Vulnerabilities > Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

DATE CVE VULNERABILITY TITLE RISK
2024-02-10 CVE-2023-51415 Cross-site Scripting vulnerability in Givewp
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in GiveWP GiveWP – Donation Plugin and Fundraising Platform allows Stored XSS.This issue affects GiveWP – Donation Plugin and Fundraising Platform: from n/a through 3.2.2.
network
low complexity
givewp CWE-79
5.4
2024-02-10 CVE-2023-51480 Cross-site Scripting vulnerability in Pluginus Woot
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in realmag777 Active Products Tables for WooCommerce.
network
low complexity
pluginus CWE-79
5.4
2024-02-10 CVE-2023-51485 Cross-site Scripting vulnerability in Wp-Hosting PAY With Vipps and Mobilepay for Woocommerce
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Hosting Pay with Vipps and MobilePay for WooCommerce allows Stored XSS.This issue affects Pay with Vipps and MobilePay for WooCommerce: from n/a through 1.14.13.
network
low complexity
wp-hosting CWE-79
5.4
2024-02-10 CVE-2023-51488 Cross-site Scripting vulnerability in Automattic Crowdsignal Dashboard
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Automattic, Inc.
network
low complexity
automattic CWE-79
6.1
2024-02-10 CVE-2023-51492 Cross-site Scripting vulnerability in If-So Dynamic Content Personalization
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in If So Plugin If-So Dynamic Content Personalization allows Stored XSS.This issue affects If-So Dynamic Content Personalization: from n/a through 1.6.3.1.
network
low complexity
if-so CWE-79
5.4
2024-02-10 CVE-2023-51493 Cross-site Scripting vulnerability in Howardehrenberg Custom Post Carousels With OWL
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Howard Ehrenberg Custom Post Carousels with Owl allows Stored XSS.This issue affects Custom Post Carousels with Owl: from n/a through 1.4.6.
network
low complexity
howardehrenberg CWE-79
5.4
2024-02-10 CVE-2024-23514 Cross-site Scripting vulnerability in Clicktotweet Click to Tweet
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ClickToTweet.Com Click To Tweet allows Stored XSS.This issue affects Click To Tweet: from n/a through 2.0.14.
network
low complexity
clicktotweet CWE-79
5.4
2024-02-10 CVE-2024-23516 Cross-site Scripting vulnerability in Calculatorsworld CC BMI Calculator 0.1.0/1.0.0/2.0.1
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Calculators World CC BMI Calculator allows Stored XSS.This issue affects CC BMI Calculator: from n/a through 2.0.1.
network
low complexity
calculatorsworld CWE-79
5.4
2024-02-10 CVE-2024-23517 Cross-site Scripting vulnerability in Startbooking Scheduling Plugin
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Start Booking Scheduling Plugin – Online Booking for WordPress allows Stored XSS.This issue affects Scheduling Plugin – Online Booking for WordPress: from n/a through 3.5.10.
network
low complexity
startbooking CWE-79
5.4
2024-02-10 CVE-2024-24803 Cross-site Scripting vulnerability in Wpoperation Ultra Companion
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPoperation Ultra Companion – Companion plugin for WPoperation Themes allows Stored XSS.This issue affects Ultra Companion – Companion plugin for WPoperation Themes: from n/a through 1.1.9.
network
low complexity
wpoperation CWE-79
5.4