Vulnerabilities > Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

DATE CVE VULNERABILITY TITLE RISK
2025-01-28 CVE-2024-13509 Cross-site Scripting vulnerability in Westguardsolutions WS Form
The WS Form LITE – Drag & Drop Contact Form Builder for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the url parameter in all versions up to, and including, 1.10.13 due to insufficient input sanitization and output escaping.
network
low complexity
westguardsolutions CWE-79
6.1
2025-01-27 CVE-2024-55227 Cross-site Scripting vulnerability in Dolibarr Erp/Crm 21.0.0
A cross-site scripting (XSS) vulnerability in the Events/Agenda module of Dolibarr v21.0.0-beta allows attackers to execute arbitrary web scripts or HTMl via a crafted payload injected into the Title parameter.
network
low complexity
dolibarr CWE-79
critical
9.0
2025-01-27 CVE-2024-55228 Cross-site Scripting vulnerability in Dolibarr Erp/Crm 21.0.0
A cross-site scripting (XSS) vulnerability in the Product module of Dolibarr v21.0.0-beta allows attackers to execute arbitrary web scripts or HTMl via a crafted payload injected into the Title parameter.
network
low complexity
dolibarr CWE-79
critical
9.0
2025-01-27 CVE-2023-52292 Cross-site Scripting vulnerability in IBM Sterling File Gateway
IBM Sterling File Gateway 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.3 is vulnerable to stored cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2025-01-27 CVE-2024-37527 IBM OpenPages with Watson 8.3 and 9.0 is vulnerable to cross-site scripting.
network
low complexity
CWE-79
5.4
2025-01-27 CVE-2025-24593 Cross-site Scripting vulnerability in Wisdmlabs Edwiser Bridge
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WisdmLabs Edwiser Bridge allows Reflected XSS.
network
low complexity
wisdmlabs CWE-79
6.1
2025-01-27 CVE-2025-24680 Cross-site Scripting vulnerability in Wpexperts WP Multi Store Locator 2.4
Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in WpMultiStoreLocator WP Multi Store Locator allows Reflected XSS.
network
low complexity
wpexperts CWE-79
6.1
2025-01-27 CVE-2022-4975 A flaw was found in the Red Hat Advanced Cluster Security (RHACS) portal.
network
low complexity
CWE-79
8.9
2025-01-27 CVE-2023-46187 IBM InfoSphere Master Data Management 11.6, 12.0, and 14.0 is vulnerable to stored cross-site scripting.
network
low complexity
CWE-79
5.4
2025-01-27 CVE-2025-0721 Cross-site Scripting vulnerability in Needyamin Image Gallery Management System 1.0
A vulnerability classified as problematic has been found in needyamin image_gallery 1.0.
network
low complexity
needyamin CWE-79
6.1