Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) — Vulnerability Class 21551

21551 vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-20204 Cisco Identity Services Engine Stored Cross-Site Scripting Vulnerability — Cisco Identity Services Engine Software 4.8 Medium2025-02-05
CVE-2025-20180 Cisco Secure Email and Web Manager and Secure Email Gateway Cross-Site Scripting Vulnerability — Cisco Secure Email 4.8 Medium2025-02-05
CVE-2025-20179 Cisco Expressway Series Cross-Site Scripting Vulnerability — Cisco TelePresence Video Communication Server (VCS) Expressway 6.1 Medium2025-02-05
CVE-2024-52365 IBM Cloud Pak for Business Automation cross-site scripting — Cloud Pak for Business Automation 6.4 Medium2025-02-05
CVE-2024-52364 IBM Cloud Pak for Business Automation cross-site scripting — Cloud Pak for Business Automation 5.4 Medium2025-02-05
CVE-2024-53962 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager 5.4 Medium2025-02-04
CVE-2024-53963 Adobe Experience Manager | Cross-site Scripting (DOM-based XSS) (CWE-79) — Adobe Experience Manager 5.4 Medium2025-02-04
CVE-2024-53966 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager 5.4 Medium2025-02-04
CVE-2024-53964 Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79) — Adobe Experience Manager 5.4 Medium2025-02-04
CVE-2024-53965 Adobe Experience Manager | Cross-site Scripting (DOM-based XSS) (CWE-79) — Adobe Experience Manager 5.4 Medium2025-02-04
CVE-2024-13722 Checkmk NagVis Reflected Cross-site Scripting — NagVis 6.1 -2025-02-04
CVE-2024-53266 Cross-site Scripting (XSS) via topic titles when CSP disabled in Discourse — discourse 4.3 Medium2025-02-04
CVE-2024-56328 HTMLi(XSS without CSP) via Onebox urls in Discourse — discourse 6.5 Medium2025-02-04
CVE-2025-22602 Stored DOM-based XSS (without CSP) via video placeholders in Discourse — discourse 6.5 Medium2025-02-04
CVE-2024-40700 IBM Security Verify Access cross-site scripting — Security Verify Access Appliance 6.1 Medium2025-02-04
CVE-2025-24967 Stored XSS on Admin Panel When Deleting a User in reNgine — rengine 5.4 -2025-02-04
CVE-2025-24966 HTML Injection in reNgine — rengine 5.4 -2025-02-04
CVE-2025-22794 WordPress World Cup Predictor Plugin <= 1.9.8 - Reflected Cross Site Scripting (XSS) vulnerability — World Cup Predictor 7.1 High2025-02-04
CVE-2025-22664 WordPress Survey Maker Plugin <= 5.1.3.5 - Cross Site Scripting (XSS) vulnerability — Survey Maker 5.9 Medium2025-02-04
CVE-2025-22674 WordPress Product Blocks for WooCommerce plugin <= 1.9.1 - Cross Site Scripting (XSS) vulnerability — Product Blocks for WooCommerce 6.5 Medium2025-02-04
CVE-2025-22662 WordPress SendPulse Email Marketing Newsletter plugin <= 2.1.5 - Cross Site Scripting (XSS) vulnerability — SendPulse Email Marketing Newsletter 6.5 Medium2025-02-04
CVE-2025-22675 WordPress Alert Box Block plugin <= 1.1.0 - Cross Site Scripting (XSS) vulnerability — Alert Box Block – Display notice/alerts in the front end 6.5 Medium2025-02-04
CVE-2025-22641 WordPress FM Notification Bar plugin <= 1.0.4 - Cross Site Scripting (XSS) vulnerability — FM Notification Bar 5.9 Medium2025-02-04
CVE-2025-22642 WordPress Dynamic Conditions plugin <= 1.7.4 - Cross Site Scripting (XSS) vulnerability — Dynamic Conditions 6.5 Medium2025-02-04
CVE-2025-22653 WordPress Music Press Pro plugin <=1.4.6 - Stored Cross Site Scripting (XSS) vulnerability — Music Press Pro 6.5 Medium2025-02-04
CVE-2025-24598 WordPress WP Mailster plugin <= 1.8.17.0 - Reflected Cross Site Scripting (XSS) vulnerability — WP Mailster 7.1 High2025-02-04
CVE-2025-24599 WordPress Newsletters plugin <= 4.9.9.6 - Reflected Cross Site Scripting (XSS) vulnerability — Newsletters 7.1 High2025-02-04
CVE-2025-24602 WordPress WP24 Domain Check plugin <= 1.10.14 - Reflected Cross Site Scripting (XSS) vulnerability — WP24 Domain Check 7.1 High2025-02-04
CVE-2025-22697 WordPress Responsive Blocks plugin <= 1.9.9 - Cross Site Scripting (XSS) vulnerability — Responsive Blocks 6.5 Medium2025-02-04
CVE-2025-23645 WordPress Find Content IDs plugin <= 1.0 - Reflected Cross Site Scripting (XSS) vulnerability — Find Content IDs 7.1 High2025-02-04

Vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) represent 21551 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.