeting, dest, url, extension, code, and file, and Tools/DialplanApply.php wrote Dialplan/Templates.php output to extensions_custom.conf…

  • CVE-2026-30618CriJul 15, 2026
    risk 0.00cvss 9.8epss 0.02

    xszyou Fay 4.3.1 contains a remote code execution vulnerability in its MCP STDIO server management and command execution handling. A remote attacker can access the publicly exposed MCP management interface and configure an MCP STDIO server with attacker-controlled commands and…

  • CVE-2026-45534CriJul 15, 2026
    risk 0.00cvss epss 0.00

    DataEase is an open source data visualization and analysis tool. Prior to 2.10.23, DataEase Redshift datasource connections can load attacker-controlled rsjdbc.ini configuration from System.getProperty("java.io.tmpdir"), setting socketFactory=org.springframework.context.support.F…

  • CVE-2026-62350HigJul 15, 2026
    risk 0.00cvss 7.2epss 0.00

    TDengine is an open source, time-series database optimized for Internet of Things devices. Prior to 3.4.1.15, a user with create udf privilege could upload a crafted shared library and install it as a user-defined function, such as eval, then execute arbitrary C code on the…

  • CVE-2026-61446HigJul 15, 2026
    risk 0.00cvss 8.4epss 0.00

    PraisonAI (praisonaiagents) before 1.6.78 contains a remote code execution vulnerability in the plugin manager, which loads and executes arbitrary Python (.py) files from project-level and user-home .praisonai/plugins/ directories using importlib spec_from_file_location() and…

  • CVE-2026-61433HigJul 15, 2026
    risk 0.00cvss 7.8epss 0.00

    PraisonAI before 4.6.78 fails to safely encode deployment configuration values when generating Python source code for API servers. Attackers can inject arbitrary Python expressions through the deploy.api.host and agents_file configuration parameters that execute when the…

  • CVE-2026-58655HigJul 15, 2026
    risk 0.00cvss 8.8epss 0.01

    The bundled Grav Flex Objects plugin (getgrav/grav-plugin-flex-objects) before 1.4.0 contains a stored server-side template injection vulnerability. When rendering dynamic collection or object titles, the plugin passes user-controlled frontmatter values…

  • CVE-2026-42049HigJul 14, 2026
    risk 0.00cvss epss 0.00

    jadx is a Dex to Java decompiler. Prior to 1.5.6, jadx inserts the android:versionName value from an AndroidManifest into the generated app/build.gradle Groovy template without proper sanitization when exporting a decompiled APK as an Android Gradle project. A malicious APK can…

  • CVE-2026-38450CriJul 14, 2026
    risk 0.00cvss 9.8epss 0.01

    An issue in Aetopia Digital Asset Management DAM v.1.0.0 allows a remote attacker to execute arbitrary code via the name and description parameter of the Add/Update Project function

  • CVE-2026-15715MedJul 14, 2026
    risk 0.00cvss 4.3epss 0.00

    A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this vulnerability is an unknown functionality of the file /exam.php. Such manipulation of the argument day leads to cross site scripting. It is possible to launch the attack…

  • CVE-2026-56185MedJul 14, 2026
    risk 0.00cvss 6.5epss 0.01

    Improper authentication in Windows Admin Center allows an authorized attacker to disclose information over a network.

  • CVE-2026-15702MedJul 14, 2026
    risk 0.00cvss 6.3epss 0.00

    A security vulnerability has been detected in tamagui up to 2.3.0. This affects the function updateConfig of the file code/core/web/src/config.ts. Such manipulation leads to improperly controlled modification of object prototype attributes. The attack may be performed from…

  • CVE-2026-15699MedJul 14, 2026
    risk 0.00cvss 6.3epss 0.00

    A vulnerability was identified in spencermountain compromise up to 14.15.1. Affected is the function nlp.extend of the file src/API/extend.js of the component Public Root API. The manipulation of the argument plugin leads to improperly controlled modification of object prototype…

  • CVE-2026-15698MedJul 14, 2026
    risk 0.00cvss 6.3epss 0.00

    A vulnerability was determined in kofrasa mingo up to 7.2.1. This impacts the function update/updateOne/updateMany of the component Update API. Executing a manipulation of the argument Set can lead to improperly controlled modification of object prototype attributes. The attack…

  • CVE-2026-15678LowJul 14, 2026
    risk 0.00cvss 3.5epss 0.00

    A security vulnerability has been detected in code-projects Online Job Portal 1.0. This impacts an unknown function of the file /Admin/DetailJob.php. The manipulation leads to cross site scripting. The attack is possible to be carried out remotely. The exploit has been disclosed…

  • CVE-2026-15607MedJul 13, 2026
    risk 0.00cvss 4.3epss 0.00

    A vulnerability was detected in tanstack db up to 0.6.8. Affected by this vulnerability is the function select of the file src/query/compiler/select.ts of the component Alias Path Handler. The manipulation results in improperly controlled modification of object prototype…

  • CVE-2026-15598MedJul 13, 2026
    risk 0.00cvss 6.3epss 0.00

    A weakness has been identified in antv layout 2.0.0. This impacts the function setNestedValue in the library lib/util/object.js. Executing a manipulation of the argument path can lead to improperly controlled modification of object prototype attributes. The attack can be…

  • CVE-2026-15596MedJul 13, 2026
    risk 0.00cvss 4.3epss 0.00

    A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. The impacted element is an unknown function of the file /subject.php. Such manipulation of the argument subject leads to cross site scripting. It is possible to launch the attack remotely.…

  • CVE-2026-15595MedJul 13, 2026
    risk 0.00cvss 4.3epss 0.00

    A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0. The affected element is an unknown function of the file /forsubject.php. This manipulation of the argument subject causes cross site scripting. It is possible to initiate the attack remotely.…

  • CVE-2026-55771HigJul 13, 2026
    risk 0.00cvss 8.8epss 0.00

    CedarJava is an open source Java implementation of the Cedar policy language, used for fine-grained authorization decisions. In versions prior to 4.9.0, the EntityIdentifier.equals() has inverted null/self branches which could lead to incorrect equality comparisons. The…