Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) — Vulnerability Class 21529

21529 vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-9371 Betheme <= 28.1.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'page_title' — Betheme 6.4 Medium2025-10-09
CVE-2025-11512 code-projects Voting System voters_add.php cross site scripting — Voting System 4.3 Medium2025-10-08
CVE-2025-61788 Opencast Paella Player 7 vulnerable to Cross-Site-Scripting — opencast 5.4AIMediumAI2025-10-08
CVE-2025-11485 SourceCodester Student Grades Management System Manage Users admin.php add_user cross site scripting — Student Grades Management System 2.4 Low2025-10-08
CVE-2025-43771 Liferay Portal和Liferay DXP 跨站脚本漏洞 — Portal 5.4AIMediumAI2025-10-08
CVE-2025-43829 Liferay Portal和Liferay DXP 跨站脚本漏洞 — Portal 5.4AIMediumAI2025-10-08
CVE-2025-43830 Liferay Portal和Liferay DXP 跨站脚本漏洞 — Portal 5.4AIMediumAI2025-10-08
CVE-2025-43821 Liferay Portal和Liferay DXP 跨站脚本漏洞 — Portal 5.4AIMediumAI2025-10-08
CVE-2025-11437 JhumanJ OpnForm Form Editor forms cross site scripting — OpnForm 2.4 Low2025-10-08
CVE-2025-11435 JhumanJ OpnForm submissions cross site scripting — OpnForm 4.3 Medium2025-10-08
CVE-2025-11433 itsourcecode Leave Management System Query Parameter controller.php redirect cross site scripting — Leave Management System 3.5 Low2025-10-08
CVE-2025-11425 projectworlds Advanced Library Management System edit_admin.php cross site scripting — Advanced Library Management System 2.4 Low2025-10-08
CVE-2025-11421 code-projects Voting System candidates_edit.php cross site scripting — Voting System 3.5 Low2025-10-08
CVE-2025-61999 OPEXUS FOIAXpress stored XSS via logo image — FOIAXpress 4.3 Medium2025-10-07
CVE-2025-61998 OPEXUS FOIAXpress stored XSS via Hyperlink Manager — FOIAXpress 4.3 Medium2025-10-07
CVE-2025-61997 OPEXUS FOIAXpress stored XSS via banner image — FOIAXpress 4.3 Medium2025-10-07
CVE-2025-61996 OPEXUS FOIAXpress stored XSS via annual report template — FOIAXpress 4.3 Medium2025-10-07
CVE-2025-43822 Liferay Portal和Liferay DXP 跨站脚本漏洞 — Portal 5.4AIMediumAI2025-10-07
CVE-2025-43823 Liferay Portal和Liferay DXP 跨站脚本漏洞 — Portal 5.4AIMediumAI2025-10-07
CVE-2025-3448 XSS on SDM — Automation Runtime 6.1 Medium2025-10-07
CVE-2025-1826 IBM Jazz Foundation cross-site scripting — Jazz Foundation 5.4 Medium2025-10-07
CVE-2025-25009 Kibana Cross-Site Scripting (XSS) — Kibana 8.7 High2025-10-07
CVE-2021-22291 EIBPORT Reflected XSS — EIBPORT V3 KNX 8.0 High2025-10-07
CVE-2025-40649 Múltiples vulnerabilidades en Negotiator de BBMRI-ERIC — Negotiator 5.4AIMediumAI2025-10-07
CVE-2025-11390 PHPGurukul Cyber Cafe Management System POST Parameter search.php cross site scripting — Cyber Cafe Management System 4.3 Medium2025-10-07
CVE-2025-11360 jakowenko double-take API app.js app.use cross site scripting — double-take 4.3 Medium2025-10-07
CVE-2025-7400 Featured Image from URL (FIFU) <= 5.2.7 - Authenticated (Contributor+) Stored Cross-Site Scripting via Featured Image Custom Fields — Featured Image from URL (FIFU) 6.4 Medium2025-10-07
CVE-2025-43824 Liferay Portal和Liferay DXP 跨站脚本漏洞 — Portal 3.5AILowAI2025-10-06
CVE-2025-61769 Emlog vulnerable to stored XSS in file upload functionality in emlog — emlog 5.4AIMediumAI2025-10-06
CVE-2025-11333 langleyfcu Online Banking System Add Customer customer_add_action.php cross site scripting — Online Banking System 2.4 Low2025-10-06

Vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) represent 21529 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.