Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) — Vulnerability Class 21551

21551 vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-24558 WordPress CRM Perks plugin <= 1.1.5 - Reflected Cross Site Scripting (XSS) vulnerability — CRM Perks 7.1 High2025-02-14
CVE-2025-24564 WordPress Contact Form With Shortcode plugin <= 4.2.5 - Reflected Cross Site Scripting (XSS) vulnerability — Contact Form With Shortcode 7.1 High2025-02-14
CVE-2025-24565 WordPress WP2LEADS plugin <= 3.3.3 - Reflected Cross Site Scripting (XSS) vulnerability — WP2LEADS 7.1 High2025-02-14
CVE-2025-24566 WordPress Intro Tour Tutorial DeepPresentation plugin <= 6.5.2 - Reflected Cross Site Scripting (XSS) vulnerability — Intro Tour Tutorial DeepPresentation 7.1 High2025-02-14
CVE-2025-23857 WordPress Essential WP Real Estate Plugin <= 1.1.3 - Reflected Cross Site Scripting (XSS) vulnerability — Essential WP Real Estate 7.1 High2025-02-14
CVE-2025-23790 WordPress Easy Code Placement Plugin <= 18.11 - Reflected Cross Site Scripting (XSS) vulnerability — Easy Code Placement 7.1 High2025-02-14
CVE-2025-23851 WordPress Coronavirus (COVID-19) Outbreak Data Widgets Plugin <= 1.1.1 - Reflected Cross Site Scripting (XSS) vulnerability — Coronavirus (COVID-19) Outbreak Data Widgets 7.1 High2025-02-14
CVE-2025-23789 WordPress URL Shortener WooCommerce Plugin <= 9.0.2 - Reflected Cross Site Scripting (XSS) vulnerability — URL Shortener | Conversion Tracking | AB Testing | WooCommerce 7.1 High2025-02-14
CVE-2025-23788 WordPress Easy Filter Plugin <= 1.10 - Reflected Cross Site Scripting (XSS) vulnerability — Easy Filter 7.1 High2025-02-14
CVE-2025-23853 WordPress NoFollow Free plugin <= 1.6.3 - Reflected Cross Site Scripting (XSS) vulnerability — NoFollow Free 7.1 High2025-02-14
CVE-2025-23751 WordPress Data Dash plugin <= 1.2.3 - Reflected Cross Site Scripting (XSS) vulnerability — Data Dash 7.1 High2025-02-14
CVE-2025-23786 WordPress Email to Download Plugin <= 3.1.0 - Reflected Cross Site Scripting (XSS) vulnerability — Email to Download 7.1 High2025-02-14
CVE-2025-23787 WordPress Easy Bet Plugin <= 1.0.7 - Reflected Cross Site Scripting (XSS) vulnerability — Easy Bet 7.1 High2025-02-14
CVE-2025-23750 WordPress Custom Widget Creator plugin <= 1.0.5 - Reflected Cross Site Scripting (XSS) vulnerability — Custom Widget Creator 7.1 High2025-02-14
CVE-2025-23748 WordPress Singsys -Awesome Gallery plugin <= 1.0 - Reflected Cross Site Scripting (XSS) vulnerability — Singsys -Awesome Gallery 7.1 High2025-02-14
CVE-2025-23658 WordPress Advanced Angular Contact Form plugin <= 1.1.0 - Reflected Cross Site Scripting (XSS) vulnerability — Advanced Angular Contact Form 7.1 High2025-02-14
CVE-2025-23657 WordPress WordPress-to-candidate for Salesforce CRM plugin <= 1.0.1 - Reflected Cross Site Scripting (XSS) vulnerability — WordPress-to-candidate for Salesforce CRM 7.1 High2025-02-14
CVE-2025-23742 WordPress Podamibe Twilio Private Call plugin <= 1.0.1 - Reflected Cross Site Scripting (XSS) vulnerability — Podamibe Twilio Private Call 7.1 High2025-02-14
CVE-2025-23653 WordPress Form To Online Booking plugin <= 1.0 - Reflected Cross Site Scripting (XSS) vulnerability — Form To Online Booking 7.1 High2025-02-14
CVE-2025-23655 WordPress Contact Form 7 – Paystack Add-on plugin <= 1.2.3 - Reflected Cross Site Scripting (XSS) vulnerability — Contact Form 7 – Paystack Add-on 7.1 High2025-02-14
CVE-2025-23652 WordPress Add custom content after post plugin <= 1.0 - Reflected Cross Site Scripting (XSS) vulnerability — Add custom content after post 7.1 High2025-02-14
CVE-2025-23648 WordPress AdsMiddle plugin <= 1.0 - Reflected Cross Site Scripting (XSS) vulnerability — AdsMiddle 7.1 High2025-02-14
CVE-2025-23651 WordPress Scroll Top plugin <= 1.3.3 - Reflected Cross Site Scripting (XSS) vulnerability — Scroll Top 7.1 High2025-02-14
CVE-2025-23650 WordPress Tidy.ro plugin <= 1.3 - Reflected Cross Site Scripting (XSS) vulnerability — Tidy.ro 7.1 High2025-02-14
CVE-2025-23646 WordPress Library Instruction Recorder plugin <= 1.1.4 - Reflected Cross Site Scripting (XSS) vulnerability — Library Instruction Recorder 7.1 High2025-02-14
CVE-2025-23647 WordPress WP-Clap plugin <= 1.5 - Reflected Cross Site Scripting (XSS) vulnerability — WP-Clap 7.1 High2025-02-14
CVE-2025-23598 WordPress Recip.ly plugin <= 1.1.8 - Reflected Cross Site Scripting (XSS) vulnerability — Recip.ly 7.1 High2025-02-14
CVE-2025-23523 WordPress HSS Embed Streaming Video plugin <= 3.23 - Reflected Cross Site Scripting (XSS) vulnerability — HSS Embed Streaming Video 7.1 High2025-02-14
CVE-2025-23492 WordPress 淘宝客插件 plugin <= 1.1.2 - Reflected Cross Site Scripting (XSS) vulnerability — WordPress 淘宝客插件 7.1 High2025-02-14
CVE-2025-23525 WordPress Kv Compose Email From Dashboard plugin <= 1.1 - Reflected Cross Site Scripting (XSS) vulnerability — Kv Compose Email From Dashboard 7.1 High2025-02-14

Vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) represent 21551 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.