Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) — Vulnerability Class 21530

21530 vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-55107 BUG-000177335 ArcGIS Enterprise Sites has a stored Cross-site Scripting vulnerability. — Portal for ArcGIS Enterprise Sites 4.8 Medium2025-08-21
CVE-2025-55106 BUG-000173171 ArcGIS Enterprise Sites has a Cross-site Scripting vulnerability. — Portal for ArcGIS Enterprise Sites 4.8 Medium2025-08-21
CVE-2025-55105 BUG-000177336 - ArcGIS Enterprise Sites has a stored Cross-site Scripting vulnerability. — Portal for ArcGIS Enterprise Experience Sites 4.8 Medium2025-08-21
CVE-2025-55104 BUG-000173918 - ArcGIS Enterprise Sites has a security vulnerability. — Portal for ArcGIS Enterprise Sites 4.8 Medium2025-08-21
CVE-2025-55103 BUG-000177333 - ArcGIS Enterprise Sites has a stored Cross-site Scripting vulnerability. — Portal for ArcGIS Enterprise Sites 4.8 Medium2025-08-21
CVE-2025-57768 Stored XSS in “hours” fields when creating or editing an issue, using SQLite database — phproject 5.4AIMediumAI2025-08-21
CVE-2025-57765 WeGIA Cross-Site Scripting (XSS) Reflected endpoint 'pre_cadastro_adotante.php' parameter 'msg_e' — WeGIA 6.5 Medium2025-08-21
CVE-2025-57764 WeGIA Cross-Site Scripting (XSS) Reflected endpoint 'cargos.php' parameter 'msg_e' — WeGIA 6.5 Medium2025-08-21
CVE-2025-57763 Cross-Site Scripting (XSS) Reflected in 'insere_despacho.php' parameter 'sccs' — WeGIA 6.1AIMediumAI2025-08-21
CVE-2025-57762 WeGIA Stored Cross-Site Scripting (XSS) vulnerability in the endpoint 'dependente_docdependente.php' with parameter 'nome' — WeGIA 5.4AIMediumAI2025-08-21
CVE-2025-43755 Liferay Portal和Liferay DXP 跨站脚本漏洞 — Portal 5.4AIMediumAI2025-08-21
CVE-2025-7969 Markdown-it 14.1.0 - Cross-site scripting (XSS) — markdown-it 6.1 -2025-08-21
CVE-2025-43756 Liferay Portal和Liferay DXP 跨站脚本漏洞 — Portal 5.4AIMediumAI2025-08-21
CVE-2025-55742 UnoPim Stored XSS via SVG MIME/Sanitizer Bypass — unopim 8.0 High2025-08-21
CVE-2025-9306 SourceCodester Advanced School Management System addNotice cross site scripting — Advanced School Management System 3.5 Low2025-08-21
CVE-2025-8064 Bible SuperSearch <= 6.0.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via selector_height Parameter — Bible SuperSearch 6.4 Medium2025-08-21
CVE-2025-8607 SlingBlocks – Gutenberg Blocks by FunnelKit (Formerly WooFunnels) <= 1.6.0 - Authenticated (Contributor+) Stored Cross-Site Scripting — SlingBlocks – Gutenberg Blocks by FunnelKit (Formerly WooFunnels) 6.4 Medium2025-08-21
CVE-2025-53504 Group Office 跨站脚本漏洞 — Group-Office 6.1 -2025-08-21
CVE-2025-43757 Liferay Portal和Liferay DXP 跨站脚本漏洞 — Portal 6.1AIMediumAI2025-08-20
CVE-2025-43746 Liferay Portal和Liferay DXP 跨站脚本漏洞 — Portal 6.1AIMediumAI2025-08-20
CVE-2025-9237 CodeAstro Ecommerce Website Edit Your Account my_account.php cross site scripting — Ecommerce Website 3.5 Low2025-08-20
CVE-2025-47054 Adobe Experience Manager | Cross-site Scripting (DOM-based XSS) (CWE-79) — Adobe Experience Manager 5.4 Medium2025-08-20
CVE-2025-46849 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager 5.4 Medium2025-08-20
CVE-2025-46852 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager 5.4 Medium2025-08-20
CVE-2025-9235 Scada-LTS compound_events.shtm cross site scripting — Scada-LTS 3.5 Low2025-08-20
CVE-2025-9234 Scada-LTS maintenance_events.shtm cross site scripting — Scada-LTS 3.5 Low2025-08-20
CVE-2025-46856 Adobe Experience Manager | Cross-site Scripting (DOM-based XSS) (CWE-79) — Adobe Experience Manager 5.4 Medium2025-08-20
CVE-2025-46932 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager 5.4 Medium2025-08-20
CVE-2025-46936 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager 5.4 Medium2025-08-20
CVE-2025-46962 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager 5.4 Medium2025-08-20

Vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) represent 21530 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.