VulnSea

CWE-79

CVEs classified under CWE-79, newest first.

2125 CVEsRSS

CVE-2026-66421Critical· 9.3PoC
2mo ago

OpenClaw Dashboard Stored XSS via lastMessage Session Field

OpenClaw Dashboard contains a stored cross-site scripting vulnerability that allows unauthenticated remote attackers to execute arbitrary JavaScript in the administrator's browser session by injecting HTML markup into agent transcript me…

▾ Abyssaltugcantopaloglu · openclaw-dashboardEPSS 0.63%via CVEORG
CVE-2026-61526Medium· 6.1
2mo ago

AdonisJS HTTP Server is a package for handling HTTP requests in the AdonisJS framework

AdonisJS HTTP Server is a package for handling HTTP requests in the AdonisJS framework. In versions 8.0.0-next.0 through 8.2.0 and 9.0.0 through 9.0.2, the error.message is interpolated into the default HTML exception response without e…

▾ SunlitEPSS 0.34%via NVD
CVE-2025-51684Medium· 6.1
2mo ago

CleverTap Web SDK v1.15.1 is vulnerable to Cross Site Scripting (XSS)

CleverTap Web SDK v1.15.1 is vulnerable to Cross Site Scripting (XSS). The application does not sanitize untrusted data received via window.postMessage before injecting it into the page DOM. An attacker can craft a malicious message that…

▾ SunlitEPSS 0.26%via NVD
CVE-2026-66418Critical· 9.3PoC
2mo ago

OpenClaw Dashboard v3.0.0 contains a stored cross-site scripting vulnerability that allows unauthenticated remote attackers to inject arbitrary HTML and script payloads by submitting a crafted username in a failed login POST request, whi…

OpenClaw Dashboard v3.0.0 contains a stored cross-site scripting vulnerability that allows unauthenticated remote attackers to inject arbitrary HTML and script payloads by submitting a crafted username in a failed login POST request, whi…

▾ Abyssaltugcantopaloglu · openclaw-dashboardEPSS 0.63%via NVD
CVE-2025-36298Medium· 5.4
2mo ago

IBM Sterling B2B Integrator 6.1.2.0 through 6.1.2.7_2, 6.2.0.0 through 6.2.0.5_2, 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 and IBM Sterling File Gateway 6.1.2.0 through 6.1.2.7_2, 6.2.0.0 through 6.2.0.5_2, 6.2.1.0 throug…

IBM Sterling B2B Integrator 6.1.2.0 through 6.1.2.7_2, 6.2.0.0 through 6.2.0.5_2, 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 and IBM Sterling File Gateway 6.1.2.0 through 6.1.2.7_2, 6.2.0.0 through 6.2.0.5_2, 6.2.1.0 throug…

▾ SunlitEPSS 0.23%via NVD
CVE-2026-52838Low· 2.6
2mo ago

Easy!Appointments disable_booking_message rendered as raw HTML on public booking page — Stored XSS

Easy!Appointments disable_booking_message rendered as raw HTML on public booking page — Stored XSS

▾ Sunlitalextselegidis · alextselegidis/easyappointmentsEPSS 0.24%via GHSA
CVE-2026-66396High· 8.4PoC
2mo ago

SiYuan before v3.7.2 fails to escape the title-img Individual Attribute List value when rendering Gallery and Kanban cover images, allowing stored cross-site scripting via unescaped style attribute interpolation

SiYuan before v3.7.2 fails to escape the title-img Individual Attribute List value when rendering Gallery and Kanban cover images, allowing stored cross-site scripting via unescaped style attribute interpolation. Attackers with editor pe…

▾ Midnightsiyuan-note · siyuanEPSS 0.54%via NVD
CVE-2026-66395Critical· 9.6PoC
2mo ago

SiYuan desktop before v3.7.2 contains a reflected cross-site scripting vulnerability in the bazaar plugin readme handler that allows attackers to execute arbitrary code by crafting a malicious siyuan:// deep link

SiYuan desktop before v3.7.2 contains a reflected cross-site scripting vulnerability in the bazaar plugin readme handler that allows attackers to execute arbitrary code by crafting a malicious siyuan:// deep link. Attackers can inject HT…

▾ Abyssalsiyuan-note · siyuanEPSS 0.56%via NVD
CVE-2026-15928High· 7.4
2mo ago

XMLRPC-C Library versions 1.07 through 1.67.01 are vulnerable to a reflected cross-site scripting (XSS) vulnerability in the error page component.

XMLRPC-C Library versions 1.07 through 1.67.01 are vulnerable to a reflected cross-site scripting (XSS) vulnerability in the error page component.

▾ TwilightRed Hat · Red Hat Enterprise Linux CRB (v. 8)EPSS 0.28%via NVD
CVE-2026-17496High· 8.1
2mo ago

NoteGen before 0.32.0 renders AI chat responses with markdown-it configured with html:true and injects the result into the DOM via dangerouslySetInnerHTML in chat-preview, without HTML sanitization and with CSP set to null

NoteGen before 0.32.0 renders AI chat responses with markdown-it configured with html:true and injects the result into the DOM via dangerouslySetInnerHTML in chat-preview, without HTML sanitization and with CSP set to null. Attacker-cont…

▾ TwilightEPSS 0.55%via NVD
CVE-2026-66010Medium· 6.1PoC
2mo ago

DOMPurify before 3.4.12 Hook Bypass via CUSTOM_ELEMENT_HANDLING

DOMPurify before 3.4.12 fails to execute afterSanitizeElements hook for custom elements allowed via CUSTOM_ELEMENT_HANDLING.tagNameCheck, allowing attributes to bypass application security policies. Attackers can preserve sensitive attri…

▾ Twilightcure53 · DOMPurifyEPSS 0.30%via CVEORG
GHSA-fp43-vj7g-pg92High· 7.5
2mo ago

OmniFaces: Forged combined-resource IDs and related output/push boundaries

OmniFaces: Forged combined-resource IDs and related output/push boundaries

▾ Twilightomnifaces · org.omnifaces:omnifacesvia GHSA
CVE-2026-59214High· 7.3
2mo ago

Open WebUI: Stored web worker XSS via Pyodide

Open WebUI: Stored web worker XSS via Pyodide

▾ Twilightopen-webui · open-webuiEPSS 0.42%via GHSA
GHSA-53g2-mvcc-q9x3Medium· 4.6
2mo ago

Trix: Stored XSS via HTMLParser attribute injection on paste

Trix: Stored XSS via HTMLParser attribute injection on paste

▾ Sunlittrix · trixvia GHSA
GHSA-hc76-7mpc-qjqhMedium· 5.7
2mo ago

ImageMagick: Code injection in HTML encoder due to incomplete fix of CVE-2026-25797

ImageMagick: Code injection in HTML encoder due to incomplete fix of CVE-2026-25797

▾ SunlitMagick · Magick.NET-Q16-AnyCPUvia GHSA
CVE-2026-65492High· 7.1
2mo ago

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in weDevs Dokan Pro allows Reflected XSS. This issue affects Dokan Pro: from n/a before 5.0.7.

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in weDevs Dokan Pro allows Reflected XSS. This issue affects Dokan Pro: from n/a before 5.0.7.

▾ TwilightweDevs · Dokan ProEPSS 0.25%via NVD
CVE-2026-65606Critical· 9.6PoC
2mo ago

SiYuan before v3.7.2 contains a cross-site scripting vulnerability in the siyuan:// protocol handler

SiYuan before v3.7.2 contains a cross-site scripting vulnerability in the siyuan:// protocol handler. When a siyuan://plugins/<name> link references a name that is not an installed plugin, the application opens a custom tab and inserts t…

▾ Abyssalsiyuan-note · siyuanEPSS 0.79%via NVD
CVE-2026-65605Critical· 9.6PoC
2mo ago

SiYuan before v3.7.2 contains a stored cross-site scripting vulnerability in Attribute View (database) cell rendering

SiYuan before v3.7.2 contains a stored cross-site scripting vulnerability in Attribute View (database) cell rendering. A Template column value is rendered as HTML via text/template without auto-escaping, and EscapeHTML is only applied wh…

▾ Abyssalsiyuan-note · siyuanEPSS 0.79%via NVD
CVE-2026-53667Medium· 6.9
2mo ago

React Router: RSCErrorHandler Missing Protocol Validation (XSS)

React Router: RSCErrorHandler Missing Protocol Validation (XSS)

▾ Sunlitreact-router · react-routerEPSS 0.36%via GHSA
CVE-2026-53668Medium· 6.9
2mo ago

React Router: Open redirect leading to XSS

React Router: Open redirect leading to XSS

▾ Sunlitreact-router · react-routerEPSS 0.34%via GHSA
GHSA-gx64-gj6p-pc4cHigh
2mo ago

JupyterLab: Image viewer allows XSS when opening malicious image in new browser tab

JupyterLab: Image viewer allows XSS when opening malicious image in new browser tab

▾ Twilightjupyterlab · jupyterlabvia GHSA
GHSA-pppj-hq3g-57pjHigh
2mo ago

JupyterLab: Cross-site scripting (XSS) via crafted settings file (`overrides.json`)

JupyterLab: Cross-site scripting (XSS) via crafted settings file (`overrides.json`)

▾ Twilightjupyterlab · jupyterlabvia GHSA
GHSA-h5xr-fqvj-253pHigh
2mo ago

Duplicate Advisory: Stored DOM XSS via Resource Locator `cachedResultUrl`

Duplicate Advisory: Stored DOM XSS via Resource Locator `cachedResultUrl`

▾ Twilightn8n · n8nvia GHSA
GHSA-vhcw-f978-xjjgHigh
2mo ago

Duplicate Advisory: DOM-Based XSS via Unsandboxed iframe srcdoc in HTML Preview

Duplicate Advisory: DOM-Based XSS via Unsandboxed iframe srcdoc in HTML Preview

▾ Twilightn8n · n8nvia GHSA
CVE-2026-65597High
2mo ago

n8n: DOM-Based XSS via Unsandboxed iframe srcdoc in HTML Preview

n8n: DOM-Based XSS via Unsandboxed iframe srcdoc in HTML Preview

▾ Twilightn8n · n8nEPSS 0.30%via GHSA
CVE-2026-65592High
2mo ago

n8n: Stored DOM XSS via Resource Locator `cachedResultUrl`

n8n: Stored DOM XSS via Resource Locator `cachedResultUrl`

▾ Twilightn8n · n8nEPSS 0.24%via GHSA
CVE-2023-37508Medium· 6.1
2mo ago

HCL DevOps Plan is potentially susceptible to Cross-Site Scripting (XSS) which could allow an attacker to exploit this vulnerability if certain browser weaknesses are present.

HCL DevOps Plan is potentially susceptible to Cross-Site Scripting (XSS) which could allow an attacker to exploit this vulnerability if certain browser weaknesses are present.

▾ Sunlithcltech · devops_planEPSS 0.22%via NVD
CVE-2026-47689Medium· 4.6
2mo ago

FOG is a free open-source cloning/imaging/rescue suite/inventory management system

FOG is a free open-source cloning/imaging/rescue suite/inventory management system. Prior to versions 1.5.10.1832 and 1.6.0-beta.2313, the `buildRow()` method in `fogpage.class.php` substitutes data values into HTML table cell templates …

▾ Sunlitfogproject · fogprojectEPSS 0.27%via NVD
CVE-2026-47687High· 7.3
2mo ago

FOG is a free open-source cloning/imaging/rescue suite/inventory management system

FOG is a free open-source cloning/imaging/rescue suite/inventory management system. Prior to versions 1.5.10.1832 and 1.6.0-beta.2313, the `selectForm()` helper in `fogpage.class.php` renders `<option>` labels using raw, unescaped user i…

▾ Twilightfogproject · fogprojectEPSS 0.41%via NVD
CVE-2026-47685High· 7.3
2mo ago

FOG is a free open-source cloning/imaging/rescue suite/inventory management system

FOG is a free open-source cloning/imaging/rescue suite/inventory management system. Prior to versions 1.5.10.1832 and 1.6.0-beta.2313, the unauthenticated inventory service endpoint (`/service/inventory.php`) persists client-supplied val…

▾ Twilightfogproject · fogprojectEPSS 0.37%via NVD
CWE-79 vulnerabilities (CVEs) — page 41 · VulnSea