Weaknesses of type CWE-74
4,155 resultsCVE-2025-14485LOWEFM ipTIME A3004T Administrator Password timepro.cgi show_debug_screen command injectionEPSS 1.6%CVE-2021-21278HIGHRisk of code injection in RSSHubEPSS 1.6%CVE-2026-11450MEDIUMGL.iNet GL-MT3000 Path Normalization dlopen command injectionEPSS 1.6%CVE-2020-26298MEDIUMInjection in RedcarpetEPSS 1.6%CVE-2021-25994HIGHUserfrosting - Host-Header Injection Leads to Account TakeoverEPSS 1.6%CVE-2021-21381HIGHSandbox escape via special tokens in .desktop fileEPSS 1.5%CVE-2020-7489CRITICALA CWE-74: Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') vulnerability exists on EcoStruEPSS 1.5%CVE-2026-7683MEDIUMEdimax BR-6428nC Web setWAN command injectionEPSS 1.5%CVE-2020-7475—A CWE-74: Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection'), reflective DLL, vulnerability EPSS 1.5%CVE-2021-32756HIGHArbitrary eval through MiqExpressionEPSS 1.5%CVE-2025-6095MEDIUMcodesiddhant Jasmin Ransomware checklogin.php sql injectionEPSS 1.5%CVE-2021-41170CRITICALEvaluation of closures can lead to execution of methods & functions in current program scopeEPSS 1.5%CVE-2023-33234HIGHApache Airflow CNCF Kubernetes Provider: KubernetesPodOperator RCE via connection configurationEPSS 1.5%CVE-2022-31180CRITICALInsufficient escaping of whitespace in shescapeEPSS 1.5%CVE-2021-21247CRITICALPost-Auth Unsafe Deserialization on BasePage (AJAX)EPSS 1.5%CVE-2022-20693MEDIUMCisco IOS XE Software Web UI API Injection VulnerabilityEPSS 1.5%CVE-2021-21244CRITICALPre-Auth SSTI via Bean validation message tamperingEPSS 1.5%CVE-2023-25613—LDAP Injection Vulnerability in Apache KerbyEPSS 1.5%CVE-2025-4849MEDIUMTOTOLINK N300RH cstecgi.cgi CloudACMunualUpdateUserdata command injectionEPSS 1.5%CVE-2025-4851MEDIUMTOTOLINK N300RH cstecgi.cgi setUploadUserData command injectionEPSS 1.5%