Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) — Vulnerability Class 21536

21536 vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2023-24525 SAP CRM 跨站脚本漏洞 — CRM (WebClient UI) 4.3 Medium2023-02-14
CVE-2023-24522 SAP NetWeaver AS 跨站脚本漏洞 — NetWeaver AS ABAP (BSP Framework) 6.1 Medium2023-02-14
CVE-2023-24521 SAP NetWeaver AS 跨站脚本漏洞 — NetWeaver AS ABAP (BSP Framework) 6.1 Medium2023-02-14
CVE-2023-23859 SAP NetWeaver AS 跨站脚本漏洞 — NetWeaver AS for ABAP and ABAP Platform 6.1 Medium2023-02-14
CVE-2023-23858 SAP NetWeaver AS 跨站脚本漏洞 — SAP NetWeaver AS for ABAP and ABAP Platform 6.1 Medium2023-02-14
CVE-2023-23856 SAP BusinessObjects Business Intelligence 跨站脚本漏洞 — SAP BusinessObjects Business Intelligence (Web Intelligence UI) 4.3 Medium2023-02-14
CVE-2023-23852 SAP Solution Manager 跨站脚本漏洞 — Solution Manager 6.1 Medium2023-02-14
CVE-2023-0025 SAP Solution Manager 跨站脚本漏洞 — Solution Manager (BSP Application) 6.5 Medium2023-02-14
CVE-2023-0024 SAP Solution Manager 跨站脚本漏洞 — Solution Manager (BSP Application) 6.5 Medium2023-02-14
CVE-2023-0827 Cross-site Scripting (XSS) - Stored in pimcore/pimcore — pimcore/pimcore 5.4 -2023-02-14
CVE-2015-10079 juju2143 WalrusIRC parser.js parseLinks cross site scripting — WalrusIRC 3.5 Low2023-02-13
CVE-2022-4905 UDX Stateless Media Plugin class-settings.php setup_wizard_interface cross site scripting — Stateless Media Plugin 3.5 Low2023-02-13
CVE-2023-25572 React-Admin vulnerable to Cross-Site-Scripting attack on `<RichTextField>` — react-admin 5.4 Medium2023-02-13
CVE-2023-23553 X-400 Cross-Site Scripting — X-400 devices 4.5 Medium2023-02-13
CVE-2023-0810 Cross-site Scripting (XSS) - Stored in btcpayserver/btcpayserver — btcpayserver/btcpayserver 5.4 -2023-02-13
CVE-2015-10078 atwellpub Resend Welcome Email Plugin resend-welcome-email.php send_welcome_email_url cross site scripting — Resend Welcome Email Plugin 3.5 Low2023-02-12
CVE-2023-0786 Cross-site Scripting (XSS) - Generic in thorsten/phpmyfaq — thorsten/phpmyfaq 8.4 High2023-02-12
CVE-2023-0787 Cross-site Scripting (XSS) - Generic in thorsten/phpmyfaq — thorsten/phpmyfaq 8.1 High2023-02-12
CVE-2023-0791 Cross-site Scripting (XSS) - Stored in thorsten/phpmyfaq — thorsten/phpmyfaq 8.3 High2023-02-12
CVE-2023-0794 Cross-site Scripting (XSS) - Stored in thorsten/phpmyfaq — thorsten/phpmyfaq 8.3 High2023-02-12
CVE-2023-0776 Remote Code Execution in Baicells QRTB Platform — Nova 436Q 8.1 High2023-02-10
CVE-2022-34451 Dell PowerPath Management Appliance 跨站脚本漏洞 — PowerPath Management Appliance 4.8 Medium2023-02-10
CVE-2022-33934 Dell PowerScale OneFS 跨站脚本漏洞 — PowerScale OneFS 7.7 High2023-02-10
CVE-2022-45091 Cross-site Scripting in Smartpower Web — Smartpower Web 5.4 Medium2023-02-08
CVE-2022-45087 Cross-site Scripting in Smartpower Web — Smartpower Web 6.1 Medium2023-02-08
CVE-2022-45086 Cross-site Scripting in Smartpower Web — Smartpower Web 5.4 Medium2023-02-08
CVE-2023-23475 IBM Infosphere Information Server cross-site scripting — Infosphere Information Server 4.6 Medium2023-02-08
CVE-2023-0740 Cross-site Scripting (XSS) - Stored in answerdev/answer — answerdev/answer 5.4 -2023-02-08
CVE-2023-0741 Cross-site Scripting (XSS) - DOM in answerdev/answer — answerdev/answer 5.4 -2023-02-08
CVE-2023-0742 Cross-site Scripting (XSS) - Stored in answerdev/answer — answerdev/answer 5.4 -2023-02-08

Vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) represent 21536 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.