Vulnerabilities > Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

DATE CVE VULNERABILITY TITLE RISK
2018-12-28 CVE-2018-16632 Cross-site Scripting vulnerability in Jupo Mezzanine 4.3.1
Mezzanine CMS v4.3.1 allows XSS via the /admin/blog/blogcategory/add/?_to_field=id&_popup=1 title parameter at admin/blog/blogpost/add/.
network
low complexity
jupo CWE-79
4.8
2018-12-28 CVE-2018-16630 Cross-site Scripting vulnerability in Getkirby Kirby 2.5.12
Kirby v2.5.12 allows XSS by using the "site files" Add option to upload an SVG file.
network
low complexity
getkirby CWE-79
4.8
2018-12-28 CVE-2018-20565 Cross-site Scripting vulnerability in Douco Douphp 1.5
An issue was discovered in DouCo DouPHP 1.5 20181221.
network
low complexity
douco CWE-79
4.8
2018-12-28 CVE-2018-20564 Cross-site Scripting vulnerability in Douco Douphp 1.5
An issue was discovered in DouCo DouPHP 1.5 20181221.
network
low complexity
douco CWE-79
4.8
2018-12-28 CVE-2018-20563 Cross-site Scripting vulnerability in Douco Douphp 1.5
An issue was discovered in DouCo DouPHP 1.5 20181221.
network
low complexity
douco CWE-79
4.8
2018-12-28 CVE-2018-20562 Cross-site Scripting vulnerability in Douco Douphp 1.5
An issue was discovered in DouCo DouPHP 1.5 20181221.
network
low complexity
douco CWE-79
4.8
2018-12-28 CVE-2018-20561 Cross-site Scripting vulnerability in Douco Douphp 1.5
An issue was discovered in DouCo DouPHP 1.5 20181221.
network
low complexity
douco CWE-79
4.8
2018-12-28 CVE-2018-20560 Cross-site Scripting vulnerability in Douco Douphp 1.5
An issue was discovered in DouCo DouPHP 1.5 20181221.
network
low complexity
douco CWE-79
4.8
2018-12-28 CVE-2018-20559 Cross-site Scripting vulnerability in Douco Douphp 1.5
An issue was discovered in DouCo DouPHP 1.5 20181221.
network
low complexity
douco CWE-79
4.8
2018-12-28 CVE-2018-20558 Cross-site Scripting vulnerability in Douco Douphp 1.5
An issue was discovered in DouCo DouPHP 1.5 20181221.
network
low complexity
douco CWE-79
4.8