Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) — Vulnerability Class 21572

21572 vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-54349 WordPress Plain Post plugin <= 1.0.3 - Cross Site Scripting (XSS) vulnerability — Plain Post 6.5 Medium2024-12-13
CVE-2024-54345 WordPress Bicycleshop theme <= 1.5 - Cross Site Scripting (XSS) vulnerability — Bicycleshop 6.5 Medium2024-12-13
CVE-2024-54346 WordPress Barter theme <= 1.6 - Cross Site Scripting (XSS) vulnerability — Barter 6.5 Medium2024-12-13
CVE-2024-54343 WordPress Connect Contact Form 7 to Constant Contact plugin <= 1.4 - Reflected Cross Site Scripting (XSS) vulnerability — Connect Contact Form 7 to Constant Contact 7.1 High2024-12-13
CVE-2024-54344 WordPress WP Quick Shop plugin <= 1.3.1 - Reflected Cross Site Scripting (XSS) vulnerability — WP Quick Shop 7.1 High2024-12-13
CVE-2024-54341 WordPress LabelGrid Tools plugin <= 1.3.58 - Reflected Cross Site Scripting (XSS) vulnerability — LabelGrid Tools 7.1 High2024-12-13
CVE-2024-54342 WordPress Staggs plugin <= 2.0.0 - Reflected Cross Site Scripting (XSS) vulnerability — STAGGS 7.1 High2024-12-13
CVE-2024-54340 WordPress Simple Presenter plugin <= 1.5.1 - Reflected Cross Site Scripting (XSS) vulnerability — Simple Presenter 7.1 High2024-12-13
CVE-2024-54339 WordPress geoFlickr plugin <= 1.3 - Reflected Cross Site Scripting (XSS) vulnerability — geoFlickr 7.1 High2024-12-13
CVE-2024-54338 WordPress Hello Event Widgets For Elementor plugin <= 1.0.2 - Cross Site Scripting (XSS) vulnerability — Hello Event Widgets For Elementor 6.5 Medium2024-12-13
CVE-2024-54334 WordPress Quran Phrases About Most People Shortcodes plugin <= 1.4 - Cross Site Scripting (XSS) vulnerability — Quran Phrases About Most People Shortcodes 6.5 Medium2024-12-13
CVE-2024-54335 WordPress ImmoToolBox Connect plugin <= 1.3.3 - Reflected Cross Site Scripting (XSS) vulnerability — ImmoToolBox Connect 7.1 High2024-12-13
CVE-2024-54333 WordPress Check Pincode For Woocommerce plugin <= 1.1 - Reflected Cross Site Scripting (XSS) vulnerability — Check Pincode For Woocommerce 7.1 High2024-12-13
CVE-2024-54329 WordPress CleverNode Related Content plugin <= 1.1.5 - Reflected Cross Site Scripting (XSS) vulnerability — CleverNode Related Content 7.1 High2024-12-13
CVE-2024-54328 WordPress Invoice Payment for WooCommerce plugin <= 1.7.2 - Reflected Cross Site Scripting (XSS) vulnerability — Invoice Payment for WooCommerce 7.1 High2024-12-13
CVE-2024-54327 WordPress UNIVERSAM plugin < 8.59 - Reflected Cross Site Scripting (XSS) vulnerability — UNIVERSAM 7.1 High2024-12-13
CVE-2024-54324 WordPress SMSify plugin <= 6.0.4 - Reflected Cross Site Scripting (XSS) vulnerability — SMSify 7.1 High2024-12-13
CVE-2024-54325 WordPress CarDealerPress plugin <= 6.6.2410.02 - Reflected Cross Site Scripting (XSS) vulnerability — CarDealerPress 7.1 High2024-12-13
CVE-2024-54322 WordPress Media Downloader plugin <= 0.4.7.4 - Reflected Cross Site Scripting (XSS) vulnerability — Media Downloader 7.1 High2024-12-13
CVE-2024-54320 WordPress ICDSoft Reseller Store plugin<= 2.4.5 -Reflected Cross Site Scripting (XSS) vulnerability — ICDSoft Reseller Store 7.1 High2024-12-13
CVE-2024-54319 WordPress Kundgenerator plugin <= 1.0.6 - Reflected Cross Site Scripting (XSS) vulnerability — Kundgenerator 7.1 High2024-12-13
CVE-2024-54318 WordPress NiceJob plugin <= 3.6.5 - Cross Site Scripting (XSS) vulnerability — NiceJob 6.5 Medium2024-12-13
CVE-2024-54317 WordPress Web Stories plugin <= 1.37.0 - Cross Site Scripting (XSS) vulnerability — Web Stories 6.5 Medium2024-12-13
CVE-2024-54316 WordPress Restaurant & Cafe Addon for Elementor plugin <= 1.5.8 - Cross Site Scripting (XSS) vulnerability — Restaurant & Cafe Addon for Elementor 6.5 Medium2024-12-13
CVE-2024-54315 WordPress Events Addon for Elementor plugin <= 2.2.2 - Cross Site Scripting (XSS) vulnerability — Events Addon for Elementor 6.5 Medium2024-12-13
CVE-2024-54314 WordPress Primary Addon for Elementor plugin <= 1.6.0 - Cross Site Scripting (XSS) vulnerability — Primary Addon for Elementor 6.5 Medium2024-12-13
CVE-2024-54312 WordPress افزونه پیامک ووکامرس Persian WooCommerce SMS plugin <= 7.0.5 - Reflected Cross Site Scripting (XSS) vulnerability — Persian Woocommerce SMS 7.1 High2024-12-13
CVE-2024-54308 WordPress Cryptocurrency Price Widget plugin <= 1.2.3 - Cross Site Scripting (XSS) vulnerability — Cryptocurrency Price Widget 5.9 Medium2024-12-13
CVE-2024-54305 WordPress J&T Express Malaysia plugin <= 2.0.13 - Reflected Cross Site Scripting (XSS) vulnerability — J&T Express Malaysia 7.1 High2024-12-13
CVE-2024-54303 WordPress Simple Payment plugin <= 2.3.8 - Reflected Cross Site Scripting (XSS) vulnerability — Simple Payment 7.1 High2024-12-13

Vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) represent 21572 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.