Vulnerabilities > Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

DATE CVE VULNERABILITY TITLE RISK
2024-07-24 CVE-2024-22444 A vulnerability within the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow a remote attacker to conduct a reflected cross-site scripting (XSS) attack against a user of the interface.
network
low complexity
CWE-79
6.1
2024-07-24 CVE-2024-41914 A vulnerability in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to conduct a stored cross-site scripting (XSS) attack against an administrative user of the interface.
network
low complexity
CWE-79
critical
9.0
2024-07-24 CVE-2024-7068 Cross-site Scripting vulnerability in Insurance Management System Project Insurance Management System 1.0
A vulnerability classified as problematic has been found in SourceCodester Insurance Management System 1.0.
4.6
2024-07-23 CVE-2024-34128 Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields.
network
low complexity
CWE-79
5.4
2024-07-22 CVE-2024-37114 Cross-site Scripting vulnerability in Takashimatsuyama MY Favorites
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Takashi Matsuyama My Favorites allows Stored XSS.This issue affects My Favorites: from n/a through 1.4.1.
network
low complexity
takashimatsuyama CWE-79
5.4
2024-07-22 CVE-2024-37116 Cross-site Scripting vulnerability in Sinatrateam Sinatra
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in sinatrateam Sinatra allows Stored XSS.This issue affects Sinatra: from n/a through 1.3.
network
low complexity
sinatrateam CWE-79
5.4
2024-07-22 CVE-2024-37117 Cross-site Scripting vulnerability in Uncannyowl Uncanny Automator
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Uncanny Owl Uncanny Automator Pro allows Reflected XSS.This issue affects Uncanny Automator Pro: from n/a through 5.3.
network
low complexity
uncannyowl CWE-79
6.1
2024-07-22 CVE-2024-37120 Cross-site Scripting vulnerability in Oxilab Responsive Tabs
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Biplob Adhikari Tabs allows Stored XSS.This issue affects Tabs: from n/a through 4.0.6.
network
low complexity
oxilab CWE-79
4.8
2024-07-22 CVE-2024-37121 Cross-site Scripting vulnerability in Oxilab Shortcode Addons
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in biplob018 Shortcode Addons allows Stored XSS.This issue affects Shortcode Addons: from n/a through 3.2.5.
network
low complexity
oxilab CWE-79
4.8
2024-07-22 CVE-2024-37122 Cross-site Scripting vulnerability in Oxilab Accordions
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Biplob Adhikari Accordions allows Stored XSS.This issue affects Accordions: from n/a through 2.3.5.
network
low complexity
oxilab CWE-79
4.8