Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) — Vulnerability Class 21529

21529 vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2022-0678 Cross-site Scripting (XSS) - Reflected in microweber/microweber — microweber/microweber 6.1 -2022-02-19
CVE-2022-23647 Cross-site Scripting in Prism — prism 7.5 High2022-02-18
CVE-2022-20659 Cisco Prime Infrastructure and Evolved Programmable Network Manager Cross-Site Scripting Vulnerability — Cisco Prime Infrastructure 6.1 Medium2022-02-17
CVE-2022-0612 Cross-site Scripting (XSS) - Stored in livehelperchat/livehelperchat — livehelperchat/livehelperchat 5.4 -2022-02-16
CVE-2022-0589 Cross-site Scripting (XSS) - Stored in librenms/librenms — librenms/librenms 5.4 -2022-02-15
CVE-2022-23638 Cross-site Scripting in svg-sanitizer — svg-sanitizer 6.2 Medium2022-02-14
CVE-2022-23637 Stored Cross-Site-Scripting (XSS) in Markdown Editor — k-box 6.1 Medium2022-02-14
CVE-2022-0212 SpiderCalendar <= 1.5.65 - Reflected Cross-Site Scripting — SpiderCalendar 6.1 -2022-02-14
CVE-2022-0208 MapPress Maps for WordPress < 2.73.4 - Reflected Cross-Site scripting — MapPress Maps for WordPress 6.1 -2022-02-14
CVE-2022-0206 NewStatPress < 1.3.6 - Reflected Cross-Site Scripting — NewStatPress 6.1 -2022-02-14
CVE-2022-0201 Permalink Manager < 2.2.15 - Reflected Cross-Site Scripting — Permalink Manager Lite 6.1 -2022-02-14
CVE-2022-0200 Themify Portfolio Post < 1.1.7 - Reflected Cross-Site Scripting — Themify Portfolio Post 5.4 -2022-02-14
CVE-2022-0193 Complianz - GDPR/CCPA Cookie Consent < 6.0.0 - Reflected Cross-Site Scripting — Complianz – GDPR/CCPA Cookie Consent 6.1 -2022-02-14
CVE-2022-0176 PowerPack Lite for Beaver Builder < 1.2.9.3 - Reflected Cross-Site Scripting — PowerPack Lite for Beaver Builder 6.1 -2022-02-14
CVE-2021-25115 WP Photo Album Plus < 8.0.10 - Stored Cross-Site Scripting (XSS) — WP Photo Album Plus 5.4 -2022-02-14
CVE-2021-25107 Form Store to DB < 1.1.1 - Unauthenticated Stored Cross-Site Scripting — Form Store to DB 6.1 -2022-02-14
CVE-2021-25050 Remove Footer Credit < 1.0.11 - Admin+ Stored Cross-Site Scripting — Remove Footer Credit 4.8 -2022-02-14
CVE-2021-24904 Mortgage Calculators WP < 1.56 - Admin+ Stored Cross-Site Scripting — Mortgage Calculators WP 4.8 -2022-02-14
CVE-2021-24874 Newsletter, SMTP, Email marketing and Subscribe forms by Sendinblue < 3.1.31 - Reflected Cross-Site Scripting — Newsletter, SMTP, Email marketing and Subscribe forms by Sendinblue 6.1 -2022-02-14
CVE-2022-0575 Cross-site Scripting (XSS) - Stored in librenms/librenms — librenms/librenms 5.4 -2022-02-13
CVE-2022-0576 Cross-site Scripting (XSS) - Generic in librenms/librenms — librenms/librenms 5.4 -2022-02-13
CVE-2022-0571 Cross-site Scripting (XSS) - Reflected in phoronix-test-suite/phoronix-test-suite — phoronix-test-suite/phoronix-test-suite 6.1 -2022-02-13
CVE-2022-0565 Cross-site Scripting in pimcore/pimcore — pimcore/pimcore 7.6 High2022-02-12
CVE-2022-23707 Elastic Stack Kibana跨站脚本漏洞 — Kibana 5.4 -2022-02-11
CVE-2021-4046 TCMAN GIM Cross-Site Scripting (XSS) — GIM 5.4 Medium2022-02-11
CVE-2021-4035 Wocu Monitoring stored Cross-Site Scripting (XSS) — Wocu Monitoring 3.5 Low2022-02-11
CVE-2020-13672 Drupal跨站脚本漏洞 — Core 6.1 -2022-02-11
CVE-2020-13669 Drupal core 跨站脚本漏洞 — Core 6.1 -2022-02-11
CVE-2022-0020 Cortex XSOAR: Stored Cross-Site Scripting (XSS) Vulnerability in Web Interface — Cortex XSOAR 6.8 Medium2022-02-10
CVE-2022-0558 Cross-site Scripting (XSS) - Stored in microweber/microweber — microweber/microweber 5.4 -2022-02-10

Vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) represent 21529 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.