• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors

CWE-79

CVE-2021-30058

February 23, 2023 by

Knowage Suite before 7.4 is vulnerable to cross-site scripting (XSS). An attacker can inject arbitrary external script in ‘/knowagecockpitengine/api/1.0/pages/execute’ via the ‘SBI_HOST’ parameter.

CVE-2021-30071

February 23, 2023 by

A cross-site scripting (XSS) vulnerability in /admin/list_key.html of HestiaCP before v1.3.5 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.

CVE-2021-30074

February 23, 2023 by

docsify 4.12.1 is affected by Cross Site Scripting (XSS) because the search component does not appropriately encode Code Blocks and mishandles the ” character.

CVE-2021-30082

February 23, 2023 by

An issue was discovered in Gris CMS v0.1. There is a Persistent XSS vulnerability which allows remote attackers to inject arbitrary web script or HTML via admin/dashboard.

CVE-2021-30083

February 23, 2023 by

An issue was discovered in Mediat 1.4.1. There is a Reflected XSS vulnerability which allows remote attackers to inject arbitrary web script or HTML without authentication via the ‘return’ parameter in login.php.

CVE-2021-30086

February 23, 2023 by

Cross Site Scripting (XSS) vulnerability exists in KindEditor (Chinese versions) 4.1.12, which can be exploited by an attacker to obtain user cookie information.

  • « Go to Previous Page
  • Go to page 1
  • Interim pages omitted …
  • Go to page 1477
  • Go to page 1478
  • Go to page 1479
  • Go to page 1480
  • Go to page 1481
  • Interim pages omitted …
  • Go to page 2216
  • Go to Next Page »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE