Landray OA contains an unauthenticated HQL injection vulnerability that allows unauthenticated attackers to query arbitr
A vulnerability has been found in erupts erupt up to 1.13.3. Affected by this issue is the function geneEruptHqlOrderBy
mailcow: dockerized is an open source groupware/email suite based on docker. Versions prior to 2026-03b have a second-or
A flaw has been found in erupts erupt bis 1.13.3. Affected by this vulnerability is the function EruptDataQuery of the f
In TIM BPM Suite/ TIM FLOW through 9.1.2 multiple Hibernate Query Language injection vulnerabilities exist which allow a
CoreShop is a Pimcore enhanced eCommerce solution. Prior to version 4.1.8, a blind SQL injection vulnerability exists in
CoreShop is a Pimcore enhanced eCommerce solution. An error-based SQL Injection vulnerability was identified in versions
Frequently Asked Questions
What is CWE-564?
CWE-564 (CWE-564) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-564?
There are 7 CVE records associated with CWE-564 in our database. Of these, 0 are critical severity, 3 are high severity, and 4 are medium severity.
How can I protect against CWE-564 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-564 using AI-powered security agents.
Detect CWE-564 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-564 vulnerabilities across your infrastructure.
Get Started