← Back to feed Search feed

CWE-78 OS Command Injection vulnerabilities

78 CVEs — updated 2026-08-04 · vulnfeed

CVE / IDTitleSeverityCVSSEPSSSourceDate
CVE-2026-12940IBM Langflow OSS 1.0.0 through 1.10.1  are vulnerable to unauthenticated remote code execution via environment variable CRITICAL9.839%ileNVD2026-07-30
CVE-2026-12943IBM HMC V10.3.1050.0 through 10.3.1064.0 and IBM HMC V11.1.1110.0 through 11.1.1112.0 Management systems in IBM Power enCRITICAL9.857%ileNVD2026-07-30
CVE-2026-38709TR1200 v2.4.15, TR3000 v2.4.21, WR300 v2.4.25, WR1200 v2.4.23, WR1300 v2.4.22, WR1500 v2.3.10, WR3000 v2.4.19, WR3600 v2CRITICAL9.884%ileNVD2026-07-30
CVE-2026-38711TR1200 v2.4.15, TR3000 v2.4.21, WR300 v2.4.25, WR1200 v2.4.23, WR1300 v2.4.22, WR1500 v2.3.10, WR3000 v2.4.19, WR3600 v2CRITICAL9.884%ileNVD2026-07-31
CVE-2026-38708TR1200 v2.4.15, TR3000 v2.4.21, WR300 v2.4.25, WR1200 v2.4.23, WR1300 v2.4.22, WR1500 v2.3.10, WR3000 v2.4.19, WR3600 v2CRITICAL9.884%ileNVD2026-07-31
CVE-2026-38713TR1200 v2.4.15, TR3000 v2.4.21, WR300 v2.4.25, WR1200 v2.4.23, WR1300 v2.4.22, WR1500 v2.3.10, WR3000 v2.4.19, WR3600 v2CRITICAL9.884%ileNVD2026-07-31
CVE-2024-3566Command injection vulnerability in programing languages on Microsoft Windows operating system.CRITICAL9.893%ileMicrosoft2024-04-09
CVE-2026-17566pgAdmin 4's Import/Export Data tool builds a psql \copy (...) command line by interpolating a user-supplied SQL query inCRITICAL9.435%ileNVD2026-07-31
CVE-2024-1874Command injection via array-ish $command parameter of proc_open()CRITICAL9.498%ileMicrosoft2024-04-09
CVE-2026-67308Wazuh workflows before 44bf114 contain a shell injection vulnerability in GitHub Actions that allows attackers to executCRITICAL9.337%ileNVD2026-08-01
CVE-2026-67324GitPython 3.1.50 fails to recognize joined short-option forms such as -u<value> (the short form of --upload-pack=<value>CRITICAL9.331%ileNVD2026-08-01
CVE-2026-61515Puwell IP Camera firmware versions 2.x through 4.x contains an unauthenticated command injection vulnerability that alloCRITICAL9.3NVD2026-08-04
CVE-2026-14958IBM Aspera Faspex 5 5.0.0 through 5.0.15.4 could allow a remote authenticated attacker to execute arbitrary code due to CRITICAL9.141%ileNVD2026-07-28
CVE-2026-14959IBM Aspera Faspex 5 5.0.0 through 5.0.15.4 could allow a remote authenticated attacker to execute arbitrary code due to CRITICAL9.161%ileNVD2026-07-28
CVE-2026-8450HTTP::Daemon versions before 6.17 for Perl allow OS command injection via send_file()CRITICAL9.170%ileMicrosoft2026-05-12
CVE-2026-18601A vulnerability was found in GL.iNet GL-MT3000 up to 4.4.5. This impacts the function ovpn-client.check_config of the fiHIGH8.982%ileNVD2026-08-03
CVE-2026-18602A vulnerability was determined in GL.iNet GL-MT3000 up to 4.4.5. Affected is the function ovpn-client.get_recommend_confHIGH8.979%ileNVD2026-08-03
CVE-2026-18612A flaw has been found in GL-iNet GL-MT3000 up to 4.4.5. This vulnerability affects the function plugins.remove_package/pHIGH8.980%ileNVD2026-08-03
CVE-2026-18614A vulnerability was found in GL-iNet GL-MT3000 up to 4.4.5. Impacted is the function s2s.enable_echo_server of the file HIGH8.979%ileNVD2026-08-03
CVE-2026-18615A vulnerability was determined in GL-iNet GL-MT3000 up to 4.4.5. The affected element is the function wg-server.generateHIGH8.979%ileNVD2026-08-03
CVE-2026-18616A vulnerability was identified in GL-iNet GL-MT3000 up to 4.4.5. The impacted element is the function server.set_peer ofHIGH8.979%ileNVD2026-08-03
CVE-2026-18684A weakness has been identified in GL.iNet GL-MT3000 up to 4.4.5. This issue affects the function remove_profile of the fHIGH8.979%ileNVD2026-08-03
CVE-2026-18685A security vulnerability has been detected in GL.iNet GL-MT3000 up to 4.4.5. Impacted is the function set_upgrade of theHIGH8.979%ileNVD2026-08-04
CVE-2026-18686A vulnerability was detected in GL.iNet GL-MT3000 up to 4.4.5. The affected element is the function nas-web.add_user of HIGH8.984%ileNVD2026-08-04
CVE-2026-44098This vulnerability allows an unauthenticated remote attacker with control over the OCPP backend via firewall-bypass to pHIGH8.869%ileNVD2026-07-30
CVE-2026-22622Improper input validation in one of the session management interface of Eaton's Tripp Lite series PADM firmware could alHIGH8.823%ileNVD2026-07-30
CVE-2026-14522IBM App Connect Enterprise 13.0.1.0 through 13.0.7.2, and 12.0.1.0 through 12.0.12.27 could allow a remote attacker to eHIGH8.840%ileNVD2026-07-30
CVE-2026-6893Dracut: dracut: root code execution via dhcp options command injectionHIGH8.862%ileMicrosoft2026-06-09
CVE-2026-67325GitPython before 3.1.51 contains an incomplete command injection blocklist that fails to account for git's long-option pHIGH8.771%ileNVD2026-08-01
CVE-2026-69096OpenWrt luci-app-dockerman (LuCI master and openwrt-25.12 snapshots containing the ucode docker_rpc.uc RPC backend afterHIGH8.774%ileNVD2026-08-03
CVE-2026-67323GitPython before 3.1.51 fails to guard against dangerous Git options passed as keyword arguments in Repo.archive() and gHIGH8.660%ileNVD2026-08-01
CVE-2026-67608Telenia Software TVox 26.5.3 and prior 26.x versions, and 24.9.21 and prior 24.x versions, contain an OS command injectiHIGH8.672%ileNVD2026-08-03
CVE-2026-67599ClearOS 7.9 contains an OS command injection vulnerability in the Log Viewer component that allows authenticated attackeHIGH8.678%ileNVD2026-08-03
CVE-2026-44093A local privilege escalation vulnerability in the init-script for user-applications allows a low-privileged local user tHIGH8.514%ileNVD2026-07-30
CVE-2026-44095A privilege escalation vulnerability in a script used for network configuration allows a low-privileged local user to exHIGH8.514%ileNVD2026-07-30
CVE-2026-44096A privilege escalation vulnerability in udhcpc allows a local user "charx-web" to execute arbitrary commands as root, reHIGH8.514%ileNVD2026-07-30
CVE-2026-44099A privilege escalation vulnerability in the system configuration allows a low-privileged local user to execute arbitraryHIGH8.514%ileNVD2026-07-30
CVE-2026-44106A privilege escalation vulnerability in the init-script for user-applications allows a low-privileged local user to execHIGH8.514%ileNVD2026-07-30
CVE-2026-9044An OS command injection vulnerability exists in the VPN module of TP-Link AXE75 V1 routers. This vulnerability allows anHIGH8.559%ileNVD2026-07-31
CVE-2026-22621Improper input validation in one of the session management interface of Eaton's Tripp Lite Series PADM firmware could alHIGH8.345%ileNVD2026-07-30
CVE-2026-16524A command injection flaw in PCP's linux_sockets PMDA allows malicious shell metacharacters via the network.persocket.filHIGH7.862%ileNVD2026-07-30
CVE-2026-40034gitoxide - Command Injection via Partial .gitmodules Override in gix-submoduleHIGH7.828%ileMicrosoft2026-05-12
CVE-2022-45639OS Command injection vulnerability in sleuthkit fls tool 4.11.1 allows attackers to execute arbitrary commands via a craHIGH7.891%ileMicrosoft2023-01-10
CVE-2026-17347The MASTER_PASSWORD_HOOK setting, introduced in pgAdmin 4 7.2, lets an administrator configure an external command that HIGH7.719%ileNVD2026-07-31
CVE-2026-18598A vulnerability was detected in GL.iNet GL-MT3000 up to 4.4.5. The affected element is the function logread.get_system_lHIGH7.474%ileNVD2026-08-03
CVE-2026-18600A vulnerability has been found in GL.iNet GL-MT3000 up to 4.4.5. This affects the function network.switch_info/network.sHIGH7.478%ileNVD2026-08-03
CVE-2026-18787A vulnerability was identified in GL.iNet AX1800 up to 4.8.3. The affected element is the function remove_rule of the fiHIGH7.4NVD2026-08-04
CVE-2026-18599A flaw has been found in GL.iNet GL-MT3000 up to 4.4.5. The impacted element is the function logread.set_config of the fHIGH7.370%ileNVD2026-08-03
CVE-2026-16843Some Hikvision Networking Products are vulnerable to authenticated command execution due to insufficient input validatioHIGH7.256%ileNVD2026-07-31
CVE-2026-38710TR1200 v2.4.15 and TR3000 v2.4.21 were discovered to contain a command injection vulnerability in the system.setclock inHIGH7.283%ileNVD2026-07-31
CVE-2026-6837A post-authentication command injection vulnerability in the "export-cgi" CGI program in Zyxel WAX650S firmware versionsHIGH7.258%ileNVD2026-08-04
CVE-2024-3154Cri-o: arbitrary command injection via pod annotationHIGH7.270%ileMicrosoft2024-04-09
CVE-2026-56389GNU Bison allows for an execution of an arbitrary program during HTML report generation due to improper handling of gramMEDIUM6.85%ileNVD2026-07-29
CVE-2026-18587A flaw has been found in Wavlink WL-NU516U1 708c073-mt7628. The impacted element is an unknown function of the componentMEDIUM6.867%ileNVD2026-08-03
CVE-2026-67438OliveTin gives access to predefined shell commands from a web interface. From 3000.2.0 until 3000.17.0, the service/inteMEDIUM6.659%ileNVD2026-07-29
CVE-2026-41411Vim: Command injection via backtick expansion in tag filenamesMEDIUM6.640%ileMicrosoft2026-04-14
CVE-2026-57453Vim: PowerShell Command Injection via Unescaped Filename in zip.vim ExtractionMEDIUM6.54%ileMicrosoft2026-06-09
CVE-2026-54753`nx graph` dev server permissive CORS policyMEDIUM5.954%ileGitHub2026-07-31
CVE-2026-18641A vulnerability was determined in Sangfor Operation and Maintenance Security Management System up to 3.0.13. Affected byMEDIUM5.575%ileNVD2026-08-03
CVE-2026-39881Vim Ex command injection in Vims NetBeans integrationMEDIUM5.046%ileMicrosoft2026-04-14
CVE-2026-11526GD versions before 2.86 for Perl allow OS command injection and file overwrite via a 2-arg open() of filename arguments MEDIUM4.269%ileMicrosoft2026-06-09
CVE-2026-46483Vim: Command injection in tar#Vimuntar via missing shellescape {special} flagLOW3.643%ileMicrosoft2026-05-12
CVE-2024-58266The shlex crate before 1.2.1 for Rust allows unquoted and unescaped instances of the { and \xa0 characters, which may faLOW3.252%ileMicrosoft2025-07-08
CVE-2026-18590A vulnerability was determined in Wavlink WL-NU516U1 708c073-mt7628. Affected is the function set_sys_adm of the file adLOW2.162%ileNVD2026-08-03
CVE-2026-51190The "s init" command in Serverless-Devs @serverless-devs/s <= 3.1.11 passes unsanitized user input to child_process.spawUNKNOWN39%ileNVD2026-08-03
CVE-2026-52102An OS command injection vulnerability in the openmediavault-md plugin of OpenMediaVault v8.0.4-1 allows attackers to exeUNKNOWN46%ileNVD2026-08-03
CVE-2025-29296H3C Magic BE18000 V200R007, H3C NX400 V100R015, H3C Magic NX30 Pro V100R0011, H3C Magic R3010 V100R009, H3C Magic NX15 VUNKNOWNNVD2026-08-04
CVE-2026-4786Incomplete mitigation of CVE-2026-4519, %action expansion for command injection to webbrowser.open()UNKNOWN21%ileMicrosoft2026-04-14
CVE-2026-44656Vim: OS Command Injection via 'path' completionUNKNOWN57%ileMicrosoft2026-05-12
CVE-2026-42257net-imap: Command Injection via "raw" arguments to multiple commandsUNKNOWN35%ileMicrosoft2026-05-12
CVE-2026-42258net-imap: Command Injection via unvalidated Symbol inputsUNKNOWN52%ileMicrosoft2026-05-12
CVE-2026-47242Net::IMAP: Command Injection via ID command argumentUNKNOWN3%ileMicrosoft2026-06-09
CVE-2026-47240Net::IMAP: Command Injection via non-synchronizing literal in "raw" argumentUNKNOWN40%ileMicrosoft2026-06-09
FG-IR-26-141Second-Order OS Command Injection via JSON Input on start vnc featureUNKNOWNFortinet2026-06-09
FG-IR-26-131Command injection in CLIUNKNOWNFortinet2026-05-12
FG-IR-26-133OS command injection in CLIUNKNOWNFortinet2026-05-12
FG-IR-26-132SQL command injection in administrative portalUNKNOWNFortinet2026-05-12
FG-IR-26-100OS Command Injection through API endpointUNKNOWNFortinet2026-04-14