Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) — Vulnerability Class 21529

21529 vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-10140 Quick Social Login <= 1.4.6 - Authenticated (Contributor+) Stored Cross-Site Scripting — Quick Social Login 6.4 Medium2025-10-15
CVE-2025-10135 WP ViewSTL <= 1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting — WP ViewSTL 6.4 Medium2025-10-15
CVE-2025-10132 Dhivehi Text <= 0.1 - Authenticated (Contributor+) Stored Cross-Site Scripting — Dhivehi Text 6.4 Medium2025-10-15
CVE-2025-10133 URLYar <= 1.1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting — URLYar URL Shortner 6.4 Medium2025-10-15
CVE-2025-10139 WP BookWidgets <= 0.9 - Authenticated (Contributor+) Stored Cross-Site Scripting — WP BookWidgets 6.4 Medium2025-10-15
CVE-2025-49552 Adobe Connect | Cross-site Scripting (DOM-based XSS) (CWE-79) — Adobe Connect 8.1 High2025-10-14
CVE-2025-49553 Adobe Connect | Cross-site Scripting (DOM-based XSS) (CWE-79) — Adobe Connect 9.3 Critical2025-10-14
CVE-2025-61797 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager 5.4 Medium2025-10-14
CVE-2025-54272 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager 5.4 Medium2025-10-14
CVE-2025-61796 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager 5.4 Medium2025-10-14
CVE-2025-54266 Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Commerce 4.8 Medium2025-10-14
CVE-2025-54264 Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Commerce 8.1 High2025-10-14
CVE-2025-59429 FreePBX core module vulnerable to reflected cross-site scripting via Asterisk HTTP Status page — core 6.1AIMediumAI2025-10-14
CVE-2025-8459 A user with low privileges can inject XSS in the Monitoring Recurrent downtimes page — Infra Monitoring 7.7 High2025-10-14
CVE-2025-8430 A user with elevated privileges can inject XSS in the Commands Connectors configuration configuration page — Infra Monitoring 6.8 Medium2025-10-14
CVE-2025-8429 A user with elevated privileges can inject XSS in the ACL Action access configuration page — Infra Monitoring 6.8 Medium2025-10-14
CVE-2025-54893 A user with elevated privileges can inject XSS in the Hosts templates configuration page — Infra Monitoring 6.8 Medium2025-10-14
CVE-2025-62366 Mailgen vulnerable to HTML injection and cross-site scripting via plaintext email generation — mailgen 6.1AIMediumAI2025-10-14
CVE-2025-31366 Fortinet多款产品 跨站脚本漏洞 — FortiProxy 4.5 Medium2025-10-14
CVE-2025-58324 Fortinet FortiSIEM 跨站脚本漏洞 — FortiSIEM 6.1 Medium2025-10-14
CVE-2025-54891 A user with elevated privileges can inject XSS in the ACL Resource Access configuration page — Infra Monitoring 6.8 Medium2025-10-14
CVE-2025-54892 A user with elevated privileges can inject XSS in the SNMP traps group configuration page — Infra Monitoring 6.8 Medium2025-10-14
CVE-2025-54889 A user with elevated privileges can inject XSS in the SNMP traps manufacturer configuration page — Infra Monitoring 6.8 Medium2025-10-14
CVE-2024-44088 Apache Geode: Reflected XSS — Apache Geode 6.1AIMediumAI2025-10-14
CVE-2025-8428 XSS found in the HTTP loader widget — Infra Monitoring 6.8 Medium2025-10-14
CVE-2025-7329 Rockwell Automation Comms - 1783-NATR Stored Cross-Site Scripting Vulnerability — Comms - 1783-NATR 5.4AIMediumAI2025-10-14
CVE-2025-40772 Siemens SiPass integrated 跨站脚本漏洞 — SiPass integrated 7.4 High2025-10-14
CVE-2025-62365 LibreNMS vulnerable to Reflected-XSS in `report_this` function — librenms 6.1AIMediumAI2025-10-13
CVE-2025-62359 WeGIA Cross-Site Scripting (XSS) Reflected endpoint id_pet — WeGIA 6.1AIMediumAI2025-10-13
CVE-2025-62358 WeGIA Reflected XSS to Account TakeOver at /html/configuracao/configuracao_geral.php via log parameter — WeGIA 5.4 Medium2025-10-13

Vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) represent 21529 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.