Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-78 (OS命令中使用的特殊元素转义处理不恰当(OS命令注入)) — Vulnerability Class 2653

2653 vulnerabilities classified as CWE-78 (OS命令中使用的特殊元素转义处理不恰当(OS命令注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2026-1448 D-Link DIR-615 Web Management wiz_policy_3_machine.php os command injection — DIR-615 7.2 High2026-01-26
CVE-2026-1428 WellChoose|Single Sign-On Portal System - OS Command Injection — Single Sign-On Portal System 8.8 High2026-01-26
CVE-2026-1427 WellChoose|Single Sign-On Portal System - OS Command Injection — Single Sign-On Portal System 8.8 High2026-01-26
CVE-2021-47903 LiteSpeed Web Server Enterprise 5.4.11 - Command Injection — LiteSpeed Web Server Enterprise 8.8 High2026-01-23
CVE-2026-0765 Open WebUI PIP install_frontmatter_requirements Command Injection Remote Code Execution Vulnerability — Open WebUI 8.8 -2026-01-23
CVE-2026-0759 Katana Network Development Starter Kit executeCommand Command Injection Remote Code Execution Vulnerability — Development Starter Kit 9.8 -2026-01-23
CVE-2026-0758 mcp-server-siri-shortcuts shortcutName Command Injection Privilege Escalation Vulnerability — mcp-server-siri-shortcuts 7.8 -2026-01-23
CVE-2026-0757 MCP Manager for Claude Desktop execute-command Command Injection Sandbox Escape Vulnerability — MCP Manager for Claude Desktop 9.6 -2026-01-23
CVE-2026-0756 github-kanban-mcp-server execAsync Command Injection Remote Code Execution Vulnerability — github-kanban-mcp-server 9.8 -2026-01-23
CVE-2026-0755 gemini-mcp-tool execAsync Command Injection Remote Code Execution Vulnerability — gemini-mcp-tool 9.8 -2026-01-23
CVE-2025-15061 Framelink Figma MCP Server fetchWithRetry Command Injection Remote Code Execution Vulnerability — Figma MCP Server 9.8 -2026-01-23
CVE-2026-0795 ALGO 8180 IP Audio Alerter Web UI Command Injection Remote Code Execution Vulnerability — 8180 IP Audio Alerter 8.8 -2026-01-23
CVE-2026-0787 ALGO 8180 IP Audio Alerter SAC Command Injection Remote Code Execution Vulnerability — 8180 IP Audio Alerter 9.8 -2026-01-23
CVE-2026-0786 ALGO 8180 IP Audio Alerter SCI Command Injection Remote Code Execution Vulnerability — 8180 IP Audio Alerter 8.8 -2026-01-23
CVE-2026-0785 ALGO 8180 IP Audio Alerter API Command Injection Remote Code Execution Vulnerability — 8180 IP Audio Alerter 8.8 -2026-01-23
CVE-2026-0784 ALGO 8180 IP Audio Alerter Web UI Command Injection Remote Code Execution Vulnerability — 8180 IP Audio Alerter 8.8 -2026-01-23
CVE-2026-0783 ALGO 8180 IP Audio Alerter Web UI Command Injection Remote Code Execution Vulnerability — 8180 IP Audio Alerter 8.8 -2026-01-23
CVE-2026-0782 ALGO 8180 IP Audio Alerter Web UI Command Injection Remote Code Execution Vulnerability — 8180 IP Audio Alerter 8.8 -2026-01-23
CVE-2026-0781 ALGO 8180 IP Audio Alerter Web UI Command Injection Remote Code Execution Vulnerability — 8180 IP Audio Alerter 8.8 -2026-01-23
CVE-2026-0780 ALGO 8180 IP Audio Alerter Web UI Command Injection Remote Code Execution Vulnerability — 8180 IP Audio Alerter 8.8 -2026-01-23
CVE-2026-0779 ALGO 8180 IP Audio Alerter Ping Command Injection Remote Code Execution Vulnerability — 8180 IP Audio Alerter 8.8 -2026-01-23
CVE-2026-0796 ALGO 8180 IP Audio Alerter Web UI Command Injection Remote Code Execution Vulnerability — 8180 IP Audio Alerter 8.8 -2026-01-23
CVE-2025-15063 Ollama MCP Server execAsync Command Injection Remote Code Execution Vulnerability — Ollama MCP Server 9.8 -2026-01-23
CVE-2026-24129 Runtipi is Vulnerable to Authenticated Arbitrary Remote Code Execution — runtipi 8.1 High2026-01-22
CVE-2026-1324 Sangfor Operation and Maintenance Management System SSH Protocol session SessionController os command injection — Operation and Maintenance Management System 8.8 High2026-01-22
CVE-2026-23699 Ruijie AP180 Series 命令注入漏洞 — AP180(JA) V1.xx 9.8AICriticalAI2026-01-22
CVE-2021-47851 Mini Mouse 9.2.0 - Remote Code Execution — Mini Mouse 9.8 Critical2026-01-21
CVE-2021-47748 Hasura GraphQL 1.3.3 - Remote Code Execution — GraphQL 9.8 Critical2026-01-21
CVE-2025-33230 NVIDIA CUDA toolkit 命令注入漏洞 — CUDA Toolkit 7.3 High2026-01-20
CVE-2025-33228 NVIDIA CUDA toolkit 命令注入漏洞 — CUDA Toolkit 7.3 High2026-01-20

Vulnerabilities classified as CWE-78 (OS命令中使用的特殊元素转义处理不恰当(OS命令注入)) represent 2653 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.