A type of vulnerability that involves a server running an attacker’s code through unsansitized input. Seen in: XSS SQL Injection