Skip to content
Noroxi

CWE-454 · 4 records

External Initialization of Trusted Variables or Data Stores

CVEs in this class

4 records

  • Kirby: External Initialization of the Panel on reverse proxy setups with the `Forwarded` header

    CriticalCVSS 9.1No exploitEPSS 1%

    getkirby · kirbyJul 9, 2026

  • Microsoft Azure AD SSH Login extension for Linux Elevation of Privilege Vulnerability

    HighCVSS 8.1No exploitEPSS 0%

    microsoft · azure ad ssh login extension for linuxMar 10, 2026

  • pam_usb: getenv() used in PAM context allows environment variable injection into local-check logic

    MediumCVSS 6.3No exploitEPSS 0%

    mcdope · pam_usbJun 18, 2026

  • IBM AIX privilege escalation

    MediumCVSS 5.5No exploitEPSS 0%

    ibm · viosSep 16, 2025

All vulnerability classes