• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors

CWE-79

CVE-2019-10105

February 26, 2023 by

CMS Made Simple 2.2.10 has a Self-XSS vulnerability via the Layout Design Manager “Name” field, which is reachable via a “Create a new Template” action to the Design Manager.

CVE-2019-10106

February 26, 2023 by

CMS Made Simple 2.2.10 has XSS via the ‘moduleinterface.php’ Name field, which is reachable via an “Add Category” action to the “Site Admin Settings – News module” section.

CVE-2019-10107

February 26, 2023 by

CMS Made Simple 2.2.10 has XSS via the myaccount.php “Email Address” field, which is reachable via the “My Preferences -> My Account” section.

CVE-2019-10111

February 26, 2023 by

An issue was discovered in GitLab Community and Enterprise Edition before 11.7.8, 11.8.x before 11.8.4, and 11.9.x before 11.9.2. It allows persistent XSS in the merge request “resolve conflicts” page.

CVE-2019-10118

February 26, 2023 by

Snipe-IT before 4.6.14 has XSS, as demonstrated by log_meta values and the user’s last name in the API.

CVE-2019-1010235

February 26, 2023 by

Frog CMS 1.1 is affected by: Cross Site Scripting (XSS). The impact is: Cookie stealing, Alert pop-up on page, Redirecting to another phishing site, Executing browser exploits. The component is: Snippets.

  • « Go to Previous Page
  • Go to page 1
  • Interim pages omitted …
  • Go to page 1230
  • Go to page 1231
  • Go to page 1232
  • Go to page 1233
  • Go to page 1234
  • Interim pages omitted …
  • Go to page 2216
  • Go to Next Page »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE