• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors

CWE-79

CVE-2021-39496

February 23, 2023 by

Eyoucms 1.5.4 lacks sanitization of input data, allowing an attacker to inject malicious code into `filename` param to trigger Reflected XSS.

CVE-2021-39499

February 23, 2023 by

A Cross-site scripting (XSS) vulnerability in Users in Qiong ICP EyouCMS 1.5.4 allows remote attackers to inject arbitrary web script or HTML via the `title` parameter in bind_email function.

CVE-2021-3950

February 23, 2023 by

django-helpdesk is vulnerable to Improper Neutralization of Input During Web Page Generation (‘Cross-site Scripting’)

CVE-2021-3938

February 23, 2023 by

snipe-it is vulnerable to Improper Neutralization of Input During Web Page Generation (‘Cross-site Scripting’)

CVE-2021-39390

February 23, 2023 by

Stored XSS in PartKeepr 1.4.0 Edit section in multiple api endpoints via name parameter.

CVE-2021-39391

February 23, 2023 by

Cross Site Scripting (XSS) vulnerability exists in the admin panel in Beego v2.0.1 via the URI path in an HTTP request, which is activated by administrators viewing the “Request Statistics” page.

  • « Go to Previous Page
  • Go to page 1
  • Interim pages omitted …
  • Go to page 1347
  • Go to page 1348
  • Go to page 1349
  • Go to page 1350
  • Go to page 1351
  • Interim pages omitted …
  • Go to page 2216
  • Go to Next Page »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE