VulnSea

CWE-79

CVEs classified under CWE-79, newest first.

2121 CVEsRSS

CVE-2026-75698Critical· 9.3
5d ago

Adobe Connect is affected by a reflected Cross-Site Scripting (XSS) vulnerability

Adobe Connect is affected by a reflected Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this vulnerability to inject malicious scripts into a web page, potentially gaining elevated access or control over the victim's…

▾ Midnightadobe · connectEPSS 0.32%via NVD
CVE-2026-75697Critical· 9.3
5d ago

Adobe Connect is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields

Adobe Connect is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim's browser when t…

▾ Midnightadobe · connectEPSS 0.30%via NVD
CVE-2026-75684Critical· 9.3
5d ago

Adobe Connect is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields

Adobe Connect is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim's browser when t…

▾ Midnightadobe · connectEPSS 0.30%via NVD
CVE-2026-88415High· 8.7PoC
5d ago

MCMS 6.1.1 through 6.2.1 is vulnerable to stored Cross-Site Scripting (XSS)

MCMS 6.1.1 through 6.2.1 is vulnerable to stored Cross-Site Scripting (XSS). The article content field `contentDetails` is excluded from the global XSS filter.

▾ MidnightEPSS 0.31%via NVD
CVE-2026-75689Critical· 9.3
5d ago

Adobe Connect is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields

Adobe Connect is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim's browser when t…

▾ Midnightadobe · connectEPSS 0.30%via NVD
CVE-2026-75744High· 8.1
5d ago

Adobe Experience Manager Forms JEE is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a high-privileged attacker to inject malicious scripts into vulnerable form fields

Adobe Experience Manager Forms JEE is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a high-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be e…

▾ TwilightAdobe · AEM 6.5 Forms JEEEPSS 1.2%via NVD
CVE-2026-95657Low· 3.5PoC
5d ago

A vulnerability was determined in dgtlmoon Changedetection.io up to 0.55.8

A vulnerability was determined in dgtlmoon Changedetection.io up to 0.55.8. This issue affects the function setCurrentSelectedText of the file changedetectionio/static/js/visual-selector.js of the component Visual Selector. Executing a m…

▾ Twilightdgtlmoon · Changedetection.ioEPSS 0.42%via NVD
CVE-2026-86062Medium· 6.1PoC
5d ago

LightRAG provides simple and fast retrieval-augmented generation

LightRAG provides simple and fast retrieval-augmented generation. Prior to 1.5.5, lightrag_webui/src/components/retrieval/ChatMessage.tsx renders answer and thinking content with react-markdown, rehypeRaw, and skipHtml=false without an H…

▾ TwilightHKUDS · LightRAGEPSS 0.25%via NVD
CVE-2026-75510Medium· 5.1PoC
5d ago

Novu provides an API for sending notifications through multiple channels

Novu provides an API for sending notifications through multiple channels. Prior to 3.18.0, Novu's @novu/js In-App Inbox and the @novu/react Inbox component accept a notification call-to-action redirect.url from the v1 cta.data object and…

▾ Twilightnovuhq · novuEPSS 0.35%via NVD
CVE-2026-79315Medium· 4.7
5d ago

A reflected cross-site scripting vulnerability exists in x-ui 0.3.2

A reflected cross-site scripting vulnerability exists in x-ui 0.3.2. The management interface reflects the raw request URI into a client-side template binding expression used for sidebar menu highlighting. Server-side HTML entity escapin…

▾ SunlitEPSS 0.27%via NVD
CVE-2026-95396Medium· 4.3PoC
5d ago

A vulnerability was identified in sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8

A vulnerability was identified in sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8. Affected is an unknown function of the file HospitalController.java of the component Public Search Handlers. The manipulation of the ar…

▾ Twilightsfturing · hosp_orderEPSS 0.47%via NVD
CVE-2026-95665Medium· 5.1
5d ago

MISP contains a reflected cross-site scripting (XSS) vulnerability in the event REST search export confirmation form

MISP contains a reflected cross-site scripting (XSS) vulnerability in the event REST search export confirmation form. The view template app/View/Events/ajax/eventRestSearchExportConfirmationForm.ctp renders a URL-supplied event ID list i…

▾ SunlitMISP · MISPEPSS 0.54%via NVD
CVE-2026-95682Medium· 4.8
5d ago

MISP contains a stored cross-site scripting (XSS) vulnerability in the admin email composition screen

MISP contains a stored cross-site scripting (XSS) vulnerability in the admin email composition screen. The MISP.org organization name setting was interpolated directly into a JavaScript string literal using an unescaped PHP echo: var org…

▾ SunlitMISP · MISPEPSS 0.42%via NVD
CVE-2026-95659Medium· 4.8
5d ago

MISP contains a reflected cross-site scripting (XSS) vulnerability in the AnalystDataController::viewForObject action

MISP contains a reflected cross-site scripting (XSS) vulnerability in the AnalystDataController::viewForObject action. The method accepted a parent object type parameter from the URL without validation and passed it to the Overmind-theme…

▾ SunlitMISP · MISPEPSS 0.39%via NVD
CVE-2026-95661Medium· 5.1
5d ago

MISP contains a reflected cross-site scripting (XSS) vulnerability in the attribute histogram view

MISP contains a reflected cross-site scripting (XSS) vulnerability in the attribute histogram view. The $selectedTypes variable, which is derived from the URL path segment , was interpolated directly into a JavaScript array literal insid…

▾ SunlitMISP · MISPEPSS 0.44%via NVD
CVE-2026-16778Medium· 6.4
5d ago

The Live Composer – Free WordPress Website Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'dslc_module_downloads_output' Shortcode Content in all versions up to, and including, 2.1.21 due to insufficient in…

The Live Composer – Free WordPress Website Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'dslc_module_downloads_output' Shortcode Content in all versions up to, and including, 2.1.21 due to insufficient in…

▾ Sunlitlivecomposer · Live Composer – Free WordPress Website BuilderEPSS 0.22%via NVD
CVE-2026-1645Medium· 4.4
5d ago

The Hostel plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'custom_currency' parameter and the 'locale_url' setting in all versions up to, and including, 1.1.8 due to insufficient input sanitization and output e…

The Hostel plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'custom_currency' parameter and the 'locale_url' setting in all versions up to, and including, 1.1.8 due to insufficient input sanitization and output e…

▾ Sunlitprasunsen · HostelEPSS 0.19%via NVD
CVE-2026-93836High· 7.2
5d ago

The WPC Product Bundles for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'qty' parameter in all versions up to, and including, 8.6.6 due to insufficient input sanitization and output escaping

The WPC Product Bundles for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'qty' parameter in all versions up to, and including, 8.6.6 due to insufficient input sanitization and output escaping. Thi…

▾ Twilightwpclever · WPC Product Bundles for WooCommerceEPSS 0.40%via NVD
CVE-2026-93778High· 7.2
5d ago

The WP Yelp Review Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Yelp Review Text (imported via wpyelp_download_source) in all versions up to, and including, 9.2 due to insufficient input sanitization and o…

The WP Yelp Review Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Yelp Review Text (imported via wpyelp_download_source) in all versions up to, and including, 9.2 due to insufficient input sanitization and o…

▾ Twilightjgwhite33 · WP Yelp Review SliderEPSS 0.43%via NVD
CVE-2026-92438High· 8.8
5d ago

The Ninja Forms WordPress plugin 3.15.3 does not escape submitted form field values before outputting them on the submission edit screen in the admin area, which could allow unauthenticated users to submit values through a public form th…

The Ninja Forms WordPress plugin 3.15.3 does not escape submitted form field values before outputting them on the submission edit screen in the admin area, which could allow unauthenticated users to submit values through a public form th…

▾ TwilightEPSS 0.35%via NVD
CVE-2026-89412High· 7.2
5d ago

The TranslatePress – Translate Multilingual sites with AI Translation plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Translation Memory Suggestion Panel (v-html on suggestion.original) in all versions up to, and in…

The TranslatePress – Translate Multilingual sites with AI Translation plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Translation Memory Suggestion Panel (v-html on suggestion.original) in all versions up to, and in…

▾ Twilightcozmoslabs · TranslatePress – Translate Multilingual sites with AI TranslationEPSS 0.53%via NVD
CVE-2026-94504High· 7.2PoC
5d ago

Ninja Forms 3.15.3 stores an anonymous non-RTE textarea value and renders it without safe HTML encoding in the legacy submission editor

Ninja Forms 3.15.3 stores an anonymous non-RTE textarea value and renders it without safe HTML encoding in the legacy submission editor. An attacker can break out of the textarea with stored script. When an Administrator opens the attack…

▾ Midnightkstover · Ninja Forms – Contact Form Builder with Calculators, Quizzes, Signatures & AI Form BuilderEPSS 0.41%via NVD
CVE-2026-88788Medium· 6.8
5d ago

The Text Styler WordPress plugin through 1.1.1 does not sanitise and escape user-supplied styling values before outputting them within a front-end style block, and does not verify that a user may edit the target post, allowing users with…

The Text Styler WordPress plugin through 1.1.1 does not sanitise and escape user-supplied styling values before outputting them within a front-end style block, and does not verify that a user may edit the target post, allowing users with…

▾ SunlitEPSS 0.43%via NVD
CVE-2026-85653Medium· 6.4
5d ago

The Contextual Related Posts plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'other_attributes' Block Parameter in all versions up to, and including, 4.4.1 due to insufficient input sanitization and output escaping.…

The Contextual Related Posts plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'other_attributes' Block Parameter in all versions up to, and including, 4.4.1 due to insufficient input sanitization and output escaping.…

▾ Sunlitajay · Contextual Related PostsEPSS 0.42%via NVD
CVE-2026-93655Medium· 6.1
5d ago

The Booking Calendar plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'wpbc_auto_fill' parameter in all versions up to, and including, 11.8.3 due to insufficient input sanitization and output escaping

The Booking Calendar plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'wpbc_auto_fill' parameter in all versions up to, and including, 11.8.3 due to insufficient input sanitization and output escaping. This ma…

▾ Sunlitwpdevelop · Booking CalendarEPSS 0.37%via NVD
CVE-2026-94426Low· 3.5PoC
6d ago

A vulnerability was determined in xuxueli xxl-job up to 3.5.0

A vulnerability was determined in xuxueli xxl-job up to 3.5.0. The impacted element is an unknown function of the file /jobgroup/insert. This manipulation of the argument Name causes cross site scripting. The attack can be initiated remo…

▾ Twilightxuxueli · xxl-jobEPSS 0.33%via NVD
CVE-2026-59814High· 7.6PoC
6d ago

Joplin is an open source note-taking and to-do application that organises notes and lists into notebooks

Joplin is an open source note-taking and to-do application that organises notes and lists into notebooks. Prior to 3.7.7, Joplin Server's GET /shares/:id?resource_id= route serves a resource with the attacker-controlled mime value and om…

▾ Midnightlaurent22 · joplinEPSS 0.35%via NVD
CVE-2026-46650Medium· 4.4
6d ago

Joplin is an open source note-taking and to-do application that organises notes and lists into notebooks

Joplin is an open source note-taking and to-do application that organises notes and lists into notebooks. Prior to 3.7.2, isAcceptedUrl() in packages/renderer/htmlUtils.ts uses an unanchored regular expression for internal resource URLs,…

▾ Sunlitlaurent22 · joplinEPSS 0.29%via NVD
CVE-2026-59830Medium· 5.4
6d ago

Discourse is an open-source discussion platform

Discourse is an open-source discussion platform. Prior to 2026.7.0, the post action component failed to escape user-controlled display names before interpolating them into an HTML string passed to trustHTML. A user who could choose a cra…

▾ Sunlitdiscourse · discourseEPSS 0.29%via NVD
CVE-2026-55105High· 7.7PoC
6d ago

Joplin is an open source note-taking and to-do application that organises notes and lists into notebooks

Joplin is an open source note-taking and to-do application that organises notes and lists into notebooks. Prior to 3.6.15 and 3.7.2, packages/renderer/MdToHtml/rules/fountain.ts passes HTML generated by the vendored fountain.js renderer …

▾ Midnightlaurent22 · joplinEPSS 0.50%via NVD
CWE-79 vulnerabilities (CVEs) — page 7 · VulnSea