Skip to main content

CWE archive

CWE-235 CVEs

Programmatic archive

4 CVEs tagged with CWE-2350 Critical, 2 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2026-27851

Published May 12, 2026

When safe filter is used with variable expansion, all following pipelines on the same string are incorrectly interpreted as safe too, enabling unsafe data to be unescaped. This ca…

CVSS 7.4 · High
evidence mentions
4
Buzz score
29.1
Vendor/product tagsBeta · best-effort

CVE-2026-20083

Published Mar 25, 2026

A vulnerability in the Secure Copy Protocol (SCP) server feature of Cisco IOS XE Software could allow an authenticated, local attacker with low privileges to cause a denial of ser…

CVSS 6.5 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2024-47651

Published Oct 4, 2024

This vulnerability exists in Shilpi Client Dashboard due to improper handling of multiple parameters in the API endpoint. An authenticated remote attacker could exploit this vulne…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2017-20160

Published Dec 31, 2022

A vulnerability was found in flitto express-param up to 0.x. It has been classified as critical. This affects an unknown part of the file lib/fetchParams.js. The manipulation lead…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1