Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) — Vulnerability Class 21529

21529 vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2021-34361 Reflected XSS Vulnerability in Proxy Server — Proxy Server 5.3 Medium2022-02-25
CVE-2021-34359 Stored XSS Vulnerability in Proxy Server — Proxy Server 6.9 Medium2022-02-25
CVE-2022-24709 Cross site scripting in @awsui/components-react — awsui-documentation 8.8 High2022-02-24
CVE-2022-25307 WP Statistics <= 13.1.5 Unauthenticated Stored Cross-Site Scripting via platform — WP Statistics 7.2 High2022-02-24
CVE-2022-25305 WP Statistics <= 13.1.5 Unauthenticated Stored Cross-Site Scripting via IP — WP Statistics 7.2 High2022-02-24
CVE-2022-25306 WP Statistics <= 13.1.5 Unauthenticated Stored Cross-Site Scripting via browser — WP Statistics 7.2 High2022-02-24
CVE-2022-0683 Essential Addons for Elementor Lite <= 5.0.8 Reflected Cross-Site Scripting — Essential Addons for Elementor Lite 6.1 Medium2022-02-24
CVE-2022-0710 Header Footer Code Manager <= 1.1.16 Reflected XSS — Header Footer Code Manager 6.1 Medium2022-02-24
CVE-2022-0653 Profile Builder – User Profile & User Registration Forms <= 3.6.1 Reflected Cross-Site Scripting — Profile Builder – User Profile & User Registration Forms 6.1 Medium2022-02-24
CVE-2020-14502 Rockwell Automation 1734-AENTR 跨站脚本漏洞 — 1734-AENTR 6.1 -2022-02-24
CVE-2022-24708 Stored XSS vulnerability in anuko/timetracker — timetracker 6.5 Medium2022-02-23
CVE-2022-0719 Cross-site Scripting (XSS) - Reflected in microweber/microweber — microweber/microweber 6.1 -2022-02-23
CVE-2021-26256 WordPress Survey Maker plugin <= 2.0.6 - Unauthenticated Stored Cross-Site Scripting (XSS) vulnerability — Survey Maker (WordPress plugin) 4.7 Medium2022-02-21
CVE-2022-0288 Ad Inserter < 2.7.10 - Reflected Cross-Site Scripting — Ad Inserter – Ad Manager & AdSense Ads 6.1 -2022-02-21
CVE-2022-0252 Give < 2.17.3 - Reflected Cross-Site Scripting via Import Tool — GiveWP – Donation Plugin and Fundraising Platform 6.1 -2022-02-21
CVE-2022-0234 WOOCS < 1.3.7.5 - Reflected Cross-Site Scripting — WOOCS – Currency Switcher for WooCommerce. Professional and Free multi currency plugin – Pay in selected currency 6.1 -2022-02-21
CVE-2022-0211 Shield Security < 13.0.6 - Admin+ Stored Cross-Site Scripting — Shield Security – Scanners, Security Hardening, Brute Force Protection & Firewall 4.8 -2022-02-21
CVE-2022-0186 Image Photo Gallery Final Tiles Grid < 3.5.3 - Contributor+ Stored Cross-Site Scripting — Image Photo Gallery Final Tiles Grid 5.4 -2022-02-21
CVE-2021-25101 Anti-Malware Security and Brute-Force Firewall < 4.20.94 - Admin+ Reflected Cross-Site Scripting — Anti-Malware Security and Brute-Force Firewall 4.8 -2022-02-21
CVE-2021-25100 Give < 2.17.3 - Reflected Cross-Site Scripting via Donation Forms Dashboard — GiveWP – Donation Plugin and Fundraising Platform 6.1 -2022-02-21
CVE-2021-25099 Give < 2.17.3 - Unauthenticated Reflected Cross-Site Scripting — GiveWP – Donation Plugin and Fundraising Platform 6.1 -2022-02-21
CVE-2021-25060 Five Star Business Profile and Schema < 2.1.7 - Subscriber+ Page Creation & Settings Update to Stored XSS — Five Star Business Profile and Schema 5.4 -2022-02-21
CVE-2021-25058 The Buffer Button <= 1.0 - Authenticated Stored Cross Site Scripting (XSS) — The Buffer Button 5.4 -2022-02-21
CVE-2021-25057 Translation Exchange <= 1.0.14 - Authenticated Stored Cross-Site Scripting (XSS) — Translation Exchange – Translate Your WordPress Site In Minutes! 5.4 -2022-02-21
CVE-2021-25055 FeedWordPress < 2022.0123 - Reflected Cross-Site Scripting (XSS) — FeedWordPress 6.1 -2022-02-21
CVE-2021-24921 Advanced Database Cleaner < 3.0.4 - Reflected Cross-Site Scripting — Advanced Database Cleaner 6.1 -2022-02-21
CVE-2022-23054 Openmct XSS via the “Summary Widget” — openmct 6.1 Medium2022-02-20
CVE-2022-23053 Openmct XSS via the “Condition Widget” — openmct 6.1 Medium2022-02-20
CVE-2022-22126 Openmct XSS via the “Web Page” element — openmct 6.1 Medium2022-02-20
CVE-2022-0690 Cross-site Scripting (XSS) - Reflected in microweber/microweber — microweber/microweber 6.1 -2022-02-19

Vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) represent 21529 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.