Vulnerabilities > Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

DATE CVE VULNERABILITY TITLE RISK
2024-02-01 CVE-2024-23941 Cross-site Scripting vulnerability in Group-Office Group Office
Cross-site scripting vulnerability exists in Group Office prior to v6.6.182, prior to v6.7.64 and prior to v6.8.31, which may allow a remote authenticated attacker to execute an arbitrary script on the web browser of the user who is logging in to the product.
network
low complexity
group-office CWE-79
5.4
2024-01-31 CVE-2024-1111 Cross-site Scripting vulnerability in Rems QR Code Login System 1.0
A vulnerability, which was classified as problematic, has been found in SourceCodester QR Code Login System 1.0.
network
low complexity
rems CWE-79
6.1
2024-01-31 CVE-2024-22146 Cross-site Scripting vulnerability in Magazine3 Schema & Structured Data for WP & AMP
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Magazine3 Schema & Structured Data for WP & AMP allows Stored XSS.This issue affects Schema & Structured Data for WP & AMP: from n/a through 1.25.
network
low complexity
magazine3 CWE-79
5.4
2024-01-31 CVE-2024-22150 Cross-site Scripting vulnerability in Pwrplugins Powerfolio
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PWR Plugins Portfolio & Image Gallery for WordPress | PowerFolio allows Stored XSS.This issue affects Portfolio & Image Gallery for WordPress | PowerFolio: from n/a through 3.1.
network
low complexity
pwrplugins CWE-79
5.4
2024-01-31 CVE-2024-22153 Cross-site Scripting vulnerability in Fahadmahmood8 Stock Locations for Woocommerce
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Fahad Mahmood & Alexandre Faustino Stock Locations for WooCommerce allows Stored XSS.This issue affects Stock Locations for WooCommerce: from n/a through 2.5.9.
network
low complexity
fahadmahmood8 CWE-79
4.8
2024-01-31 CVE-2024-22158 Cross-site Scripting vulnerability in Peepso
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PeepSo Community by PeepSo – Social Network, Membership, Registration, User Profiles allows Stored XSS.This issue affects Community by PeepSo – Social Network, Membership, Registration, User Profiles: from n/a before 6.3.1.0.
network
low complexity
peepso CWE-79
5.4
2024-01-31 CVE-2024-22159 Cross-site Scripting vulnerability in Pluginus Wolf - Wordpress Posts Bulk Editor and products Manager Professional
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in realmag777 WOLF – WordPress Posts Bulk Editor and Manager Professional allows Reflected XSS.This issue affects WOLF – WordPress Posts Bulk Editor and Manager Professional: from n/a through 1.0.8.
network
low complexity
pluginus CWE-79
6.1
2024-01-31 CVE-2023-50166 Cross-site Scripting vulnerability in Pega Platform
Pega Platform from 8.5.4 to 8.8.3 is affected by an XSS issue with an unauthenticated user and the redirect parameter.
network
low complexity
pega CWE-79
6.1
2024-01-31 CVE-2024-22160 Cross-site Scripting vulnerability in Bradleybdalina Image TAG Manager 1.5
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Bradley B.
network
low complexity
bradleybdalina CWE-79
6.1
2024-01-31 CVE-2024-22161 Cross-site Scripting vulnerability in Harmonicdesign HD Quiz
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Harmonic Design HD Quiz allows Stored XSS.This issue affects HD Quiz: from n/a through 1.8.11.
network
low complexity
harmonicdesign CWE-79
4.8