Vulnerabilities > Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

DATE CVE VULNERABILITY TITLE RISK
2024-11-11 CVE-2024-52357 Cross-site Scripting vulnerability in LQD Liquid Blocks
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in LIQUID DESIGN Ltd.
network
low complexity
lqd CWE-79
5.4
2024-11-11 CVE-2024-52358 Cross-site Scripting vulnerability in Cyberchimps Responsive Addons for Elementor
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Cyberchimps Responsive Addons for Elementor allows DOM-Based XSS.This issue affects Responsive Addons for Elementor: from n/a through 1.5.4.
network
low complexity
cyberchimps CWE-79
5.4
2024-11-10 CVE-2024-10265 Cross-site Scripting vulnerability in 10Web Form Maker
The Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.15.30.
network
low complexity
10web CWE-79
6.1
2024-11-10 CVE-2024-51576 Cross-site Scripting vulnerability in Wpza AMP IMG Shortcode
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WPZA AMP Img Shortcode allows Stored XSS.This issue affects AMP Img Shortcode: from n/a through 1.0.1.
network
low complexity
wpza CWE-79
5.4
2024-11-10 CVE-2024-51577 Cross-site Scripting vulnerability in Camunda Bpmn.Io 1.0
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Camunda Services GmbH bpmn.Io allows Stored XSS.This issue affects bpmn.Io: from n/a through 1.0.
network
low complexity
camunda CWE-79
5.4
2024-11-10 CVE-2024-51578 Cross-site Scripting vulnerability in Lucapaggetti 3D Presentation 1.0
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Luca Paggetti 3D Presentation allows Stored XSS.This issue affects 3D Presentation: from n/a through 1.0.
network
low complexity
lucapaggetti CWE-79
5.4
2024-11-10 CVE-2024-51580 Cross-site Scripting vulnerability in Cleversoft Clever Addons for Elementor
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CleverSoft Clever Addons for Elementor allows Stored XSS.This issue affects Clever Addons for Elementor: from n/a through 2.2.1.
network
low complexity
cleversoft CWE-79
5.4
2024-11-10 CVE-2024-51581 Cross-site Scripting vulnerability in Nicheaddons Restaurant & Cafe Addon for Elementor
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in NicheAddons Restaurant & Cafe Addon for Elementor allows Stored XSS.This issue affects Restaurant & Cafe Addon for Elementor: from n/a through 1.5.6.
network
low complexity
nicheaddons CWE-79
5.4
2024-11-10 CVE-2024-51583 Cross-site Scripting vulnerability in Pluginspoint Kento ADS Rotator
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in KentoThemes Kento Ads Rotator allows Stored XSS.This issue affects Kento Ads Rotator: from n/a through 1.3.
network
low complexity
pluginspoint CWE-79
5.4
2024-11-10 CVE-2024-51584 Cross-site Scripting vulnerability in Anasedreesi Marquee Elementor With Posts
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Anas Edreesi Marquee Elementor with Posts allows DOM-Based XSS.This issue affects Marquee Elementor with Posts: from n/a through 1.2.0.
network
low complexity
anasedreesi CWE-79
5.4