Vulnerabilities > Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

DATE CVE VULNERABILITY TITLE RISK
2017-02-12 CVE-2017-5961 Cross-site Scripting vulnerability in Ionizecms Ionize
An issue was discovered in ionize through 1.0.8.
network
low complexity
ionizecms CWE-79
6.1
2017-02-12 CVE-2017-5960 Cross-site Scripting vulnerability in Phalconeye Project Phalconeye 0.4.0/0.4.1
An issue was discovered in Phalcon Eye through 0.4.1.
network
low complexity
phalconeye-project CWE-79
6.1
2017-02-10 CVE-2017-5945 Cross-site Scripting vulnerability in Poodll Moodle-Filter Poodll
An issue was discovered in the PoodLL Filter plugin through 3.0.20 for Moodle.
network
low complexity
poodll CWE-79
6.1
2017-02-10 CVE-2017-5942 Cross-site Scripting vulnerability in WP Mail Project WP Mail 1.1
An issue was discovered in the WP Mail plugin before 1.2 for WordPress.
network
low complexity
wp-mail-project CWE-79
6.1
2017-02-10 CVE-2016-10216 Cross-site Scripting vulnerability in Sivann IT Items Database
An issue was discovered in IT ITems DataBase (ITDB) through 1.23.
network
low complexity
sivann CWE-79
6.1
2017-02-10 CVE-2016-10215 Cross-site Scripting vulnerability in Fastspot Bigtree-Form-Builder 1.0/1.0.1/1.1
An issue was discovered in Fastspot BigTree bigtree-form-builder before 1.2.
network
low complexity
fastspot CWE-79
6.1
2017-02-09 CVE-2016-4988 Cross-site Scripting vulnerability in Jenkins Build Failure Analyzer
Cross-site scripting (XSS) vulnerability in the Build Failure Analyzer plugin before 1.16.0 in Jenkins allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter.
network
low complexity
jenkins CWE-79
6.1
2017-02-09 CVE-2016-3101 Cross-site Scripting vulnerability in Jenkins Extra Columns
Cross-site scripting (XSS) vulnerability in the Extra Columns plugin before 1.17 in Jenkins allows remote attackers to inject arbitrary web script or HTML by leveraging failure to filter tool tips through the configured markup formatter.
network
low complexity
jenkins CWE-79
5.4
2017-02-09 CVE-2015-8936 Cross-site Scripting vulnerability in Squidguard
Cross-site scripting (XSS) vulnerability in squidGuard.cgi in squidGuard before 1.5 allows remote attackers to inject arbitrary web script or HTML via a blocked site link.
network
low complexity
squidguard CWE-79
6.1
2017-02-09 CVE-2015-8831 Cross-site Scripting vulnerability in Dotclear
Cross-site scripting (XSS) vulnerability in admin/comments.php in Dotclear before 2.8.2 allows remote attackers to inject arbitrary web script or HTML via the author name in a comment.
network
low complexity
dotclear CWE-79
6.1