Skip to main content

CWE archive

CWE-91 CVEs

Programmatic archive

131 CVEs tagged with CWE-9124 Critical, 64 High, 41 Medium, 2 Low, 0 Unrated.

CVE-2026-59728

Published Jul 27, 2026

Astro is a web framework for content-driven websites. In versions 1.0.0 through 4.0.18, the source.title and enclosure.type item fields in packages/astro-rss/src/index.ts are inte…

CVSS 4.3 · Medium
evidence mentions
4
Buzz score
21.1

CVE-2026-15037

Published Jul 23, 2026

Improper output neutralization (XML injection) in QDom comment, CDATA, and processing-instruction serialization in Qt XML from 4.0.0 through 6.11 allows untrusted text serialized…

CVSS 2.9 · Low
evidence mentions
1
Buzz score
11.9

CVE-2026-55789

Published Jul 10, 2026

Logto is the modern, open-source auth infrastructure for SaaS and AI apps. Prior to 1.41.0, Logto's self-hosted SAML application IdP built the signed SAML response and assertion b…

CVSS 8.5 · High
evidence mentions
4
Buzz score
21.1

CVE-2026-53723

Published Jun 11, 2026

Guzzle Services provides an implementation of the Guzzle Command library that uses Guzzle service descriptions to describe web services, serialize requests, and parse responses in…

CVSS 5.8 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-46490

Published Jun 8, 2026

samlify is a Node.js library for SAML single sign-on. Prior to version 2.13.0, samlify’s template substitution only escapes attribute contexts. Values inserted into element text (…

CVSS 8.7 · High
evidence mentions
1
Buzz score
16.9
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2026-47273

Published May 27, 2026

pam_usb provides hardware authentication for Linux using ordinary removable media. Prior to 0.9.0, pam_usb builds XPath expressions from user-supplied identifiers (PAM username, s…

CVSS 6.5 · Medium
evidence mentions
3
Buzz score
18.9

CVE-2026-40165

Published May 21, 2026

authentik is an open-source identity provider. Versions 2025.12.4 and prior, and versions 2026.2.0-rc1 through 2026.2.2 were vulnerable to Authentication Bypass through SAML NameI…

CVSS 8.7 · High
evidence mentions
3
Buzz score
18.9

CVE-2026-44665

Published May 13, 2026

fast-xml-builder builds XML from JSON. Prior to 1.1.7, when an input data has quotes in attribute values but process entities is not enabled, it breaks the attribute value into mu…

CVSS 6.1 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-44664

Published May 13, 2026

fast-xml-builder builds XML from JSON. In 1.1.5, the fix for CVE-2026-41650 in fast-xml-parser sanitizes -- sequences in XML comment content using .replace(/--/g, '- -'). This ski…

CVSS 6.1 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-41650

Published May 7, 2026

fast-xml-parser allows users to process XML from JS object without C/C++ based libraries or callbacks. Prior to version 5.7.0, XMLBuilder does not escape the "-->" sequence in com…

CVSS 6.1 · Medium
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2026-41675

Published May 7, 2026

xmldom is a pure JavaScript W3C standard-based (XML DOM Level 2 Core) `DOMParser` and `XMLSerializer` module. In @xmldom/xmldom prior to versions 0.9.10 and 0.8.13 and xmldom vers…

CVSS 8.7 · High
evidence mentions
9
Buzz score
41.0

CVE-2026-41674

Published May 7, 2026

xmldom is a pure JavaScript W3C standard-based (XML DOM Level 2 Core) `DOMParser` and `XMLSerializer` module. In @xmldom/xmldom prior to versions 0.9.10 and 0.8.13 and xmldom vers…

CVSS 8.7 · High
evidence mentions
12
Buzz score
43.6

CVE-2026-41672

Published May 7, 2026

xmldom is a pure JavaScript W3C standard-based (XML DOM Level 2 Core) `DOMParser` and `XMLSerializer` module. In @xmldom/xmldom prior to versions 0.9.10 and 0.8.13 and xmldom vers…

CVSS 8.7 · High
evidence mentions
11
Buzz score
42.9

CVE-2026-27693

Published May 5, 2026

Traccar is an open source GPS tracking system. In org.traccar:traccar versions starting at 6.11.1 before 6.13.0, the KML and GPX export functionality writes device names to XML ou…

CVSS 5.4 · Medium
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2026-32870

Published Apr 24, 2026

Kirby is an open-source content management system. Kirby's `Xml::value()` method has special handling for `<![CDATA[ ]]>` blocks. If the input value is already valid `CDATA`, it i…

CVSS 6.9 · Medium
evidence mentions
3
Buzz score
18.9
Vendor/product tagsBeta · best-effort

CVE-2026-34601

Published Apr 2, 2026

xmldom is a pure JavaScript W3C standard-based (XML DOM Level 2 Core) `DOMParser` and `XMLSerializer` module. In xmldom versions 0.6.0 and prior and @xmldom/xmldom prior to versio…

CVSS 7.5 · High
evidence mentions
8
Buzz score
40.0

CVE-2026-28770

Published Mar 4, 2026

Improper neutralization of special elements in the /IDC_Logging/checkifdone.cgi script in International Datacasting Corporation (IDC) SFX Series SuperFlex Satellite Receiver Web m…

CVSS 5.3 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-1554

Published Feb 4, 2026

XML Injection (aka Blind XPath Injection) vulnerability in Drupal Central Authentication System (CAS) Server allows Privilege Escalation.This issue affects Central Authentication…

CVSS 4.2 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2022-50902

Published Jan 13, 2026

Wondershare FamiSafe 1.0 contains an unquoted service path vulnerability in the FSService that allows local users to potentially execute code with elevated privileges. Attackers c…

CVSS 8.5 · High

CVE-2025-66034

Published Nov 29, 2025

fontTools is a library for manipulating fonts, written in Python. In versions from 4.33.0 to before 4.60.2, the fonttools varLib (or python3 -m fontTools.varLib) script has an arb…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-12921

Published Nov 10, 2025

A vulnerability has been found in OpenClinica Community Edition up to 3.12.2/3.13. Affected by this issue is some unknown functionality of the file /ImportCRFData?action=confirm o…

CVSS 2.1 · Low
evidence mentions
5
Buzz score
28.9
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2025-60833

Published Oct 8, 2025

An XML External Entity (XXE) vulnerability in the /mall/wxpay/pay component of uzy-ssm-mall v1.1.0 allows attackers to execute arbitrary code via supplying crafted XML data.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-25 of 131 CVEsPage 1 of 6