CWE-76 · 14 kayıt
Improper Neutralization of Equivalent Special Elements
Bu sınıftaki CVE’ler
14 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
46Planlayın | CVE-2024-34359İstismar yok | llama-cpp-python vulnerable to Remote Code Execution by Server-Side Template Injection in Model Metadataabetlen · llama-cpp-python · CWE-76 | Kritik9,6 | — | %26,0 | 14 May 2024 |
42Planlayın | CVE-2024-1883İstismar yok | Reflected XSS in PaperCut NG/MFpapercut · papercut mf · CWE-76 | Orta6,1 | — | %61,5 | 14 Mar 2024 |
39İzleyin | CVE-2024-2952İstismar yok | Server-Side Template Injection in BerriAI/litellmlitellm · litellm · CWE-76 | Kritik9,8 | — | %1,3 | 10 Nis 2024 |
37İzleyin | CVE-2023-0493Kavram kanıtı | Improper Neutralization of Equivalent Special Elements in btcpayserver/btcpayserverbtcpayserver · btcpay server · CWE-76 | Yüksek8,8 | — | %7,9 | 26 Oca 2023 |
34İzleyin | CVE-2026-66362İstismar yok | Description: When NGINX Plus is configured as the data plane for NGINX Gateway Fabric, an injection vulnerability exists in the NGINX configf5 · nginx gateway fabric · CWE-76 | Yüksek8,6 | — | %0,6 | 2 Eyl 2026 |
34İzleyin | CVE-2026-54722İstismar yok | dssrf: there a critical security bug with remove_at_symbol_in_stringhackingrepo · dssrf-js · CWE-76 | Yüksek8,7 | — | %0,6 | 30 Tem 2026 |
34İzleyin | CVE-2026-11311İstismar yok | NGINX Gateway Fabric vulnerabilityf5 · nginx gateway fabric · CWE-76 | Yüksek8,6 | — | %0,6 | 17 Haz 2026 |
34İzleyin | CVE-2026-55723İstismar yok | NGINX Ingress Controller vulnerabilityf5 · nginx ingress controller · CWE-76 | Yüksek8,7 | — | %0,5 | 15 Tem 2026 |
34İzleyin | CVE-2026-77180İstismar yok | NGINX Ingress Controller vulnerabilityf5 · nginx ingress controller · CWE-76 | Yüksek8,7 | — | %0,5 | 2 Eyl 2026 |
33İzleyin | CVE-2024-4897İstismar yok | Remote Code Execution in parisneo/lollms-webuilollms · lollms web ui · CWE-76 | Yüksek8,4 | — | %0,4 | 2 Tem 2024 |
28İzleyin | CVE-2024-1882İstismar yok | Server-side resource injection in PaperCut NG/MFpapercut · papercut mf · CWE-76 | Yüksek7,2 | — | %1,4 | 14 Mar 2024 |
26İzleyin | CVE-2024-21600İstismar yok | Junos OS: PTX Series: In an FTI scenario MPLS packets hitting reject next-hop will cause a host path wedge conditionjuniper · junos · CWE-76 | Orta6,5 | — | %0,3 | 11 Oca 2024 |
21İzleyin | CVE-2023-1149İstismar yok | Improper Neutralization of Equivalent Special Elements in btcpayserver/btcpayserverbtcpayserver · btcpay server · CWE-76 | Orta5,4 | — | %0,5 | 2 Mar 2023 |
12İzleyin | CVE-2024-1221İstismar yok | Improper access controls on APIs on Linux and macOS in PaperCut NG/MFpapercut · papercut mf · CWE-76 | Düşük3,1 | — | %0,5 | 13 Mar 2024 |
- CVE-2024-3435946Planlayın
llama-cpp-python vulnerable to Remote Code Execution by Server-Side Template Injection in Model Metadata
KritikCVSS 9,6İstismar yokEPSS %26abetlen · llama-cpp-python14 May 2024
- CVE-2024-188342Planlayın
Reflected XSS in PaperCut NG/MF
OrtaCVSS 6,1İstismar yokEPSS %61papercut · papercut mf14 Mar 2024
- CVE-2024-295239İzleyin
Server-Side Template Injection in BerriAI/litellm
KritikCVSS 9,8İstismar yokEPSS %1litellm · litellm10 Nis 2024
- CVE-2023-049337İzleyin
Improper Neutralization of Equivalent Special Elements in btcpayserver/btcpayserver
YüksekCVSS 8,8Kavram kanıtıEPSS %8btcpayserver · btcpay server26 Oca 2023
- CVE-2026-6636234İzleyin
Description: When NGINX Plus is configured as the data plane for NGINX Gateway Fabric, an injection vulnerability exists in the NGINX config
YüksekCVSS 8,6İstismar yokEPSS %1f5 · nginx gateway fabric2 Eyl 2026
- CVE-2026-5472234İzleyin
dssrf: there a critical security bug with remove_at_symbol_in_string
YüksekCVSS 8,7İstismar yokEPSS %1hackingrepo · dssrf-js30 Tem 2026
- CVE-2026-1131134İzleyin
NGINX Gateway Fabric vulnerability
YüksekCVSS 8,6İstismar yokEPSS %1f5 · nginx gateway fabric17 Haz 2026
- CVE-2026-5572334İzleyin
NGINX Ingress Controller vulnerability
YüksekCVSS 8,7İstismar yokEPSS %1f5 · nginx ingress controller15 Tem 2026
- CVE-2026-7718034İzleyin
NGINX Ingress Controller vulnerability
YüksekCVSS 8,7İstismar yokEPSS %0f5 · nginx ingress controller2 Eyl 2026
- CVE-2024-489733İzleyin
Remote Code Execution in parisneo/lollms-webui
YüksekCVSS 8,4İstismar yokEPSS %0lollms · lollms web ui2 Tem 2024
- CVE-2024-188228İzleyin
Server-side resource injection in PaperCut NG/MF
YüksekCVSS 7,2İstismar yokEPSS %1papercut · papercut mf14 Mar 2024
- CVE-2024-2160026İzleyin
Junos OS: PTX Series: In an FTI scenario MPLS packets hitting reject next-hop will cause a host path wedge condition
OrtaCVSS 6,5İstismar yokEPSS %0juniper · junos11 Oca 2024
- CVE-2023-114921İzleyin
Improper Neutralization of Equivalent Special Elements in btcpayserver/btcpayserver
OrtaCVSS 5,4İstismar yokEPSS %1btcpayserver · btcpay server2 Mar 2023
- CVE-2024-122112İzleyin
Improper access controls on APIs on Linux and macOS in PaperCut NG/MF
DüşükCVSS 3,1İstismar yokEPSS %1papercut · papercut mf13 Mar 2024