Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-08-19 CVE-2024-43400 Cross-site Scripting vulnerability in Xwiki
XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it.
network
low complexity
xwiki CWE-79
5.4
2024-08-18 CVE-2024-7916 Cross-site Scripting vulnerability in Insurance Management System Project Insurance Management System 1.0
A vulnerability classified as problematic was found in nafisulbari/itsourcecode Insurance Management System 1.0.
5.4
2024-08-18 CVE-2024-7912 Unspecified vulnerability in Online Railway Reservation System Project Online Railway Reservation System 1.0
A vulnerability was found in CodeAstro Online Railway Reservation System 1.0.
5.3
2024-08-18 CVE-2024-7914 Cross-site Scripting vulnerability in Oretnom23 Yoga Class Registration System 1.0
A vulnerability classified as problematic has been found in SourceCodester Yoga Class Registration System 1.0.
network
low complexity
oretnom23 CWE-79
5.4
2024-08-18 CVE-2024-43308 Cross-site Scripting vulnerability in Gutentor
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Gutentor Gutentor - Gutenberg Blocks - Page Builder for Gutenberg Editor allows Stored XSS.This issue affects Gutentor - Gutenberg Blocks - Page Builder for Gutenberg Editor: from n/a through 3.3.5.
network
low complexity
gutentor CWE-79
5.4
2024-08-18 CVE-2024-43309 Cross-site Scripting vulnerability in Wpsocio WP Telegram Widget and Join Link
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WP Socio WP Telegram Widget and Join Link allows Stored XSS.This issue affects WP Telegram Widget and Join Link: from n/a through 2.1.27.
network
low complexity
wpsocio CWE-79
5.4
2024-08-18 CVE-2024-43313 Cross-site Scripting vulnerability in Formfacade
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in FormFacade allows Reflected XSS.This issue affects FormFacade: from n/a through 1.3.2.
network
low complexity
formfacade CWE-79
6.1
2024-08-18 CVE-2024-43318 Cross-site Scripting vulnerability in E2Pdf
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in E2Pdf.Com allows Stored XSS.This issue affects e2pdf: from n/a through 1.25.05.
network
low complexity
e2pdf CWE-79
5.4
2024-08-18 CVE-2024-43238 Cross-site Scripting vulnerability in Getwemail Wemail
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in weDevs weMail allows Reflected XSS.This issue affects weMail: from n/a through 1.14.5.
network
low complexity
getwemail CWE-79
6.1
2024-08-18 CVE-2024-43276 Cross-site Scripting vulnerability in Orbisius Child Theme Creator
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Svetoslav Marinov (Slavi) Child Theme Creator allows Reflected XSS.This issue affects Child Theme Creator: from n/a through 1.5.4.
network
low complexity
orbisius CWE-79
6.1