Vulnerabilities > Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

DATE CVE VULNERABILITY TITLE RISK
2024-08-06 CVE-2024-33975 Cross-site Scripting vulnerability in Janobe Young Entrepreneur E-Negosyo System 1.0
Cross-Site Scripting (XSS) vulnerability in E-Negosyo System affecting version 1.0.
network
low complexity
janobe CWE-79
6.1
2024-08-06 CVE-2024-33976 Cross-site Scripting vulnerability in Janobe Young Entrepreneur E-Negosyo System 1.0
Cross-Site Scripting (XSS) vulnerability in E-Negosyo System affecting version 1.0.
network
low complexity
janobe CWE-79
6.1
2024-08-06 CVE-2024-33977 Cross-site Scripting vulnerability in Janobe Young Entrepreneur E-Negosyo System 1.0
Cross-Site Scripting (XSS) vulnerability in E-Negosyo System affecting version 1.0.
network
low complexity
janobe CWE-79
6.1
2024-08-06 CVE-2024-33978 Cross-site Scripting vulnerability in Janobe Young Entrepreneur E-Negosyo System 1.0
Cross-Site Scripting (XSS) vulnerability in E-Negosyo System affecting version 1.0.
network
low complexity
janobe CWE-79
6.1
2024-08-06 CVE-2024-33979 Cross-site Scripting vulnerability in Janobe Credit Card, Debit Card Payment and Paypal
Cross-Site Scripting (XSS) vulnerability in PayPal, Credit Card and Debit Card Payment affecting version 1.0.
network
low complexity
janobe CWE-79
6.1
2024-08-06 CVE-2024-33980 Cross-site Scripting vulnerability in Janobe Credit Card, Debit Card Payment and Paypal
Cross-Site Scripting (XSS) vulnerability in PayPal, Credit Card and Debit Card Payment affecting version 1.0.
network
low complexity
janobe CWE-79
6.1
2024-08-06 CVE-2024-33981 Cross-site Scripting vulnerability in Janobe Credit Card, Debit Card Payment and Paypal
Cross-Site Scripting (XSS) vulnerability in PayPal, Credit Card and Debit Card Payment affecting version 1.0.
network
low complexity
janobe CWE-79
6.1
2024-08-06 CVE-2024-7317 Cross-site Scripting vulnerability in Premio Folders
The Folders – Unlimited Folders to Organize Media Library Folder, Pages, Posts, File Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 3.0.3 due to insufficient input sanitization and output escaping.
network
low complexity
premio CWE-79
5.4
2024-08-06 CVE-2024-6200 Cross-site Scripting vulnerability in Haloservicesolutions Haloitsm
HaloITSM versions up to 2.146.1 are affected by a Stored Cross-Site Scripting (XSS) vulnerability.
network
low complexity
haloservicesolutions CWE-79
5.4
2024-08-06 CVE-2024-7008 Cross-site Scripting vulnerability in Calibre-Ebook Calibre
Unsanitized user-input in Calibre <= 7.15.0 allow attackers to perform reflected cross-site scripting.
network
low complexity
calibre-ebook CWE-79
6.1