• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors

CWE-79

CVE-2020-26120

February 26, 2023 by

XSS exists in the MobileFrontend extension for MediaWiki before 1.34.4 because section.line is mishandled during regex section line replacement from PageGateway. Using crafted HTML, an attacker can elicit an XSS attack via jQuery’s parseHTML method, which can cause image callbacks to fire even without the element being appended to the DOM.

CVE-2020-26134

February 26, 2023 by

Live Helper Chat before 3.44v allows stored XSS in chat messages with an operator via BBCode.

CVE-2020-26135

February 26, 2023 by

Live Helper Chat before 3.44v allows reflected XSS via the setsettingajax PATH_INFO.

CVE-2020-26035

February 26, 2023 by

An issue was discovered in Zammad before 3.4.1. There is Stored XSS via a Tags element in a TIcket.

CVE-2020-26043

February 26, 2023 by

An issue was discovered in Hoosk CMS v1.8.0. There is a XSS vulnerability in install/index.php

CVE-2020-26046

February 26, 2023 by

FUEL CMS 1.4.11 has stored XSS in Blocks/Navigation/Site variables. This could lead to cookie stealing and other malicious actions. This vulnerability can be exploited with an authenticated account and also impact other visitors.

  • « Go to Previous Page
  • Go to page 1
  • Interim pages omitted …
  • Go to page 741
  • Go to page 742
  • Go to page 743
  • Go to page 744
  • Go to page 745
  • Interim pages omitted …
  • Go to page 2216
  • Go to Next Page »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE