Skip to main content

CWE archive

CWE-1336 CVEs

Programmatic archive

185 CVEs tagged with CWE-133648 Critical, 81 High, 42 Medium, 14 Low, 0 Unrated.

CVE-2026-47752

Published Jul 23, 2026

Tugtainer is a self-hosted app for automating updates of Docker containers. Versions prior to 1.30.2 are vulnerable to Server-Side Template Injection (SSTI) in the notification te…

CVSS 9.9 · Critical
evidence mentions
1
Buzz score
11.9

CVE-2026-47690

Published Jul 21, 2026

MeltanoHub is the source code for hub.meltano.com, the central place for Meltano plugins. Versions of the repo prior to commit 923820de8f64d753951fbbd54f7282a3d5f75173 were vulner…

CVSS 7.5 · High
evidence mentions
6
Buzz score
24.5

CVE-2026-63728

Published Jul 21, 2026

Gitleaks prior to 8.30.1 contains a template injection vulnerability that allows attackers who can supply or influence report templates to read arbitrary environment variables and…

CVSS 8.1 · High
evidence mentions
4
Buzz score
27.6

CVE-2026-44181

Published Jul 16, 2026

Jupyter Enterprise Gateway launches remote Jupyter Notebook kernels across distributed clusters like Apache Spark, Kubernetes, and Docker Swarm. In versions 2.0.0rc2 and above, pr…

CVSS 10.0 · Critical
evidence mentions
2
Buzz score
16.0

CVE-2026-55242

Published Jul 15, 2026

ERPNext is a free and open source Enterprise Resource Planning tool. Prior to 15.111.0 and 16.22.0, an authenticated user with a standard operational role can trigger server-side…

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-55794

Published Jul 2, 2026

Craft CMS is a content management system (CMS). In versions 5.9.0 and above prior to 5.10.0, control panel users with the ability to edit entries can execute unsandboxed Twig code…

CVSS 8.7 · High
evidence mentions
2
Buzz score
16.0

CVE-2026-52796

Published Jun 24, 2026

Gogs is an open source self-hosted Git service. Prior to 0.14.3, specially crafted issue index pattern can cause a panic when rendering, resulting in denial of service. In interna…

CVSS 3.5 · Low
evidence mentions
1
Buzz score
11.9

CVE-2026-28496

Published Jun 23, 2026

FOSSBilling is a free, open-source billing and client management system. Versions prior to 0.8.0 have a Server-Side Template Injection (SSTI) vulnerability in the template renderi…

CVSS 9.4 · Critical
evidence mentions
3
Buzz score
20.4

CVE-2026-54390

Published Jun 18, 2026

JTL Shop versions 5.2.0 through 5.7.1 contains a server-side template injection vulnerability that allows unauthenticated attackers to inject malicious template syntax due to unsa…

CVSS 9.3 · Critical
evidence mentions
3
Buzz score
32.9
Public PoC observed

CVE-2026-11407

Published Jun 17, 2026

Pimcore CMS/DXP version 12.3.8 contains a sandbox bypass vulnerability that allows authenticated administrative attackers to execute arbitrary methods on PHP objects by exploiting…

CVSS 8.6 · High
evidence mentions
3
Buzz score
20.4

CVE-2026-41065

Published Jun 4, 2026

Tautulli is a Python based monitoring and tracking tool for Plex Media Server. Versions prior to 2.17.1 are vulnerable to remote code execution via the newsletter custom template…

CVSS 8.9 · High
evidence mentions
2
Buzz score
16.0

CVE-2026-34906

Published Jun 2, 2026

Server-Side Template Injection (SSTI) in Wirtualna Uczelnia allows an unauthenticated attacker to perform Remote Code Execution (RCE). In the endpoint redirectToUrl and parameter…

CVSS 9.3 · Critical
evidence mentions
2
Buzz score
21.0

CVE-2026-42252

Published Jun 1, 2026

Apache Airflow's official documentation at `core-concepts/dag-run.html` ("Passing Parameters when triggering Dags") showed a verbatim `BashOperator(bash_command="echo value: {{ da…

CVSS 9.1 · Critical
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2026-45697

Published May 29, 2026

Formie is a Craft CMS plugin for creating forms. Prior to 2.2.20 and 3.1.24, unauthenticated users could submit crafted values into Hidden fields (with Default value → Custom) tha…

CVSS 9.8 · Critical
evidence mentions
4
Buzz score
21.1

CVE-2026-49382

Published May 29, 2026

In JetBrains IntelliJ IDEA before 2026.1 code execution was possible via template injection in the Copyright plugin

CVSS 4.5 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-45312

Published May 29, 2026

RAGFlow is an open-source RAG (Retrieval-Augmented Generation) engine. In 0.24.0 and earlier, a Jinja2 template injection in the prompt generator (rag/prompts/generator.py) allows…

CVSS 9.9 · Critical
evidence mentions
1
Buzz score
11.9

CVE-2026-9558

Published May 29, 2026

A Server-Side Template Injection (SSTI) vulnerability exists in Mautic's theme engine. The platform renders uploaded Twig templates without a sandbox or strict function restrictio…

CVSS 9.9 · Critical
evidence mentions
1
Buzz score
11.9

CVE-2026-44209

Published May 26, 2026

Banks generates meaningful LLM prompts using a template language that makes sense. Prior to 2.4.2, banks uses jinja2.Environment() (unsandboxed) to render prompt templates. Applic…

CVSS 7.5 · High
evidence mentions
5
Buzz score
30.9

CVE-2026-44723

Published May 26, 2026

Vowpal Wabbit is a machine learning system. The workflow .github/workflows/python_checks.yml embeds ${{ github.event.pull_request.title }} directly inside double-quoted bash strin…

CVSS 5.0 · Medium
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2026-9498

Published May 25, 2026

A vulnerability has been found in Dromara lamp-cloud up to 5.6.2. Impacted is the function GroovyClassLoader.parseClass of the component Message Template Handler. Such manipulatio…

CVSS 2.1 · Low
evidence mentions
4
Buzz score
22.6

CVE-2026-29207

Published May 19, 2026

Improper Neutralization of Special Elements Used in a Template Engine vulnerability in Apache OFBiz. This issue affects Apache OFBiz: before 24.09.06. Users are recommended to u…

CVSS 6.5 · Medium
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2026-8740

Published May 17, 2026

A flaw has been found in Sanluan PublicCMS 5.202506.d. The impacted element is the function execute of the file publiccms-core/src/main/java/com/publiccms/views/directive/tools/Te…

CVSS 2.1 · Low
evidence mentions
4
Buzz score
26.1

CVE-2026-45714

Published May 13, 2026

CubeCart is an ecommerce software solution. Prior to 6.7.0, an Authenticated Server-Side Template Injection (SSTI) vulnerability exists in multiple modules of CubeCart (including…

CVSS 9.1 · Critical
evidence mentions
1
Buzz score
11.9

CVE-2026-44377

Published May 13, 2026

CubeCart is an ecommerce software solution. Prior to 6.7.0, an Authenticated Server-Side Template Injection (SSTI) vulnerability exists in multiple modules of CubeCart (including…

CVSS 9.1 · Critical
evidence mentions
2
Buzz score
16.0
Showing 1-25 of 185 CVEsPage 1 of 8