İçeriğe atla
Noroxi

CWE-838 · 13 kayıt

Inappropriate Encoding for Output Context

Bu sınıftaki CVE’ler

13 kayıt

  • CVE-2019-18981
    39İzleyin

    Pimcore before 6.2.2 lacks an Access Denied outcome for a certain scenario of an incorrect recipient ID of a notification.

    KritikCVSS 9,8İstismar yokEPSS %1

    pimcore · pimcore15 Kas 2019

  • CVE-2025-4052
    39İzleyin

    Inappropriate implementation in DevTools in Google Chrome prior to 136.0.7103.59 allowed a remote attacker who convinced a user to engage in

    KritikCVSS 9,8İstismar yokEPSS %1

    google · chrome5 May 2025

  • CVE-2019-6110
    33İzleyin

    In OpenSSH 7.9, due to accepting and displaying arbitrary stderr output from the server, a malicious server (or Man-in-The-Middle attacker)

    OrtaCVSS 6,8Kavram kanıtıEPSS %21

    openbsd · openssh31 Oca 2019

  • CVE-2018-9862
    31İzleyin

    util.c in runV 1.0.0 for Docker mishandles a numeric username, which allows attackers to obtain root access by leveraging the presence of an

    YüksekCVSS 7,8İstismar yokEPSS %0

    hyper · runv9 Nis 2018

  • CVE-2024-11702
    30İzleyin

    Copying sensitive information from Private Browsing tabs on Android, such as passwords, may have inadvertently stored data in the cloud-base

    YüksekCVSS 7,5İstismar yokEPSS %1

    mozilla · firefox26 Kas 2024

  • CVE-2023-6512
    26İzleyin

    Inappropriate implementation in Web Browser UI in Google Chrome prior to 120.0.6099.62 allowed a remote attacker to potentially spoof the co

    OrtaCVSS 6,5İstismar yokEPSS %1

    google · chrome5 Ara 2023

  • CVE-2026-55858
    23İzleyin

    MariaDB Connector/J: Inappropriate Encoding for Output Context in org.mariadb.jdbc:mariadb-java-client

    OrtaCVSS 5,9İstismar yokEPSS %1

    mariadb-corporation · mariadb-connector-j28 Ağu 2026

  • CVE-2023-5770
    21İzleyin

    HTML injection in email body through email subject

    OrtaCVSS 5,4İstismar yokEPSS %0

    proofpoint · enterprise protection9 Oca 2024

  • CVE-2020-7292
    17İzleyin

    Web Gateway (MWG) - Inappropriate Encoding for output context

    OrtaCVSS 4,3İstismar yokEPSS %1

    mcafee · web gateway15 Tem 2020

  • CVE-2023-3735
    17İzleyin

    Inappropriate implementation in Web API Permission Prompts in Google Chrome prior to 115.0.5790.98 allowed a remote attacker to obfuscate se

    OrtaCVSS 4,3İstismar yokEPSS %1

    google · chrome1 Ağu 2023

  • CVE-2024-34006
    17İzleyin

    moodle: unsanitized HTML in site log for config_log_created

    OrtaCVSS 4,3İstismar yokEPSS %0

    moodle · moodle31 May 2024

  • CVE-2020-29135
    16İzleyin

    cPanel before 90.0.17 has multiple instances of URL parameter injection (SEC-567).

    OrtaCVSS 4,1İstismar yokEPSS %1

    cpanel · cpanel26 Kas 2020

  • Round-trip Corruption via Improper Entity Escaping in xml_builder

    DüşükCVSS 2,1İstismar yokEPSS %0

    joshnuss · xml_builder21 Ağu 2026

Tüm zafiyet sınıfları