Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) — Vulnerability Class 21535

21535 vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2023-22475 Cross-Site Scripting in Canarytoken history — canarytokens 6.3 Medium2023-01-06
CVE-2023-22455 Discourse vulnerable to Cross-site Scripting through tag descriptions — discourse 6.8 Medium2023-01-05
CVE-2023-22454 Discourse vulnerable to Cross-site Scripting through pending post titles descriptions — discourse 8.0 High2023-01-05
CVE-2023-0087 Swifty Page Manager <= 3.0.1 - Authenticated (Administrator+) Stored Cross-Site Scripting — Swifty Page Manager 5.5 Medium2023-01-05
CVE-2015-10013 WebDevStudios taxonomy-switcher Plugin taxonomy-switcher.php taxonomy_switcher_init cross site scripting — taxonomy-switcher Plugin 3.5 Low2023-01-05
CVE-2018-25065 Wikimedia mediawiki-extensions-I18nTags Unlike Parser I18nTags_body.php cross site scripting — mediawiki-extensions-I18nTags 3.5 Low2023-01-05
CVE-2022-4877 snoyberg keter Proxy.hs cross site scripting — keter 3.5 Low2023-01-05
CVE-2021-4303 shannah Xataface Installer install_form.js.php testftp cross site scripting — Xataface 2.0 Low2023-01-05
CVE-2016-15010 University of Cambridge django-ucamlookup Lookup cross site scripting — django-ucamlookup 3.5 Low2023-01-05
CVE-2018-25064 OSM Lab show-me-the-way site.js cross site scripting — show-me-the-way 3.5 Low2023-01-05
CVE-2019-25096 soerennb eXtplorer cross site scripting — eXtplorer 3.5 Low2023-01-05
CVE-2019-25095 kakwa LdapCherry URL cross site scripting — LdapCherry 3.5 Low2023-01-05
CVE-2022-4876 Kaltura mwEmbed DefaultSettings.php cross site scripting — mwEmbed 3.5 Low2023-01-04
CVE-2022-4875 fossology cross site scripting — fossology 2.4 Low2023-01-04
CVE-2021-4302 slackero phpwcms SVG File cross site scripting — phpwcms 3.5 Low2023-01-04
CVE-2022-45051 Reflected POST XSS in Axiell Iguana CMS — Iguana 6.1 Medium2023-01-04
CVE-2022-45049 Reflected XSS in Axiell Iguana CMS — Iguana 6.1 Medium2023-01-04
CVE-2022-34330 IBM Sterling B2B Integrator cross-site scripting — Sterling B2B Integrator 6.1 Medium2023-01-04
CVE-2022-22352 IBM Sterling B2B Integrator Standard Edition cross-site scripting — Sterling B2B Integrator Standard Edition 5.4 Medium2023-01-04
CVE-2023-22461 sanitize-svg Filter Bypass Allows Cross-Site Scripting (XSS) — sanitize-svg 7.6 High2023-01-04
CVE-2016-15008 oxguy3 coebot-www channel.js showChannelBoir cross site scripting — coebot-www 3.5 Low2023-01-04
CVE-2019-25094 innologi appointments Extension Appointment cross site scripting — appointments Extension 3.5 Low2023-01-04
CVE-2014-125039 kkokko NeoXplora Trainer cross site scripting — NeoXplora 3.5 Low2023-01-04
CVE-2023-22456 ViewVC XSS vulnerability in revision view changed paths — viewvc 6.1 Medium2023-01-03
CVE-2022-41336 Fortinet FortiPortal 跨站脚本漏洞 — FortiPortal 6.6 Medium2023-01-03
CVE-2023-0038 Survey Maker – Best WordPress Survey Plugin <= 3.1.3 - Unauthenticated Stored Cross-Site Scripting — Survey Maker 7.2 High2023-01-03
CVE-2022-4663 Members Import <= 1.4.2 - Self Cross-Site Scripting — Members Import 5.5 Medium2023-01-03
CVE-2012-10003 ahmyi RivetTracker cross site scripting — RivetTracker 3.5 Low2023-01-03
CVE-2012-10002 ahmyi RivetTracker css.php changeColor cross site scripting — RivetTracker 3.5 Low2023-01-03
CVE-2015-10010 OpenDNS OpenResolve API endpoints.py get cross site scripting — OpenResolve 3.1 Low2023-01-02

Vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) represent 21535 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.