Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) — Vulnerability Class 21534

21534 vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2021-24556 Email Subscriber <= 1.1 - Unauthenticated Stored Cross-Site Scripting (XSS) — Email Subscriber 6.1 -2021-08-23
CVE-2021-24547 KN Fix Your Title <= 1.0.1 - Authenticated Stored XSS — KN Fix Your Title 5.4 -2021-08-23
CVE-2021-24533 Maintenance < 4.03 - Authenticated Stored XSS — Maintenance 4.8 -2021-08-23
CVE-2021-24529 Grid Gallery < 1.2.5 - Authenticated Stored Cross Site Scripting (XSS) — Grid Gallery – Photo Image Grid Gallery 5.4 -2021-08-23
CVE-2021-24531 Charitable – Donation Plugin < 1.6.51 - Authenticated Stored Cross-Site Scripting (XSS) — Charitable – Donation Plugin 5.4 -2021-08-23
CVE-2021-24524 GiveWP < 2.12.0 - Authenticated Stored XSS — GiveWP – Donation Plugin and Fundraising Platform 4.8 -2021-08-23
CVE-2021-24486 Simple Social Media Share Buttons < 3.2.3 - Contributor+ Stored XSS — Simple Social Media Share Buttons – Social Sharing for Everyone 5.4 -2021-08-23
CVE-2021-3619 Rapid7 Velociraptor Notebooks Authenticated Persistent XSS — Velociraptor 3.5 Low2021-08-17
CVE-2021-37710 Cross-Site Scripting via SVG media files — platform 8.0 High2021-08-16
CVE-2021-38315 SP Project & Document Manager <= 4.25 Reflected Cross-Site Scripting — SP Project & Document Manager 6.1 Medium2021-08-16
CVE-2021-34641 SEOPress <= 5.0.0 – 5.0.3 Authenticated Stored Cross-Site Scripting — SEOPress 6.4 Medium2021-08-16
CVE-2021-22936 Pulse Secure Pulse Connect Secure 跨站脚本漏洞 — Pulse Connect Secure 6.1 -2021-08-16
CVE-2021-34667 Calendar_plugin <= 1.0 Reflected Cross-Site Scripting — Calendar_plugin 6.1 Medium2021-08-16
CVE-2021-34666 Add Sidebar <= 2.0.0 Reflected Cross-Site Scripting — Add Sidebar 6.1 Medium2021-08-16
CVE-2021-34665 WP SEO Tags <= 2.2.7 Reflected Cross-Site Scripting — WP SEO Tags 6.1 Medium2021-08-16
CVE-2021-34664 Moova for WooCommerce <= 3.5 Reflected Cross-Site Scripting — Moova for WooCommerce 6.1 Medium2021-08-16
CVE-2021-34659 Plugmatter Pricing Table Lite <= 1.0.32 Reflected Cross-Site Scripting — Plugmatter Pricing Table Lite 6.1 Medium2021-08-16
CVE-2021-34663 jQuery Tagline Rotator <= 0.1.5 Reflected Cross-Site Scripting — jQuery Tagline Rotator 6.1 Medium2021-08-16
CVE-2021-34658 Simple Popup Newsletter <= 1.4.7 Reflected Cross-Site Scripting — Simple Popup Newsletter 6.1 Medium2021-08-16
CVE-2021-34655 WP Songbook <= 2.0.11 Reflected Cross-Site Scripting — WP Songbook 6.1 Medium2021-08-16
CVE-2021-34657 TypoFR <= 0.11 Reflected Cross-Site Scripting — TypoFR 6.1 Medium2021-08-16
CVE-2021-34656 2Way VideoCalls and Random Chat - HTML5 Webcam Videochat <= 5.2.7 Reflected Cross-Site Scripting — 2Way VideoCalls and Random Chat - HTML5 Webcam Videochat 6.1 Medium2021-08-16
CVE-2021-34651 Scribble Maps <= 1.2 Reflected Cross-Site Scripting — Scribble Maps 6.1 Medium2021-08-16
CVE-2021-34654 Custom Post Type Relations <= 1.0 Reflected Cross-Site Scripting — Custom Post Type Relations 6.1 Medium2021-08-16
CVE-2021-34653 WP Fountain <= 1.5.9 Reflected Cross-Site Scripting — WP Fountain 6.1 Medium2021-08-16
CVE-2021-34649 Simple Behance Portfolio <= 0.2 Reflected Cross-Site Scripting — Simple Behance Portfolio 6.1 Medium2021-08-16
CVE-2021-34652 Media Usage <= 0.0.4 Reflected Cross-Site Scripting — Media Usage 6.1 Medium2021-08-16
CVE-2021-34642 Smart Email Alerts <= 1.0.10 Reflected Cross-Site Scripting — Smart Email Alerts 6.1 Medium2021-08-16
CVE-2021-34644 Multiplayer Games <= 3.7 Reflected Cross-Site Scripting — Multiplayer Games 6.1 Medium2021-08-16
CVE-2021-34643 Skaut bazar <= 1.3.2 Reflected Cross-Site Scripting — Skaut Bazar 6.1 Medium2021-08-16

Vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) represent 21534 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.