Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) — Vulnerability Class 21546

21546 vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2021-4285 Nagios NCPA tail.html cross site scripting — NCPA 3.5 Low2022-12-27
CVE-2021-4284 OpenMRS HTML Form Entry UI Framework Integration Module cross site scripting — HTML Form Entry UI Framework Integration Module 3.5 Low2022-12-27
CVE-2021-4283 FreeBPX voicemail Settings ssettings.php cross site scripting — voicemail 2.4 Low2022-12-27
CVE-2021-4282 FreePBX voicemail page.voicemail.php cross site scripting — voicemail 3.5 Low2022-12-27
CVE-2019-25088 ytti Oxidized Web conf_search.haml cross site scripting — Oxidized Web 3.5 Low2022-12-27
CVE-2022-4755 FlatPress Media Manager Plugin panel.mediamanager.file.php main cross site scripting — FlatPress 3.5 Low2022-12-27
CVE-2019-25086 IET-OU Open Media Player timedtext.php webvtt cross site scripting — Open Media Player 3.5 Low2022-12-27
CVE-2022-4740 kkFileView picturesPreview setWatermarkAttribute cross site scripting — kkFileView 3.5 Low2022-12-25
CVE-2022-4738 SourceCodester Blood Bank Management System User Registration cross site scripting — Blood Bank Management System 4.3 Medium2022-12-25
CVE-2022-4736 Venganzas del Pasado cross site scripting — Venganzas del Pasado 3.5 Low2022-12-25
CVE-2019-25084 Hide Files on GitHub options.js addEventListener cross site scripting — Hide Files on GitHub 3.5 Low2022-12-25
CVE-2022-4735 asrashley dash-live DOM Node media.js ready cross site scripting — dash-live 3.5 Low2022-12-25
CVE-2022-4731 myapnea Title cross site scripting — myapnea 2.4 Low2022-12-25
CVE-2022-4733 Cross-site Scripting (XSS) - Stored in openemr/openemr — openemr/openemr 5.4 -2022-12-24
CVE-2022-44510 AEM Reflected XSS Arbitrary code execution — Experience Manager 5.4 Medium2022-12-23
CVE-2022-4697 ProfilePress <= 4.5.0 - Authenticated (Administrator+) Stored Cross-Site Scripting — Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress 5.5 Medium2022-12-23
CVE-2022-4698 ProfilePress <= 4.5.0 - Authenticated (Administrator+) Stored Cross-Site Scripting via Form Settings — Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress 5.5 Medium2022-12-23
CVE-2022-4690 Cross-site Scripting (XSS) - Stored in usememos/memos — usememos/memos 5.4 -2022-12-23
CVE-2022-4691 Cross-site Scripting (XSS) - Stored in usememos/memos — usememos/memos 5.4 -2022-12-23
CVE-2022-4692 Cross-site Scripting (XSS) - Stored in usememos/memos — usememos/memos 5.4 -2022-12-23
CVE-2022-4694 Cross-site Scripting (XSS) - Stored in usememos/memos — usememos/memos 5.4 -2022-12-23
CVE-2022-4695 Cross-site Scripting (XSS) - Stored in usememos/memos — usememos/memos 5.4 -2022-12-23
CVE-2022-22456 IBM Security Verify Governance, Identity Manager cross-site scripting — Security Verify Governance, Identity Manager 4.2 Medium2022-12-22
CVE-2022-4647 Cross-site Scripting (XSS) - Stored in microweber/microweber — microweber/microweber 4.8 -2022-12-22
CVE-2022-30679 AEM Reflected XSS Arbitrary code execution — Experience Manager 5.4 Medium2022-12-21
CVE-2022-35693 AEM Reflected XSS Arbitrary code execution — Experience Manager 5.4 Medium2022-12-21
CVE-2022-35695 AEM Reflected XSS Arbitrary code execution — Experience Manager 5.4 Medium2022-12-21
CVE-2022-42345 AEM Reflected XSS Arbitrary code execution — Experience Manager 5.4 Medium2022-12-21
CVE-2022-42346 AEM Reflected XSS Arbitrary code execution — Experience Manager 5.4 Medium2022-12-21
CVE-2022-42348 AEM Reflected XSS Arbitrary code execution — Experience Manager 5.4 Medium2022-12-21

Vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) represent 21546 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.