Code Injection

CWE-94 · 19 records · 15 with a public proof-of-concept

Records the NVD classes as Code Injection (CWE-94), highest CVSS first.

  1. CRITICAL 9.8CVE-2026-71278public PoC

    rust-iot-platform allows creating a "calc rule" via POST /calc-rule/create (api/src/controller/calc_rule_router.rs) containing an arbitrary field. This route does not take the AuthToken request guard used elsewhere in the application, making it reachable witho

    AI risk analysis on Exploit-DB.ai →

  2. CRITICAL 9.8CVE-2026-70553public PoC

    MaxSite CMS contains a remote code execution vulnerability that allows unauthenticated attackers to inject arbitrary PHP code into the application configuration file by submitting crafted POST requests to the install endpoint after installation is complete. At

    AI risk analysis on Exploit-DB.ai →

  3. HIGH 8.8CVE-2026-71235public PoC

    Magistrala's Rules Engine allows authenticated users to create rules with embedded Go or Lua scripts executed server-side when IoT messages arrive. The Lua script engine (re/lua.go) performs no input validation at all and preloads dangerous libraries: db (arbi

    AI risk analysis on Exploit-DB.ai →

  4. HIGH 8.8CVE-2026-69100public PoC

    LAMP Rapid Development Platform through 5.6.2, fixed in commit 84b0c27, contains a remote code execution vulnerability in GlueFactory that executes unsandboxed Groovy scripts from database template fields without compilation restrictions or whitelisting. Attac

    AI risk analysis on Exploit-DB.ai →

  5. HIGH 8CVE-2026-16623

    The Create Block WordPress plugin before 2.10.0 does not correctly escape user-supplied text before writing it into a generated PHP pattern file, allowing a multisite subsite administrator (who holds the capability gating this action but is denied the capabil

    AI risk analysis on Exploit-DB.ai →

  6. HIGH 7.7CVE-2026-51401public PoC

    An issue in Vim Project v9.2.0389 and earlier allows a local attacker to execute arbitrary code via the vms_fixfilename() function within file vim/src/os_vms.c

    AI risk analysis on Exploit-DB.ai →

  7. HIGH 7.5CVE-2026-46581public PoC

    In Eclipse Mojarra versions 2.3 and following, URL handing in `DefaultFaceletFactory` does not properly sanitize and/or block remote URLs, allowing an attacker to specify a URL to a remote Facelet which will be included and processed as part of the normal requ

    mojarra

    AI risk analysis on Exploit-DB.ai →

  8. HIGH 7.3CVE-2026-18770

    A vulnerability has been found in vibesurf-ai VibeSurf up to cd6e519d507cdd4d63061300bf60fb176e1f57e0. Impacted is an unknown function of the file /code of the component Python Validation Handler. The manipulation leads to code injection. Remote exploitation o

    AI risk analysis on Exploit-DB.ai →

  9. HIGH 7.2CVE-2026-71232public PoC

    MacCMS10's admin template editor (application/admin/controller/Template.php) blocks dangerous PHP functions in template content via a blacklist regex, but the blacklist omitted exec, passthru, popen, show_source, create_function, register_shutdown_function, re

    AI risk analysis on Exploit-DB.ai →

  10. UNSCOREDCVE-2026-70477public PoC

    Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, a prompt injection sent to a chatflow using a CSV Agent node can cause the LLM to respond with a malicious Python script that bypasses the blocklist valida

    AI risk analysis on Exploit-DB.ai →

  11. UNSCOREDCVE-2026-47781public PoC

    PDM is a Python package and dependency manager. In versions up to and including 2.26.9, PDM automatically loads project-local plugins from a .pdm-plugins directory during initialization, allowing an attacker-controlled file in an untrusted repository checkout

    AI risk analysis on Exploit-DB.ai →

  12. UNSCOREDCVE-2026-69264public PoC

    Prior to 3.1.3, Flowise CSVAgent interpolates an attacker-controlled segment of the csvFile data URI directly into a Python source-code template that is then executed by Pyodide. Because Pyodide is loaded with the default js bridge to globalThis, which on Node

    AI risk analysis on Exploit-DB.ai →

  13. UNSCOREDCVE-2026-69259public PoC

    Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the SQLite Record Manager node in packages/components/nodes/recordmanager/SQLiteRecordManager/SQLiteRecordManager.ts accepted user-controlled additionalCon

    AI risk analysis on Exploit-DB.ai →

  14. UNSCOREDCVE-2026-69256public PoC

    Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the CSVAgent node allowed users to provide Python code that is executed through pyodide; although a denylist blocked dangerous Python constructs, pandas.re

    AI risk analysis on Exploit-DB.ai →

  15. UNSCOREDCVE-2026-69255public PoC

    Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the CSVAgent in packages/components/nodes/agents/CSVAgent/CSVAgent.ts extracted attacker-controlled CSV data with file.split(',').pop() and interpolated it

    AI risk analysis on Exploit-DB.ai →

  16. UNSCOREDCVE-2026-64633

    A vulnerability allowing remote unauthenticated code execution on the agent host.

    AI risk analysis on Exploit-DB.ai →

  17. UNSCOREDCVE-2026-58074

    A vulnerability allowing a high-privileged user to execute arbitrary code on the server.

    AI risk analysis on Exploit-DB.ai →

  18. UNSCOREDCVE-2026-69254public PoC

    Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, executeJavaScriptCode() accepted caller-provided nodeVMOptions and merged them over the default NodeVM security settings in packages/components/src/utils.t

    AI risk analysis on Exploit-DB.ai →

  19. UNSCOREDCVE-2026-69251public PoC

    Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, Flowise record manager and agent memory nodes allowed users to set arbitrary TypeORM DataSource options through the additionalConfig input in packages/comp

    AI risk analysis on Exploit-DB.ai →