6 vulnerabilities classified as CWE-86 (Web页面标识中非法字符转义处理不恰当). AI Chinese analysis included.
| CVE ID | Title | CVSS | Severity | Paused |
|---|---|---|---|---|
| CVE-2026-28417 | Vim has OS Command Injection in netrw — vim | 4.4 | Medium | 2026-02-27 |
| CVE-2025-66606 | Yokogawa FAST/TOOLS 安全漏洞 — FAST/TOOLS | 8.3AI | HighAI | 2026-02-09 |
| CVE-2025-20168 | Cisco Common Services Platform Collector Cross-Site Scripting Vulnerability — Cisco Common Services Platform Collector Software | 5.4 | Medium | 2025-01-08 |
| CVE-2025-20167 | Cisco Common Services Platform Collector Cross-Site Scripting Vulnerability — Cisco Common Services Platform Collector Software | 5.4 | Medium | 2025-01-08 |
| CVE-2025-20166 | Cisco Common Services Platform Collector Cross-Site Scripting Vulnerability — Cisco Common Services Platform Collector Software | 5.4 | Medium | 2025-01-08 |
| CVE-2023-31126 | Improper Neutralization of Invalid Characters in Data Attribute Names in org.xwiki.commons:xwiki-commons-xml — xwiki-commons | 9.1 | Critical | 2023-05-09 |
Vulnerabilities classified as CWE-86 (Web页面标识中非法字符转义处理不恰当) represent 6 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.