VulnSea

CWE-79

CVEs classified under CWE-79, newest first.

2122 CVEsRSS

CVE-2026-89145Medium· 4.2
2w ago

Flextype CMS versions 0.9.9 through 1.0.0-alpha.3 fail to HTML-escape plugin directory names in the dependency error page rendered by getValidPluginsDependencies()

Flextype CMS versions 0.9.9 through 1.0.0-alpha.3 fail to HTML-escape plugin directory names in the dependency error page rendered by getValidPluginsDependencies(). Attackers with write access to the plugins directory can create a plugin…

▾ Sunlitflextype · flextypeEPSS 0.18%via NVD
CVE-2026-81754High· 7.2
2w ago

The Vigilant – 100% Free Security Suite: Firewall, 2FA, Login, Headers, Scanner… plugin for WordPress is vulnerable to Stored Cross-Site Scripting via User-Agent Header in all versions up to, and including, 2.10.2 due to insufficient inp…

The Vigilant – 100% Free Security Suite: Firewall, 2FA, Login, Headers, Scanner… plugin for WordPress is vulnerable to Stored Cross-Site Scripting via User-Agent Header in all versions up to, and including, 2.10.2 due to insufficient inp…

▾ Twilightfernandot · Vigilant – 100% Free Security Suite: Firewall, 2FA, Login, Headers, Scanner…EPSS 0.42%via NVD
CVE-2026-7438Medium· 6.4
2w ago

The Bold Timeline Lite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `supertitle` and `subtitle` attributes of the `bold_timeline_item` shortcode in all versions up to, and including, 1.2.8 due to insufficient…

The Bold Timeline Lite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `supertitle` and `subtitle` attributes of the `bold_timeline_item` shortcode in all versions up to, and including, 1.2.8 due to insufficient…

▾ Sunlitboldthemes · Bold Timeline LiteEPSS 0.36%via NVD
CVE-2026-19985Medium· 6.1
2w ago

The Relevanssi – A Better Search plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 4.28.1 via the 's', 'post_types', and 'orderby' request parameters

The Relevanssi – A Better Search plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 4.28.1 via the 's', 'post_types', and 'orderby' request parameters. This is due to insufficient input…

▾ Sunlitcomesio · Relevanssi – A Better SearchEPSS 0.26%via NVD
CVE-2026-18964Medium· 6.1
2w ago

The Floating Chat Widget: Contact Chat Icons, Telegram Chat, Line Messenger, WeChat, Email, SMS, Call Button – Chaty plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 's' parameter in all versions up to, and in…

The Floating Chat Widget: Contact Chat Icons, Telegram Chat, Line Messenger, WeChat, Email, SMS, Call Button – Chaty plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 's' parameter in all versions up to, and in…

▾ Sunlitpremio · Floating Chat Widget: Contact Chat Icons, Telegram Chat, Line Messenger, WeChat, Email, SMS, Call Button – ChatyEPSS 0.22%via NVD
CVE-2026-18562Medium· 6.1
2w ago

The HUSKY – Products Filter Professional for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via SEO-friendly permalink filter URL segments in versions up to, and including, 1.4.3

The HUSKY – Products Filter Professional for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via SEO-friendly permalink filter URL segments in versions up to, and including, 1.4.3. This is due to insuffic…

▾ Sunlitrealmag777 · HUSKY – Products Filter for WooCommerce ProfessionalEPSS 0.23%via NVD
CVE-2025-15695Low· 3.5
2w ago

The Translate WordPress with GTranslate WordPress plugin before 3.0.10 does not validate one of its settings before the bundled front-end scripts build markup from it, allowing users with a role as high as administrator to store JavaScri…

The Translate WordPress with GTranslate WordPress plugin before 3.0.10 does not validate one of its settings before the bundled front-end scripts build markup from it, allowing users with a role as high as administrator to store JavaScri…

▾ SunlitEPSS 0.14%via NVD
CVE-2026-12683Medium· 5.4
2w ago

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Ankaref Innovation and Technology Inc

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Ankaref Innovation and Technology Inc. LIBRID/LIBREF allows Stored XSS. This issue affects LIBRID/LIBREF: from 2.01.0.2183 before 18.9…

▾ SunlitAnkaref Innovation and Technology Inc. · LIBRID/LIBREFEPSS 0.16%via NVD
CVE-2026-87870Medium· 6.4
2w ago

Ninja Forms - Scheduled Exports <= 3.0.3 - Authenticated (Subscriber+) Stored Cross-Site Scripting via REST API Parameters

The Ninja Forms - Scheduled Exports plugin for WordPress is vulnerable to Stored Cross-Site Scripting via REST API Parameters (interval, format, emailTo) in all versions up to, and including, 3.0.3 due to insufficient input sanitization …

▾ SunlitSaturday Drive · Ninja Forms - Scheduled ExportsEPSS 0.26%via CVEORG
CVE-2026-85645Medium· 6.1
2w ago

Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder <= 1.15.46 - Reflected Cross-Site Scripting

The Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the bulk_action parameter in all versions up to, and including, 1.15.46 due to insufficie…

▾ Sunlit10web · Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form BuilderEPSS 0.38%via CVEORG
CVE-2026-84816High· 7.1
2w ago

WordPress WPCS plugin <= 1.3.2 - Cross Site Scripting (XSS) vulnerability

Unauthenticated Cross Site Scripting (XSS) in WPCS <= 1.3.2 versions.

▾ TwilightRealMag777 · currency-switcherEPSS 0.25%via CVEORG
CVE-2026-88057Medium· 5.3
2w ago

Angular: Sanitization bypass via directive host bindings on concrete host elements in @angular/core and @angular/compiler

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 20.3.28, 21.2.20, and 22.1.0, Angular's compiler and runtime in @angular/core and @angular/compi…

▾ Sunlitangular · angularEPSS 0.73%via CVEORG
CVE-2026-88058High· 8.6PoC
2w ago

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 20.3.30, 21.2.22, and 22.1.4, Angular server-side rendering (SSR) in @angular/platform-server se…

▾ Midnightangular · angularEPSS 0.88%via NVD
CVE-2026-88921Medium· 5.1
2w ago

MISP contains an HTML injection vulnerability in the MISPElementHTMLFormatterTool component, which is responsible for rendering MISP element references (attributes, objects, and tags) into inline HTML during PDF report export via the con…

MISP contains an HTML injection vulnerability in the MISPElementHTMLFormatterTool component, which is responsible for rendering MISP element references (attributes, objects, and tags) into inline HTML during PDF report export via the con…

▾ SunlitMISP · MISPEPSS 0.49%via NVD
CVE-2022-26962Medium· 5.4
2w ago

Italtel NFV 11.1.2-20210318 allows Multiple Stored XSS under NP_BCCAS-RMCTRL-01/IMCSCIWebGui/configuration.jsp?opration=list&object=announcementAS via the name, username, or mrfAnnouncementNameparameter

Italtel NFV 11.1.2-20210318 allows Multiple Stored XSS under NP_BCCAS-RMCTRL-01/IMCSCIWebGui/configuration.jsp?opration=list&object=announcementAS via the name, username, or mrfAnnouncementNameparameter. A malicious user leveraging this …

▾ SunlitEPSS 0.17%via NVD
CVE-2026-36392Medium· 5.4PoC
2w ago

FairSketch Rise CRM Version 3.9.6 is vulnerable to Cross Site Scripting (XSS)

FairSketch Rise CRM Version 3.9.6 is vulnerable to Cross Site Scripting (XSS). An authenticated administrator can inject arbitrary JavaScript into an item's title, which is stored server-side and executed in the browser of any client use…

▾ TwilightEPSS 0.23%via NVD
CVE-2026-88055Medium· 5.5PoC
2w ago

AnythingLLM: Stored XSS Due to Unescaped Server-Side HTML Concatenation in MetaGenerator

AnythingLLM is an application that turns pieces of content into context that any LLM can use as references during chatting. In 1.16.1 and earlier, the manager role can store meta_page_title or meta_page_favicon through /api/admin/system-…

▾ TwilightMintplex-Labs · anything-llmEPSS 0.28%via CVEORG
CVE-2026-88060High· 8.6PoC
2w ago

Angular: SSR XSS via Unescaped <template> Content Across DocumentFragment Boundaries in Fallback Raw-Content Elements

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 20.3.30, 21.2.22, and 22.1.4, Angular server-side rendering (SSR) in @angular/platform-server se…

▾ Midnightangular · angularEPSS 0.76%via CVEORG
CVE-2026-15889Medium· 6.4
2w ago

Aruba HiSpeed Cache <= 3.0.14 - Authenticated (Contributor+) Stored Cross-Site Scripting via Post Content

The Aruba HiSpeed Cache plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Post Content in all versions up to, and including, 3.0.14 due to insufficient input sanitization and output escaping. This makes it possibl…

▾ Sunlitarubadev · Aruba HiSpeed CacheEPSS 0.15%via CVEORG
CVE-2026-78302High· 8.6
2w ago

Joomla Extension - joomshaper.com - Unauthenticated Cross-Site Scripting (XSS) via Unescaped Output in Views and Admin Lists in SP Property < 4.1.4

Joomla Extension - joomshaper.com - Unauthenticated Stored Cross-Site Scripting (XSS) via Unescaped Output in Views and Admin Lists in SP Property < 4.1.4 - Multiple template files across frontend views and administrator list tables rend…

▾ Twilightjoomshaper.com · SP Property extension for JoomlaEPSS 0.44%via CVEORG
CVE-2026-84819High· 7.1
2w ago

WordPress WPAdverts plugin <= 2.3.3 - Cross Site Scripting (XSS) vulnerability

Unauthenticated Cross Site Scripting (XSS) in WPAdverts <= 2.3.3 versions.

▾ TwilightGreg Winiarski · wpadvertsEPSS 0.25%via CVEORG
CVE-2026-81782Medium· 6.5
2w ago

WordPress WP Docs plugin <= 2.3.1 - Cross Site Scripting (XSS) vulnerability

Subscriber Cross Site Scripting (XSS) in WP Docs <= 2.3.1 versions.

▾ SunlitFahad Mahmood · wp-docsEPSS 0.22%via CVEORG
CVE-2026-4657Medium· 6.4
2w ago

Easy Google Fonts <= 2.0.4 - Authenticated (Author+) Stored Cross-Site Scripting via control_selectors Meta Field

The Easy Google Fonts plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the control_selectors meta field in all versions up to, and including, 2.0.4. This is due to the plugin registering the control_selectors meta fi…

▾ Sunlitsunny_johal · Easy Google FontsEPSS 0.42%via CVEORG
CVE-2026-12682Medium· 5.4
2w ago

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Ankaref Innovation and Technology Inc

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Ankaref Innovation and Technology Inc. LIBRID/LIBREF allows Stored XSS. This issue affects LIBRID/LIBREF: from 2.01.0.2183 before 18.9…

▾ SunlitAnkaref Innovation and Technology Inc. · LIBRID/LIBREFEPSS 0.16%via NVD
CVE-2026-15796Medium· 6.4
2w ago

Builderall for WordPress <= 3.0.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'bg_video_service_url' Setting

The Builderall for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'bg_video_service_url' Setting in all versions up to, and including, 3.0.2 due to insufficient input sanitization and output escaping. Thi…

▾ Sunlitbuilderall · Builderall for WordPressEPSS 0.19%via CVEORG
GHSA-x7m8-jrm8-hpvxHigh· 8.1
2w ago

@eigenpal/docx-editor-react: CSS injection and print-time XSS via unescaped embedded font-family name

@eigenpal/docx-editor-react: CSS injection and print-time XSS via unescaped embedded font-family name

▾ Twilighteigenpal · @eigenpal/docx-editor-corevia GHSA
CVE-2026-81795High· 7.1
2w ago

Unauthenticated Cross Site Scripting (XSS) in Page Visits Counter &#8211; Lite <= 1.2.3 versions.

Unauthenticated Cross Site Scripting (XSS) in Page Visits Counter &#8211; Lite <= 1.2.3 versions.

▾ TwilightDenis Botić · page-visits-counter-liteEPSS 0.25%via NVD
CVE-2026-81791Medium· 6.5
2w ago

Subscriber Cross Site Scripting (XSS) in EventON <= 2.5.7 versions.

Subscriber Cross Site Scripting (XSS) in EventON <= 2.5.7 versions.

▾ SunlitAshan Perera · eventon-liteEPSS 0.22%via NVD
CVE-2026-88869Critical· 9.3PoC
2w ago

AVideo through commit c3edcc274c389816d434acadac07ee78eaf330c1 contains a stored cross-site scripting vulnerability in the AD_Server plugin's log.php endpoint that fails to escape the label parameter before storage

AVideo through commit c3edcc274c389816d434acadac07ee78eaf330c1 contains a stored cross-site scripting vulnerability in the AD_Server plugin's log.php endpoint that fails to escape the label parameter before storage. An unauthenticated at…

▾ AbyssalWWBN · AVideoEPSS 0.53%via NVD
CVE-2026-88868High· 8.7
2w ago

AVideo through commit c3edcc274c389816d434acadac07ee78eaf330c1 contains a stored cross-site scripting vulnerability in the LiveLinks plugin where title and description fields are stored without sanitization

AVideo through commit c3edcc274c389816d434acadac07ee78eaf330c1 contains a stored cross-site scripting vulnerability in the LiveLinks plugin where title and description fields are stored without sanitization. A user with canStream permiss…

▾ TwilightWWBN · AVideoEPSS 0.37%via NVD
CWE-79 vulnerabilities (CVEs) — page 20 · VulnSea