• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors

CWE-79

CVE-2021-37524

February 23, 2023 by

Cross Site Scripting (XSS) vulnerability in FusionPBX 4.5.26 allows remote unauthenticated users to inject arbitrary web script or HTML via an unsanitized “path” parameter in resources/login.php.

CVE-2021-37534

February 23, 2023 by

app/View/GalaxyClusters/add.ctp in MISP 2.4.146 allows Stored XSS when forking a galaxy cluster.

CVE-2021-37542

February 23, 2023 by

In JetBrains TeamCity before 2020.2.3, XSS was possible.

CVE-2021-37552

February 23, 2023 by

In JetBrains YouTrack before 2021.2.17925, stored XSS was possible.

CVE-2021-37448

February 23, 2023 by

Cross Site Scripting (XSS) exists in NCH IVM Attendant v5.12 and earlier via the Mailbox name (stored).

CVE-2021-37449

February 23, 2023 by

Cross Site Scripting (XSS) exists in NCH IVM Attendant v5.12 and earlier via /ogmlist?folder= (reflected).

  • « Go to Previous Page
  • Go to page 1
  • Interim pages omitted …
  • Go to page 1389
  • Go to page 1390
  • Go to page 1391
  • Go to page 1392
  • Go to page 1393
  • Interim pages omitted …
  • Go to page 2216
  • Go to Next Page »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE