Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) — Vulnerability Class 21521

21521 vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2021-28161 Eclipse Theia 跨站脚本漏洞 — Eclipse Theia 6.1 -2021-03-12
CVE-2021-21080 Adobe Connect Reflected Cross-site Scripting via query parameter — Connect 6.1 -2021-03-12
CVE-2021-21079 Adobe Connect Reflected Cross-site Scripting via archiveOffset parameter — Connect 6.1 -2021-03-12
CVE-2020-13959 Velocity Tools XSS Vulnerability — Apache Velocity Tools 6.1 -2021-03-10
CVE-2021-21325 Stored XSS in budget type — glpi 6.2 Medium2021-03-08
CVE-2020-29028 Reflected XSS issues — GateManager 6.3 Medium2021-03-05
CVE-2021-27907 Apache Superset stored XSS on Dashboard markdown — Apache Superset 5.4 -2021-03-05
CVE-2021-25313 Rancher: XSS on /v3/cluster/ — Rancher 7.1 High2021-03-05
CVE-2021-21314 XSS injection on ticket update — glpi 5.4 Medium2021-03-03
CVE-2021-21312 Stored XSS on documents — glpi 5.4 Medium2021-03-03
CVE-2021-22878 Nextcloud Server 跨站脚本漏洞 — Nextcloud Server 6.1 -2021-03-03
CVE-2020-12530 MB CONNECT LINE mymbCONNECT24 跨站脚本漏洞 — mymbCONNECT24 4.3 Medium2021-03-02
CVE-2021-21258 XSS injection in ajax/kanban — glpi 6.8 Medium2021-03-02
CVE-2020-1936 Stored XSS in Apache Ambari — Apache Ambari 6.1 -2021-03-02
CVE-2021-21515 Dell EMC SourceOne 跨站脚本漏洞 — SourceOne 9.0 Critical2021-03-01
CVE-2019-18942 Stored cross site scripting — Solutions Business Manager 5.5 Medium2021-02-26
CVE-2020-27224 Eclipse Theia 跨站脚本漏洞 — Eclipse Theia 8.8 -2021-02-24
CVE-2021-26544 Apache Livy (Incubating) is vulnerable to cross site scripting — Apache Livy (Incubating) 5.4 -2021-02-20
CVE-2020-2502 Cross-site Scripting Vulnerability in Photo Station — Photo Station 6.1 -2021-02-17
CVE-2020-29027 Reflected Cross Site Scripting — SiteManager 5.4 Medium2021-02-16
CVE-2020-29025 DOM-based Javascript injection — SiteManager Embedded (SM-E) 5.4 Medium2021-02-16
CVE-2021-21029 Magento Commerce Reflected Cross-site Scripting Vulnerability Could Lead To Arbitrary JavaScript Execution — Magento Commerce 4.8 Medium2021-02-11
CVE-2021-21023 Magento Commerce Stored Cross Site Scripting Vulnerability Could Lead To Arbitrary Code Execution — Magento Commerce 4.8 -2021-02-11
CVE-2021-21030 Magento Commerce Stored Cross-site Scripting Could Lead To Arbitrary Javascript Execution — Magento Commerce 6.1 -2021-02-11
CVE-2020-8031 obs: Stored XSS — Open Build Service 6.3 Medium2021-02-11
CVE-2021-23881 Stored Cross Site Scripting in ENS — Endpoint Security (ENS) for Windows 4.8 Medium2021-02-10
CVE-2021-20654 Wekan 跨站脚本漏洞 — Wekan 6.1 -2021-02-10
CVE-2021-21434 XSS in Survey Module — Survey 3.5 Low2021-02-08
CVE-2020-8294 Nextcloud 跨站脚本漏洞 — Nextcloud Server 5.4 -2021-02-03
CVE-2021-21043 Reflected Cross-site Scripting (XSS) on version-compare and page-compare tools — Experience Manager 6.1 Medium2021-02-02

Vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) represent 21521 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.