Fallos del tipo CWE-79

26.052 resultados
CVE-2025-0133LOWPAN-OS: Reflected Cross-Site Scripting (XSS) Vulnerability in GlobalProtect Gateway and PortalEPSS 43.5%CVE-2022-45365HIGHWordPress Stock Ticker Plugin <= 3.23.2 is vulnerable to Cross Site Scripting (XSS)EPSS 43.4%CVE-2020-13954Apache CXF Reflected XSS in the services listing page via the styleSheetPathEPSS 43.0%CVE-2021-41184MEDIUMXSS in the `of` option of the `.position()` utilEPSS 42.8%CVE-2022-43568HIGHReflected Cross-Site Scripting via the radio template in Splunk EnterpriseEPSS 42.8%CVE-2024-53457MEDIUMA stored cross-site scripting (XSS) vulnerability in the Device Settings section of LibreNMS v24.9.0 to v24.10.0 allows attackers to executeEPSS 42.5%CVE-2022-28818MEDIUMColdFusion Reflected Cross-Site Scripting could lead to Arbitrary Code ExecutionEPSS 41.2%CVE-2023-0028MEDIUMCross-site Scripting (XSS) - Stored in linagora/twakeEPSS 40.9%CVE-2021-32671CRITICALXSS vulnerability with translatorEPSS 39.7%CVE-2023-30777HIGHWordPress Advanced Custom Fields / Advanced Custom Fields PRO plugins <= 6.1.5 vulnerable to Cross Site Scripting (XSS)EPSS 38.8%CVE-2024-22241MEDIUMAria Operations for Networks contains a cross site scripting vulnerability. A malicious actor with admin privileges can inject a malicious pEPSS 37.8%CVE-2021-41182MEDIUMXSS in the `altField` option of the Datepicker widgetEPSS 37.8%CVE-2025-6023HIGHAn open redirect vulnerability has been identified in Grafana OSS that can be exploited to achieve XSS attacks. The vulnerability was introdEPSS 37.6%CVE-2018-5550Versions of Epson AirPrint released prior to January 19, 2018 contain a reflective cross-site scripting (XSS) vulnerability, which can allowEPSS 37.5%CVE-2022-3062MEDIUMSimple File List < 4.4.12 - Reflected Cross-Site ScriptingEPSS 37.4%CVE-2021-20323A POST based reflected Cross Site Scripting vulnerability on has been identified in Keycloak.EPSS 37.2%CVE-2021-21087MEDIUMColdFusion Improper neutralization of web input during page generation could lead to arbitrary JavaScript execution in the browserEPSS 37.1%CVE-2023-46127MEDIUMFrappe vulnerable to HTML injection by any Desk userEPSS 37.0%CVE-2022-28851MEDIUMAEM Reflected XSS Arbitrary code executionEPSS 36.8%CVE-2024-50352MEDIUMLibreNMS has a Stored XSS ('Cross-site Scripting') in librenms/includes/html/pages/device/overview/services.inc.phpEPSS 36.7%