CWE-79 在Web页面生成时对输入的转义处理不恰当(跨站脚本) 类弱点 21535 条 CVE 漏洞汇总,含 AI 中文分析。
| CVE ID | 标题 | CVSS | 风险等级 | Published |
|---|---|---|---|---|
| CVE-2025-54295 | DJ-Extensions DJ-Reviews 跨站脚本漏洞 — DJ-Reviews component for Joomla | 6.1 | - | 2025-07-23 |
| CVE-2025-54296 | Files 跨站脚本漏洞 — ProFiles component for Joomla | 6.1 | - | 2025-07-23 |
| CVE-2025-27930 | ZOHO ManageEngine Applications Manager 安全漏洞 — Applications Manager | 6.4 | Medium | 2025-07-23 |
| CVE-2024-53288 | Synology Router Manager 跨站脚本漏洞 — Synology Router Manager (SRM) | 5.9 | Medium | 2025-07-23 |
| CVE-2024-53287 | Synology Router Manager 跨站脚本漏洞 — Synology Router Manager (SRM) | 5.9 | Medium | 2025-07-23 |
| CVE-2025-5753 | WordPress plugin Valuation Calculator 跨站脚本漏洞 — Commercial Real Estate Valuation Calculator | 6.4 | Medium | 2025-07-23 |
| CVE-2025-6261 | WordPress plugin Fleetwire Fleet Management 跨站脚本漏洞 — Fleetwire Fleet Management | 6.4 | Medium | 2025-07-23 |
| CVE-2025-43488 | HP Poly Clariti Manager 安全漏洞 — Poly Clariti Manager | 6.1 | - | 2025-07-22 |
| CVE-2025-43486 | HP Poly Clariti Manager 安全漏洞 — Poly Clariti Manager | 5.4 | - | 2025-07-22 |
| CVE-2025-43484 | HP Poly Clariti Manager 安全漏洞 — Poly Clariti Manager | 6.1 | - | 2025-07-22 |
| CVE-2025-41425 | DuraComm SPM-500 DP-10iN-100-MU 跨站脚本漏洞 — SPM-500 DP-10iN-100-MU | 8.1 | High | 2025-07-22 |
| CVE-2025-8015 | WordPress plugin Shortcodes Ultimate 跨站脚本漏洞 — WP Shortcodes Plugin — Shortcodes Ultimate | 6.4 | Medium | 2025-07-22 |
| CVE-2025-4294 | HotelRunner B2B 跨站脚本漏洞 — B2B | 4.8 | Medium | 2025-07-22 |
| CVE-2025-34141 | ETQ Reliance CG 安全漏洞 — Reliance CG (legacy) | 6.1 | - | 2025-07-22 |
| CVE-2025-4284 | Rolantis Agentis 跨站脚本漏洞 — Agentis | 6.1 | Medium | 2025-07-22 |
| CVE-2025-7644 | WordPress plugin Pixel Gallery Addons for Elementor 跨站脚本漏洞 — Pixel Gallery Addons for Elementor – Easy Grid, Creative Gallery, Drag and Drop Grid, Custom Grid Layout, Portfolio Gallery | 6.4 | Medium | 2025-07-22 |
| CVE-2025-7495 | WordPress plugin WP-Members Membership Plugin 跨站脚本漏洞 — WP-Members Membership Plugin | 6.4 | Medium | 2025-07-22 |
| CVE-2025-7951 | Code-Projects Public Chat Room 代码注入漏洞 — Public Chat Room | 3.5 | Low | 2025-07-22 |
| CVE-2025-6831 | WordPress plugin User Registration 跨站脚本漏洞 — User Registration & Membership – Free & Paid Memberships, Subscriptions, Content Restriction, User Profile, Custom User Registration & Login Builder | 6.4 | Medium | 2025-07-22 |
| CVE-2025-5240 | WordPress plugin CRM and Lead Management by vcita 跨站脚本漏洞 — CRM and Lead Management by vcita | 6.4 | Medium | 2025-07-22 |
| CVE-2025-7946 | PHPGurukul Apartment Visitors Management System 安全漏洞 — Apartment Visitors Management System | 4.3 | Medium | 2025-07-22 |
| CVE-2025-7944 | PHPGurukul Taxi Stand Management System 代码注入漏洞 — Taxi Stand Management System | 4.3 | Medium | 2025-07-21 |
| CVE-2025-7943 | PHPGurukul Taxi Stand Management System 代码注入漏洞 — Taxi Stand Management System | 4.3 | Medium | 2025-07-21 |
| CVE-2025-7486 | WordPress plugin Ebook Store 跨站脚本漏洞 — Ebook Store | 4.4 | Medium | 2025-07-21 |
| CVE-2025-7942 | PHPGurukul Taxi Stand Management System 代码注入漏洞 — Taxi Stand Management System | 3.5 | Low | 2025-07-21 |
| CVE-2025-7941 | PHPGurukul Time Table Generator System 安全漏洞 — Time Table Generator System | 3.5 | Low | 2025-07-21 |
| CVE-2025-54128 | HAXcms with nodejs backend 跨站脚本漏洞 — issues | 6.1 | - | 2025-07-21 |
| CVE-2025-53528 | Cadwyn 跨站脚本漏洞 — cadwyn | 7.6 | High | 2025-07-21 |
| CVE-2025-7716 | Drupal Real-time SEO for Drupal 跨站脚本漏洞 — Real-time SEO for Drupal | 6.1 | - | 2025-07-21 |
| CVE-2025-7715 | Drupal Block Attributes 安全漏洞 — Block Attributes | 6.1 | - | 2025-07-21 |
CWE-79(在Web页面生成时对输入的转义处理不恰当(跨站脚本)) 是常见的弱点类别,本平台收录该类弱点关联的 21535 条 CVE 漏洞。