cwe-95
Safeguard articles tagged "cwe-95" — guides, analysis, and best practices for software supply chain and application security.
6 articles
CVE-2021-22205: GitLab Community and Enterprise Editions Remote Code Execution Vulnerability
CVE-2021-22205 affects GitLab Community and Enterprise Editions and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2021-22204: ExifTool Remote Code Execution Vulnerability
CVE-2021-22204 affects Perl Exiftool and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-17.
CVE-2023-7101: Spreadsheet::ParseExcel Remote Code Execution Vulnerability
CVE-2023-7101 affects Spreadsheet::ParseExcel Spreadsheet::ParseExcel and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2024-01-02.
CVE-2024-36401: OSGeo GeoServer GeoTools Eval Injection Vulnerability
CVE-2024-36401 affects OSGeo GeoServer and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2024-07-15.
CVE-2025-24893: XWiki Platform Eval Injection Vulnerability
CVE-2025-24893 affects XWiki Platform and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2025-10-30.
CVE-2026-33017: Langflow Code Injection Vulnerability
CVE-2026-33017 affects Langflow Langflow and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2026-03-25.
Self-healing security runs on Safeguard.
Your first fix PR is minutes away.
No sales call required, even your agent can complete the purchase over MCP.