• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors

CWE-79

CVE-2019-16182

February 26, 2023 by

A reflected cross-site scripting (XSS) vulnerability was found in Limesurvey before 3.17.14 that allows remote attackers to inject arbitrary web script or HTML via extensions of uploaded files.

CVE-2019-16193

February 26, 2023 by

In ArcGIS Enterprise 10.6.1, a crafted IFRAME element can be used to trigger a Cross Frame Scripting (XFS) attack through the EDIT MY PROFILE feature.

CVE-2019-16117

February 26, 2023 by

Cross site scripting (XSS) in the photo-gallery (10Web Photo Gallery) plugin before 1.5.35 for WordPress exists via admin/models/Galleries.php.

CVE-2019-16118

February 26, 2023 by

Cross site scripting (XSS) in the photo-gallery (10Web Photo Gallery) plugin before 1.5.35 for WordPress exists via admin/controllers/Options.php.

CVE-2019-16126

February 26, 2023 by

Grav through 1.6.15 allows (Stored) Cross-Site Scripting due to JavaScript execution in SVG images.

CVE-2019-16130

February 26, 2023 by

YII2-CMS v1.0 has XSS in protectedcoremoduleshomemodelsContact.php via a name field to /contact.html.

  • « Go to Previous Page
  • Go to page 1
  • Interim pages omitted …
  • Go to page 1132
  • Go to page 1133
  • Go to page 1134
  • Go to page 1135
  • Go to page 1136
  • Interim pages omitted …
  • Go to page 2216
  • Go to Next Page »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE