Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) — Vulnerability Class 21535

21535 vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-47595 WordPress Color Your Bar plugin <= 2.0 - Cross Site Scripting (XSS) Vulnerability — Color Your Bar 5.9 Medium2025-05-07
CVE-2025-47592 WordPress Legal Terms and Conditions Popup for User Login and WooCommerce Checkout – TPUL plugin <= 2.0.8 - Cross Site Scripting (XSS) Vulnerability — Terms Popup On User Login 5.9 Medium2025-05-07
CVE-2025-47593 WordPress Really Simple Under Construction Page plugin <= 1.4.6 - Cross Site Scripting (XSS) Vulnerability — Really Simple Under Construction Page 5.9 Medium2025-05-07
CVE-2025-47589 WordPress Ebook Store plugin <= 5.8009 - Cross Site Scripting (XSS) Vulnerability — Ebook Store 6.5 Medium2025-05-07
CVE-2025-47547 WordPress SendPulse Email Marketing Newsletter plugin <= 2.1.6 - Cross Site Scripting (XSS) Vulnerability — SendPulse Email Marketing Newsletter 6.5 Medium2025-05-07
CVE-2025-47525 WordPress Bold Page Builder plugin <= 5.3.0 - Cross Site Scripting (XSS) Vulnerability — Bold Page Builder 5.9 Medium2025-05-07
CVE-2025-47524 WordPress Quran multilanguage Text & Audio plugin <= 2.3.23 - Cross Site Scripting (XSS) Vulnerability — Quran multilanguage Text & Audio 5.9 Medium2025-05-07
CVE-2025-47522 WordPress AWEOS WP Lock plugin <= 1.4.8 - Cross Site Scripting (XSS) Vulnerability — AWEOS WP Lock 5.9 Medium2025-05-07
CVE-2025-47521 WordPress Robo Gallery plugin <= 5.0.2 - Cross Site Scripting (XSS) Vulnerability — Robo Gallery 5.9 Medium2025-05-07
CVE-2025-47520 WordPress Charitable plugin <= 1.8.5.1 - Cross Site Scripting (XSS) Vulnerability — Charitable 5.9 Medium2025-05-07
CVE-2025-47518 WordPress Contact Form 7 – PayPal & Stripe Add-on plugin <= 2.3.4 - Cross Site Scripting (XSS) Vulnerability — Contact Form 7 – PayPal & Stripe Add-on 5.9 Medium2025-05-07
CVE-2025-47516 WordPress Time Clock plugin <= 1.2.3 - Cross Site Scripting (XSS) Vulnerability — Time Clock 5.9 Medium2025-05-07
CVE-2025-47515 WordPress WP DPE-GES plugin <= 1.6 - Cross Site Scripting (XSS) Vulnerability — WP DPE-GES 6.5 Medium2025-05-07
CVE-2025-47509 WordPress Top 10 plugin <= 4.1.0 - Cross Site Scripting (XSS) Vulnerability — Top 10 6.5 Medium2025-05-07
CVE-2025-47507 WordPress Better Search plugin <= 4.1.0 - Cross Site Scripting (XSS) Vulnerability — Better Search 6.5 Medium2025-05-07
CVE-2025-47506 WordPress Contextual Related Posts plugin <= 4.0.2 - Cross Site Scripting (XSS) Vulnerability — Contextual Related Posts 6.5 Medium2025-05-07
CVE-2025-47505 WordPress Product Time Countdown for WooCommerce plugin <= 1.6.2 - Cross Site Scripting (XSS) Vulnerability — Product Time Countdown for WooCommerce 6.5 Medium2025-05-07
CVE-2025-47503 WordPress NGG Smart Image Search plugin <= 3.3.3 - Cross Site Scripting (XSS) Vulnerability — NGG Smart Image Search 6.5 Medium2025-05-07
CVE-2025-47504 WordPress Custom Checkout Fields for WooCommerce plugin <= 1.8.3 - Cross Site Scripting (XSS) Vulnerability — Custom Checkout Fields for WooCommerce 6.5 Medium2025-05-07
CVE-2025-47501 WordPress Content Control plugin <= 2.6.1 - Cross Site Scripting (XSS) Vulnerability — Content Control 6.5 Medium2025-05-07
CVE-2025-47502 WordPress Mollie Forms plugin <= 2.7.12 - Cross Site Scripting (XSS) Vulnerability — Mollie Forms 6.5 Medium2025-05-07
CVE-2025-47499 WordPress Simple Blog Stats plugin <= 20250416 - Cross Site Scripting (XSS) Vulnerability — Simple Blog Stats 6.5 Medium2025-05-07
CVE-2025-47497 WordPress Logo Showcase plugin <= 3.0.4 - Cross Site Scripting (XSS) Vulnerability — Logo Showcase 6.5 Medium2025-05-07
CVE-2025-47495 WordPress Blockspare plugin <= 3.2.9 - Cross Site Scripting (XSS) Vulnerability — Blockspare 6.5 Medium2025-05-07
CVE-2025-47493 WordPress Ultimate Blocks plugin <= 3.2.9 - Cross Site Scripting (XSS) Vulnerability — Ultimate Blocks 6.5 Medium2025-05-07
CVE-2025-47489 WordPress Beds24 Online Booking plugin <= 2.0.29 - Cross Site Scripting (XSS) Vulnerability — Beds24 Online Booking 6.5 Medium2025-05-07
CVE-2025-47488 WordPress Bold Page Builder plugin <= 5.3.2 - Cross Site Scripting (XSS) Vulnerability — Bold Page Builder 6.5 Medium2025-05-07
CVE-2025-47482 WordPress SKT Skill Bar plugin <= 2.4 - Cross Site Scripting (XSS) Vulnerability — SKT Skill Bar 6.5 Medium2025-05-07
CVE-2025-47475 WordPress JupiterX Core plugin <= 4.8.11 - Cross Site Scripting (XSS) Vulnerability — JupiterX Core 6.5 Medium2025-05-07
CVE-2025-47476 WordPress Cost Calculator for Elementor plugin <= 1.3.3 - Cross Site Scripting (XSS) Vulnerability — Cost Calculator for Elementor 6.5 Medium2025-05-07

Vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) represent 21535 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.