Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) — Vulnerability Class 21504

21504 vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-69330 WordPress Prestige theme < 1.4.1 - Reflected Cross Site Scripting (XSS) vulnerability — Prestige 6.1AIMediumAI2026-02-20
CVE-2025-69323 WordPress Slimstat Analytics plugin <= 5.3.2 - Reflected Cross Site Scripting (XSS) vulnerability — Slimstat Analytics 6.1AIMediumAI2026-02-20
CVE-2025-69324 WordPress NEX-Forms plugin <= 9.1.7 - Cross Site Scripting (XSS) vulnerability — NEX-Forms 5.4AIMediumAI2026-02-20
CVE-2025-69302 WordPress DesignThemes Core Features plugin <= 2.3 - Reflected Cross Site Scripting (XSS) vulnerability — DesignThemes Core Features 6.1AIMediumAI2026-02-20
CVE-2025-69296 WordPress Aardvark theme <= 4.6.3 - Reflected Cross Site Scripting (XSS) vulnerability — Aardvark 6.1AIMediumAI2026-02-20
CVE-2025-68880 WordPress Simple Archive Generator plugin <= 5.2 - Reflected Cross Site Scripting (XSS) vulnerability — Simple Archive Generator 6.1AIMediumAI2026-02-20
CVE-2025-69011 WordPress Cool Tag Cloud plugin <= 2.29 - Cross Site Scripting (XSS) vulnerability — Cool Tag Cloud 5.4AIMediumAI2026-02-20
CVE-2025-68854 WordPress ID Arrays plugin <= 2.1.2 - POST-Based Reflected Cross Site Scripting (XSS) vulnerability — ID Arrays 6.1AIMediumAI2026-02-20
CVE-2025-68863 WordPress iContact for Gravity Forms plugin <= 1.3.2 - Reflected Cross Site Scripting (XSS) vulnerability — iContact for Gravity Forms 6.1AIMediumAI2026-02-20
CVE-2025-68856 WordPress Mopinion Feedback Form plugin <= 1.1.1 - Reflected Cross Site Scripting (XSS) vulnerability — Mopinion Feedback Form 6.1AIMediumAI2026-02-20
CVE-2025-68847 WordPress iSape plugin <= 0.72 - Reflected Cross Site Scripting (XSS) vulnerability — iSape 6.1AIMediumAI2026-02-20
CVE-2025-68848 WordPress amr cron manager plugin <= 2.3 - Reflecte dCross Site Scripting (XSS) vulnerability — amr cron manager 6.1AIMediumAI2026-02-20
CVE-2025-68845 WordPress eDS Responsive Menu plugin <= 1.2 - Reflected Cross Site Scripting (XSS) vulnerability — eDS Responsive Menu 6.1AIMediumAI2026-02-20
CVE-2025-68852 WordPress Court Reservation plugin <= 1.10.13 - Cross Site Scripting (XSS) vulnerability — Court Reservation 7.1 High2026-02-20
CVE-2025-68846 WordPress Asynchronous Javascript plugin <= 1.3.5 - Reflected Cross Site Scripting (XSS) vulnerability — Asynchronous Javascript 6.1AIMediumAI2026-02-20
CVE-2025-68843 WordPress FeedWordPress Advanced Filters plugin <= 0.6.2 - Reflected Cross Site Scripting (XSS) vulnerability — FeedWordPress Advanced Filters 6.1AIMediumAI2026-02-20
CVE-2025-68842 WordPress Widget Logic Visual plugin <= 1.52 - Reflected Cross Site Scripting (XSS) vulnerability — Widget Logic Visual 6.1AIMediumAI2026-02-20
CVE-2025-68844 WordPress Membee Login plugin <= 2.3.6 - Cross Site Scripting (XSS) vulnerability — Membee Login 6.1AIMediumAI2026-02-20
CVE-2025-68501 WordPress Mollie Payments for WooCommerce plugin <= 8.1.1 - Reflected Cross Site Scripting (XSS) vulnerability — Mollie Payments for WooCommerce 6.1AIMediumAI2026-02-20
CVE-2025-68495 WordPress JetEngine plugin <= 3.8.0 - Reflected Cross Site Scripting (XSS) vulnerability — JetEngine 6.1AIMediumAI2026-02-20
CVE-2025-68037 WordPress Export Media URLs plugin <= 2.2 - Reflected Cross Site Scripting (XSS) vulnerability — Export Media URLs 6.1AIMediumAI2026-02-20
CVE-2025-68031 WordPress افزونه پیامک حرفه ای فراز اس ام اس plugin <= 2.7.3 - Reflected Cross Site Scripting (XSS) vulnerability — افزونه پیامک حرفه ای فراز اس ام اس 6.1AIMediumAI2026-02-20
CVE-2025-67984 WordPress NPS computy plugin <= 2.8.2 - Cross Site Scripting (XSS) vulnerability — NPS computy 6.1AIMediumAI2026-02-20
CVE-2025-67990 WordPress GMap Targeting plugin <= 1.1.7 - Cross Site Scripting (XSS) vulnerability — GMap Targeting 6.1AIMediumAI2026-02-20
CVE-2025-67991 WordPress User Extra Fields plugin <= 16.8 - Cross Site Scripting (XSS) vulnerability — User Extra Fields 6.1AIMediumAI2026-02-20
CVE-2025-67978 WordPress Educare plugin <= 1.6.1 - Cross Site Scripting (XSS) vulnerability — Educare 6.1AIMediumAI2026-02-20
CVE-2025-67972 WordPress Prague plugin <= 2.2.8 - Cross Site Scripting (XSS) vulnerability — Prague 6.1AIMediumAI2026-02-20
CVE-2025-67971 WordPress FluentCart plugin < 1.3.0 - Cross Site Scripting (XSS) vulnerability — FluentCart 6.1AIMediumAI2026-02-20
CVE-2025-60183 WordPress Silencesoft RSS Reader Plugin <= 0.6 - Cross Site Scripting (XSS) Vulnerability — Silencesoft RSS Reader 6.1AIMediumAI2026-02-20
CVE-2025-53233 WordPress Storyform plugin <= 0.6.14 - Cross Site Scripting (XSS) Vulnerability — Storyform 6.1AIMediumAI2026-02-20

Vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) represent 21504 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.