pgAdmin 4's Import/Export Data tool builds a psql \copy (...) command line by interpolating a user-supplied SQL query in
The fix for CVE-2026-12045 in pgAdmin 4 9.16 required the LLM-supplied query passed to the AI Assistant's execute_sql_qu
A flaw was found in vLLM, an open-source library for large language model inference. This vulnerability arises from impr
An attacker can send a crafted EDNS OPT record that will be ignored by DNSdist’s filtering rules, but will be rewritten
OpenVPN 2.7_alpha1 through 2.7.5 using mbedTLS allows remote authenticated users to be misidentified by ignoring the con
Node.js: All versions prior to Node.js 6.15.0 and 8.14.0: HTTP request splitting: If Node.js can be convinced to use uns
The HTTP parser in all current versions of Node.js ignores spaces in the `Content-Length` header, allowing input such as
Node.js: All versions prior to Node.js 6.15.0, 8.14.0, 10.14.0 and 11.3.0: Hostname spoofing in URL parser for javascrip
Frequently Asked Questions
What is CWE-115?
CWE-115 (CWE-115) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-115?
There are 8 CVE records associated with CWE-115 in our database. Of these, 2 are critical severity, 1 are high severity, and 3 are medium severity.
How can I protect against CWE-115 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-115 using AI-powered security agents.
Detect CWE-115 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-115 vulnerabilities across your infrastructure.
Get Started