Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
Weakness type CWE-1336 — authoritative definition at MITRE. A cumulative reference aggregating every published CVE mapped to this weakness class; not a page of record.
| CVEs all-time | CVEs YTD | KEV all-time |
|---|---|---|
| 64 | 63 | 1 |
▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▃▃▄█
2025-09 0 · 2025-10 0 · 2025-11 0 · 2025-12 0 · 2026-01 0 · 2026-02 0 · 2026-03 0 · 2026-04 2 · 2026-05 8 · 2026-06 7 · 2026-07 14 · 2026-08 32
| CVE | CVSS | EPSS %ile | KEV | Title |
|---|---|---|---|---|
| CVE-2024-23692 | 9.8 | 99.9 | KEV | Rejetto HTTP File Server 2.3m Unauthenticated RCE |
| CVE-2026-28496 | 9.4 | 96.9 | — | FOSSBilling: Server-side template injection in Twig template rendering enables informat… |
| CVE-2026-73299 | 10.0 | 66.1 | — | Prompty: Server-Side Template Injection to Remote Code Execution in the @prompty/core N… |
| CVE-2026-40477 | 9.0 | 55.3 | — | Improper restriction of the scope of accessible objects in Thymeleaf expressions |
| CVE-2026-40478 | 9.0 | 52.7 | — | Improper neutralization of specific syntax patterns for unauthorized expressions in Thy… |
| CVE-2026-71502 | 5.1 | 50.6 | — | Unauthenticated Stored Vue Template Injection Leads to Cross-Site Scripting in CTI-Tran… |
| CVE-2026-44181 | 10.0 | 50.4 | — | Jupyter Enterprise Gateway: Jinja2 Template Server Side Template Injection results in R… |
| CVE-2026-15734 | 9.8 | 49.5 | — | WGDashboard Server-Side Template Injection vulnerability |
| CVE-2026-48323 | 10.0 | 47.3 | — | Adobe Campaign Classic (ACC) | Improper Neutralization of Special Elements Used in a Te… |
| CVE-2026-11407 | 8.6 | 47.2 | — | Pimcore CMS 12.3.8 Twig Sandbox Bypass via SecurityPolicy checkMethodAllowed |
| CVE-2026-54390 | 9.3 | 46.3 | — | JTL Shop < 5.7.2 Server-Side Template Injection via Smarty Renderer |
| CVE-2026-73330 | 7.5 | 45.5 | — | CamaleonCMS 2.9.1 Server-Side Template Injection via test_email Action |
| CVE-2026-9558 | 9.9 | 44.7 | — | — |
| CVE-2026-65974 | 9.9 | 44.0 | — | ERPNext: Server-Side Template Injection leading to Remote Code Execution |
| CVE-2026-34906 | 9.3 | 44.0 | — | Server-Side Template Injection (SSTI) in Wirtualna Uczelnia |
| CVE-2026-69118 | 8.7 | 43.8 | — | Cachet 2.4.1 Authenticated Server-Side Template Injection RCE |
| CVE-2026-44209 | 7.5 | 43.1 | — | Banks: Critical Remote Code Execution (RCE) via Jinja2 SSTI |
| CVE-2026-44845 | 6.7 | 40.9 | — | JumpServer: Remote Command Execution (RCE) via Jinja Template Injection in Applet Host … |
| CVE-2022-4993 | 9.1 | 39.6 | — | HTML::FormHandler versions through 0.40068 for Perl allow attacker selected method disp… |
| CVE-2026-45697 | 9.8 | 39.3 | — | Formie: Pre-authenticated server-side template injection in Hidden fields |