Camel-CXF and Camel-Knative Message Header Injection via Missing Inbound Filtering The CXF and Knative HeaderFilterStra
Backstage is an open framework for building developer portals. Prior to version 1.14.3, this is a configuration bypass v
A flaw in AngularJS' Strict Contextual Escaping (SCE) logic allows bypassing certain SCE policies for resource URLs and
Incorrect packet validation allowed unbounded recursion parsing SCTP chunk parameters. This can eventually result in a
An improper neutralization of active SVG content in OTRS or ((OTRS)) Community Edition ticket article rendering allows a
A flaw has been found in 1024-lab/lab1024 SmartAdmin up to 3.29. Affected by this issue is the function freemarkerResolv
A vulnerability has been found in AntaresMugisho PyBlade 0.1.8-alpha/0.1.9-alpha. The affected element is the function _
A flaw has been found in Sanluan PublicCMS 5.202506.d. The impacted element is the function execute of the file publiccm
A vulnerability has been found in Dromara lamp-cloud up to 5.6.2. Impacted is the function GroovyClassLoader.parseClass
A security flaw has been discovered in langgenius dify up to 1.14.2. This issue affects the function jinja2.Template of
A vulnerability was identified in OpenBoxes up to 0.9.6. This impacts the function buildZebraTemplate of the file grails
A vulnerability was found in xianrendzw EasyReport up to 2.0.17.0522_Beta. Affected is the function execSqlText/previewS
A flaw has been found in datapizza-labs datapizza-ai 0.0.2. Affected is the function ChatPromptTemplate of the file data
A vulnerability has been found in OpenCart 4.0.2.3. Affected by this issue is the function Save of the file admin/contro
A security vulnerability has been detected in Sanluan PublicCMS up to 6.202506.d. This affects the function AbstractFree
A security flaw has been discovered in AstrBotDevs AstrBot up to 4.22.1. This affects the function create_template of th
A flaw has been found in Dromara UJCMS up to 10.1.3. The impacted element is the function update of the file src/main/ja
DSSRF is a Node.js library that provides a wide range of utilities and advanced SSRF defense checks. Prior to 1.0.3, eve
Frequently Asked Questions
What is CWE-791?
CWE-791 (CWE-791) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-791?
There are 18 CVE records associated with CWE-791 in our database. Of these, 1 are critical severity, 3 are high severity, and 13 are medium severity.
How can I protect against CWE-791 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-791 using AI-powered security agents.
Detect CWE-791 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-791 vulnerabilities across your infrastructure.
Get Started