VulnSea

CWE-79

CVEs classified under CWE-79, newest first.

2124 CVEsRSS

CVE-2026-86484Medium· 4.6
2w ago

In JetBrains YouTrack before 2026.2.18634 angularJS template injection in assignee names led to stored XSS

In JetBrains YouTrack before 2026.2.18634 angularJS template injection in assignee names led to stored XSS

▾ SunlitJetBrains · YouTrackEPSS 0.64%via NVD
CVE-2026-86483Medium· 5.4
2w ago

In JetBrains YouTrack before 2026.2.18634 stored XSS via a custom field on Agile board cards was possible

In JetBrains YouTrack before 2026.2.18634 stored XSS via a custom field on Agile board cards was possible

▾ SunlitJetBrains · YouTrackEPSS 0.64%via NVD
CVE-2026-86440Medium· 5.4
2w ago

Affected versions of MISP insufficiently validate URLs used by dashboard widgets, particularly the Button widget. The widget's URL is stored configuration controlled by a user

Affected versions of MISP insufficiently validate URLs used by dashboard widgets, particularly the Button widget. The widget's URL is stored configuration controlled by a user. The previous renderer considered a URL safe if it appeared…

▾ Sunlitmisp-project · mispEPSS 0.24%via NVD
CVE-2026-86431High· 7.2
2w ago

league/commonmark (thephpleague/commonmark) versions >= 2.7.0 and < 2.9.1 contain a cross-site scripting vulnerability in the AttributesExtension

league/commonmark (thephpleague/commonmark) versions >= 2.7.0 and < 2.9.1 contain a cross-site scripting vulnerability in the AttributesExtension. Prefixing an attribute name with a single U+000C form feed byte (e.g. {\x0Conclick="alert(…

▾ Twilightthephpleague · commonmarkEPSS 0.39%via NVD
CVE-2026-6431High· 7.2
2w ago

The User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Biographical Info' meta field parameter in all versions up to, and …

The User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Biographical Info' meta field parameter in all versions up to, and …

▾ Twilightcozmoslabs · User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role EditorEPSS 0.42%via NVD
CVE-2026-86301Low· 3.5PoC
2w ago

A vulnerability has been found in code-projects Hospital Information System 1.0

A vulnerability has been found in code-projects Hospital Information System 1.0. Affected is an unknown function of the file /HIS/src/patients/editPatient.php of the component Patient Management. Such manipulation of the argument ID lead…

▾ Twilightcode-projects · Hospital Information SystemEPSS 0.35%via NVD
CVE-2026-86294Medium· 4.3PoC
2w ago

A vulnerability has been found in SourceCodester Simple Traffic Offense System 1.0

A vulnerability has been found in SourceCodester Simple Traffic Offense System 1.0. Affected by this issue is some unknown functionality of the file save-settings.php of the component Settings Update Endpoint. The manipulation of the arg…

▾ TwilightSourceCodester · Simple Traffic Offense SystemEPSS 0.47%via NVD
CVE-2026-2390Medium· 6.4
2w ago

The Powerkit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Lazy Load module's image processing in all versions up to, and including, 3.0.4

The Powerkit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Lazy Load module's image processing in all versions up to, and including, 3.0.4. This is due to the 'content_process_images' function using a flawed r…

▾ Sunlitcodesupplyco · Powerkit – Supercharge your WordPress SiteEPSS 0.19%via NVD
CVE-2026-86278Medium· 4.3PoC
2w ago

A vulnerability was found in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0

A vulnerability was found in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0. The affected element is an unknown function of the file manage_subjects.php. The manipulation of the argument msg/title/content re…

▾ TwilightSourceCodester · Syllabus-Aligned Learning Management & Examination SystemEPSS 0.47%via NVD
CVE-2026-86264Medium· 4.3PoC
2w ago

A flaw has been found in sfturing ssm_pro up to 627f426331da8086ce8fff2017d65b1ddef384f8

A flaw has been found in sfturing ssm_pro up to 627f426331da8086ce8fff2017d65b1ddef384f8. Affected is an unknown function of the file ssm_pro/src/main/java/cn/sfturing/web/OrderController.java of the component Order Endpoint. This manipu…

▾ Twilightsfturing · ssm_proEPSS 0.45%via NVD
CVE-2026-86244Medium· 4.3PoC
2w ago

A security vulnerability has been detected in FastAdmin up to 1.2.0.20210401_beta

A security vulnerability has been detected in FastAdmin up to 1.2.0.20210401_beta. Affected is the function register/login of the file application/index/controller/User.php of the component User Controller. Such manipulation of the argum…

▾ TwilightEPSS 0.47%via NVD
CVE-2026-86238Medium· 4.3PoC
2w ago

A vulnerability was determined in projectworlds Online Examination System 1.0

A vulnerability was determined in projectworlds Online Examination System 1.0. The affected element is an unknown function of the file feedback.php of the component Feedback Form. Executing a manipulation of the argument Name/Subject can…

▾ Twilightprojectworlds · Online Examination SystemEPSS 0.45%via NVD
CVE-2026-86226Low· 3.5PoC
3w ago

A security flaw has been discovered in Projectwolds Online Attendance System 1.0

A security flaw has been discovered in Projectwolds Online Attendance System 1.0. Affected by this issue is some unknown functionality of the file profile.php. The manipulation of the argument email results in cross site scripting. The a…

▾ TwilightProjectwolds · Online Attendance SystemEPSS 0.33%via NVD
CVE-2026-86216Medium· 4.3PoC
3w ago

A security vulnerability has been detected in code-projects Hotel and Tourism Reservation in PHP 1.0

A security vulnerability has been detected in code-projects Hotel and Tourism Reservation in PHP 1.0. This impacts an unknown function of the file /ht/details.php. The manipulation of the argument room leads to cross site scripting. The …

▾ Twilightcode-projects · Hotel and Tourism Reservation in PHPEPSS 0.47%via NVD
CVE-2026-86181Low· 3.5PoC
3w ago

A vulnerability was found in code-projects Task Management System 1.0

A vulnerability was found in code-projects Task Management System 1.0. Affected by this issue is some unknown functionality of the file /user/UpdateUserProfile.php of the component User Profile Update. The manipulation of the argument ln…

▾ Twilightcode-projects · Task Management SystemEPSS 0.36%via NVD
CVE-2026-84219High· 7.5
3w ago

The Kirki WordPress plugin before 6.3.0 does not hold back every spelling of the HTML entities it decodes when rendering, allowing unauthenticated users to store JavaScript in a comment which then runs in the session of anyone viewing a…

The Kirki WordPress plugin before 6.3.0 does not hold back every spelling of the HTML entities it decodes when rendering, allowing unauthenticated users to store JavaScript in a comment which then runs in the session of anyone viewing a…

▾ TwilightEPSS 0.37%via NVD
CVE-2026-84028Medium· 6.8
3w ago

The Bold Page Builder WordPress plugin before 5.9.9 does not sanitise and escape a shortcode attribute before outputting it in an HTML attribute, allowing users with the Contributor role and above to inject arbitrary web scripts that exe…

The Bold Page Builder WordPress plugin before 5.9.9 does not sanitise and escape a shortcode attribute before outputting it in an HTML attribute, allowing users with the Contributor role and above to inject arbitrary web scripts that exe…

▾ SunlitEPSS 0.43%via NVD
CVE-2026-84935High· 8.0
3w ago

The HT Menu WordPress plugin before 1.2.7 does not perform any capability or object-ownership check when saving navigation menu-item settings, and does not escape those stored settings when the menu is rendered, allowing users with mini…

The HT Menu WordPress plugin before 1.2.7 does not perform any capability or object-ownership check when saving navigation menu-item settings, and does not escape those stored settings when the menu is rendered, allowing users with mini…

▾ TwilightEPSS 0.41%via NVD
CVE-2026-84934High· 8.0
3w ago

The JCH Optimize WordPress plugin before 6.0.1 does not perform a capability check on one of its authenticated AJAX actions and lets the request choose which internal action runs, allowing any authenticated users such as Subscribers to i…

The JCH Optimize WordPress plugin before 6.0.1 does not perform a capability check on one of its authenticated AJAX actions and lets the request choose which internal action runs, allowing any authenticated users such as Subscribers to i…

▾ TwilightEPSS 0.41%via NVD
CVE-2026-84931Medium· 6.8
3w ago

The Joli Table Of Contents WordPress plugin before 3.0.3 does not sanitise or escape a shortcode attribute value before outputting it inside an HTML element's attribute, allowing users with the Author role and above to inject arbitrary H…

The Joli Table Of Contents WordPress plugin before 3.0.3 does not sanitise or escape a shortcode attribute value before outputting it inside an HTML element's attribute, allowing users with the Author role and above to inject arbitrary H…

▾ SunlitEPSS 0.43%via NVD
CVE-2026-86197Medium· 5.1
3w ago

Grav before 2.0.20 contains a cross-site scripting vulnerability in the Twig sandbox policy that allowlists addJs and addCss methods on Grav\Common\Assets without proper output escaping

Grav before 2.0.20 contains a cross-site scripting vulnerability in the Twig sandbox policy that allowlists addJs and addCss methods on Grav\Common\Assets without proper output escaping. Page editors can inject arbitrary script by regist…

▾ Sunlitgetgrav · gravEPSS 0.41%via NVD
CVE-2026-86188High· 7.2PoC
3w ago

AVideo with YPTSocket plugin enabled contains a cross-site scripting vulnerability allowing unauthenticated attackers to execute arbitrary JavaScript in other users' browsers via the websocket callback mechanism

AVideo with YPTSocket plugin enabled contains a cross-site scripting vulnerability allowing unauthenticated attackers to execute arbitrary JavaScript in other users' browsers via the websocket callback mechanism. Attackers can send craft…

▾ MidnightWWBN · AVideoEPSS 0.43%via NVD
CVE-2026-76573Medium· 6.4
3w ago

The Pods – Custom Content Types and Fields plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'not_found' Shortcode Attribute in all versions up to, and including, 3.3.9.1 due to insufficient input sanitization and out…

The Pods – Custom Content Types and Fields plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'not_found' Shortcode Attribute in all versions up to, and including, 3.3.9.1 due to insufficient input sanitization and out…

▾ SunlitEPSS 0.35%via NVD
CVE-2026-85414Medium· 6.4
3w ago

The Gallery : FooGallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'custom_settings' Shortcode Attribute in all versions up to, and including, 3.3.2 due to insufficient input sanitization and output escaping

The Gallery : FooGallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'custom_settings' Shortcode Attribute in all versions up to, and including, 3.3.2 due to insufficient input sanitization and output escaping. …

▾ SunlitEPSS 0.42%via NVD
CVE-2026-83625High· 7.2
3w ago

The Contact Form by Supsystic plugin for WordPress is vulnerable to Stored Cross-Site Scripting via IP Address Header in all versions up to, and including, 1.10.2 due to insufficient input sanitization and output escaping

The Contact Form by Supsystic plugin for WordPress is vulnerable to Stored Cross-Site Scripting via IP Address Header in all versions up to, and including, 1.10.2 due to insufficient input sanitization and output escaping. This makes it …

▾ TwilightEPSS 0.58%via NVD
CVE-2026-75586Medium· 6.1
3w ago

The Unlimited Elements For Elementor plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via 'formData[id]' Parameter in all versions up to, and including, 2.0.17 due to insufficient input sanitization and output escapin…

The Unlimited Elements For Elementor plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via 'formData[id]' Parameter in all versions up to, and including, 2.0.17 due to insufficient input sanitization and output escapin…

▾ SunlitEPSS 0.38%via NVD
CVE-2026-84930Medium· 6.8
3w ago

The CatFolders Document Gallery & PDF Library WordPress plugin before 2.0.7 does not properly validate a block attribute before using it as an HTML tag name in its gallery output, allowing users with the Author role and above to inject a…

The CatFolders Document Gallery & PDF Library WordPress plugin before 2.0.7 does not properly validate a block attribute before using it as an HTML tag name in its gallery output, allowing users with the Author role and above to inject a…

▾ SunlitEPSS 0.43%via NVD
CVE-2026-84899Medium· 6.8
3w ago

The VikWidgetsLoader WordPress plugin before 1.12.0 does not sanitise or escape a block attribute before outputting it inside an inline script, allowing users with the Contributor role to store arbitrary JavaScript that executes in the …

The VikWidgetsLoader WordPress plugin before 1.12.0 does not sanitise or escape a block attribute before outputting it inside an inline script, allowing users with the Contributor role to store arbitrary JavaScript that executes in the …

▾ SunlitEPSS 0.43%via NVD
CVE-2026-84896Medium· 6.8
3w ago

The King Addons for Elementor WordPress plugin before 51.1.77 does not escape a widget display-style setting before outputting it in an HTML attribute, allowing users with Contributor-level access and above to store JavaScript that exec…

The King Addons for Elementor WordPress plugin before 51.1.77 does not escape a widget display-style setting before outputting it in an HTML attribute, allowing users with Contributor-level access and above to store JavaScript that exec…

▾ SunlitEPSS 0.43%via NVD
CVE-2026-84022Medium· 6.8
3w ago

The Bold Page Builder WordPress plugin before 5.9.8 does not sanitise and escape several shortcode attributes before outputting them in HTML attributes, allowing users with the Contributor role and above to inject arbitrary web scripts t…

The Bold Page Builder WordPress plugin before 5.9.8 does not sanitise and escape several shortcode attributes before outputting them in HTML attributes, allowing users with the Contributor role and above to inject arbitrary web scripts t…

▾ SunlitEPSS 0.43%via NVD
CWE-79 vulnerabilities (CVEs) — page 27 · VulnSea