VulnSea

CWE-80

CVEs classified under CWE-80, newest first.

29 CVEsRSS

CVE-2026-68919High· 7.0
today

GoCD is a continuous deliver server

GoCD is a continuous deliver server. From 13.3.0 until 26.1.0, GoCD does not correctly encode and escape malicious material modification comments that mimic the special trackback format used by package materials when rendering the Stage …

Twilightgocd · gocdvia NVD
CVE-2026-52741High· 7.5
today

GoCD is a continuous deliver server

GoCD is a continuous deliver server. From 18.3.0 until 26.1.0, GoCD can generate unescaped tracking-tool links from commit comments when a project uses a lenient Tracking Tool regular expression with an ID capturing group, such as JIRA-(…

Twilightgocd · gocdvia NVD
CVE-2026-12751Medium· 5.4
6d ago

IBM Cloud Pak for Business Automation is vulnerable to HTML injection

IBM Cloud Pak for Business Automation is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the security context of the hosting site.

SunlitIBM · Cloud Pak for Business AutomationEPSS 0.27%via NVD
CVE-2026-54503Medium· 4.3
6d ago

plone.app.textfield provides a zope.schema-style field type called RichText for storing a value with a related MIME type

plone.app.textfield provides a zope.schema-style field type called RichText for storing a value with a related MIME type. Prior to 2.0.2, 3.0.2, and 4.0.1, depending on the release line, RichTextValue.output returns an unsanitized stored…

Sunlitplone · plone.app.textfieldEPSS 0.23%via NVD
CVE-2026-55690High· 7.5
6d ago

The EmbedVideo Extension is a MediaWiki extension which adds a parser function called #ev and various parser tags for embedding video clips from various video sharing services

The EmbedVideo Extension is a MediaWiki extension which adds a parser function called #ev and various parser tags for embedding video clips from various video sharing services. Prior to 4.1.0, EmbedServiceFactory::newFromName in includes…

TwilightStarCitizenWiki · mediawiki-extensions-EmbedVideoEPSS 0.29%via NVD
CVE-2026-55691High· 8.6PoC
6d ago

The EmbedVideo Extension is a MediaWiki extension which adds a parser function called #ev and various parser tags for embedding video clips from various video sharing services

The EmbedVideo Extension is a MediaWiki extension which adds a parser function called #ev and various parser tags for embedding video clips from various video sharing services. Prior to 4.1.0, EmbedHtmlFormatter::toHtml in includes/Embed…

MidnightStarCitizenWiki · mediawiki-extensions-EmbedVideoEPSS 0.29%via NVD
CVE-2026-55692High· 7.5PoC
6d ago

The EmbedVideo Extension is a MediaWiki extension which adds a parser function called #ev and various parser tags for embedding video clips from various video sharing services

The EmbedVideo Extension is a MediaWiki extension which adds a parser function called #ev and various parser tags for embedding video clips from various video sharing services. Prior to 4.1.0, with the default $wgEmbedVideoRequireConsent…

MidnightStarCitizenWiki · mediawiki-extensions-EmbedVideoEPSS 0.36%via NVD
CVE-2026-52773Medium· 6.1PoC
2w ago

YesWiki is a wiki system written in PHP

YesWiki is a wiki system written in PHP. From version 4.1.0 to before version 4.6.6, YesWiki's archived-revision view reflects the time GET parameter into a hidden HTML input in handlers/page/show.php without escaping. Because MySQL coer…

TwilightYesWiki · yeswikiEPSS 0.48%via NVD
CVE-2026-52774Medium· 6.1PoC
2w ago

YesWiki is a wiki system written in PHP

YesWiki is a wiki system written in PHP. Prior to version 4.6.6, YesWiki's Bazar widget handler reflects the id GET parameter into HTML attributes using strip_tags() only. Because strip_tags() does not escape double quotes, an attacker c…

TwilightYesWiki · yeswikiEPSS 0.51%via NVD
CVE-2026-32773Medium· 6.1
2w ago

There is a lack of XSS escaping in the Spark History Server prior to 3.5.8 which allows a malicious Spark job to generate arbitrary unescaped frontend code which could lead to a minimal privilege escalation in browser

There is a lack of XSS escaping in the Spark History Server prior to 3.5.8 which allows a malicious Spark job to generate arbitrary unescaped frontend code which could lead to a minimal privilege escalation in browser. Users are encourag…

Sunlitapache · sparkEPSS 0.67%via NVD
CVE-2026-55696Medium· 4.3
3w ago

PrivateBin is an online pastebin where the server has zero knowledge of pasted data

PrivateBin is an online pastebin where the server has zero knowledge of pasted data. Prior to 2.0.5, AttachmentViewer.setAttachment in js/privatebin.js uses getAttachmentMimeType to accept attacker-controlled MIME types and uses getBlobU…

Sunlitprivatebin · privatebin/privatebinEPSS 0.22%via NVD
CVE-2026-35163Medium
1mo ago

OctoPrint provides a web interface for controlling consumer 3D printers

OctoPrint provides a web interface for controlling consumer 3D printers. Prior to 1.11.8 and 2.0.0rc3, Suppressed Command notification popups use PNotify rendering for printer-controlled payload.command and payload.message values in src/…

SunlitOctoPrint · OctoPrintEPSS 0.14%via NVD
CVE-2026-73220None
1mo ago

CVAT is an open source interactive video and image annotation tool for computer vision

CVAT is an open source interactive video and image annotation tool for computer vision. From 2.68.0 until 2.70.0, the audio-task annotation guide renderer in cvat-ui/src/audio/components/annotation-page/audio-workspace/top-bar/audio-righ…

SunlitEPSS 0.28%via NVD
CVE-2026-54570Medium· 6.9
1mo ago

AngleSharp is a .NET library for parsing angle bracket based hyper-texts

AngleSharp is a .NET library for parsing angle bracket based hyper-texts. Prior to 1.5.0, MathAnnotationXmlElement in AngleSharp/Mathml/Dom/Internal/MathAnnotationXmlElement.cs is not treated as an HTML integration point when its encodin…

SunlitAngleSharp · AngleSharpEPSS 0.31%via NVD
CVE-2026-52854High· 8.6
1mo ago

Maps is a MediaWiki extension that enables visualization of geographic data through dynamic embedded maps

Maps is a MediaWiki extension that enables visualization of geographic data through dynamic embedded maps. Prior to version 12.1.3, the display_map parser function in the Leaflet service accepts attacker-controlled HTML in the overlays p…

Twilightmediawiki · mediawiki/mapsEPSS 0.64%via NVD
CVE-2026-65841Medium
1mo ago

Jodit Editor is a WYSIWYG editor with a built-in file browser & image editor

Jodit Editor is a WYSIWYG editor with a built-in file browser & image editor. Prior to 4.13.6, Jodit's clean-html denyTags filter does not normalize foreign SVG or MathML script node names, allowing a script element nested directly in SV…

Sunlitjodit · joditEPSS 0.40%via NVD
CVE-2026-50229Medium· 6.1PoC
2mo ago

Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in the number guess example for Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.22, from 10.1.0-M1 through 10.1.55,…

Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in the number guess example for Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.22, from 10.1.0-M1 through 10.1.55,…

Twilightapache · tomcatEPSS 4.1%via NVD
CVE-2026-52816Medium
3mo ago

Gogs's Unauthenticated Jupyter Notebook (ipynb) Sanitizer allows arbitrary data: URIs leading to XSS

Gogs's Unauthenticated Jupyter Notebook (ipynb) Sanitizer allows arbitrary data: URIs leading to XSS

Sunlitgogs · gogs.io/gogsEPSS 0.68%via GHSA
CVE-2025-62198Medium· 5.4
3mo ago

An authenticated user can perform XSS. This issue affects Apache Atlas versions 2.4.0 and earlier. Users are recommended to upgrade to version 2.5.0, which fixes the issue.

An authenticated user can perform XSS. This issue affects Apache Atlas versions 2.4.0 and earlier. Users are recommended to upgrade to version 2.5.0, which fixes the issue.

Sunlitapache · atlasEPSS 0.51%via NVD
GHSA-6vxv-wg6j-5qwpHigh
3mo ago

Gogs: XSS in .ipynb files renderer due to outdated notebookjs

Gogs: XSS in .ipynb files renderer due to outdated notebookjs

Twilightgogs · gogs.io/gogsvia GHSA
CVE-2026-50146High· 7.1
3mo ago

Astro: Reflected XSS via unescaped slot name

Astro: Reflected XSS via unescaped slot name

Twilightastro · astroEPSS 0.27%via GHSA
CVE-2026-20170Medium· 6.1
5mo ago

A vulnerability in the Desktop Agent functionality of Cisco Webex Contact Center could have allowed an unauthenticated, remote attacker to conduct cross-site scripting attacks

A vulnerability in the Desktop Agent functionality of Cisco Webex Contact Center could have allowed an unauthenticated, remote attacker to conduct cross-site scripting attacks. Cisco has addressed this vulnerability in the Cisco Webex Co…

Sunlitcisco · webex_contact_centerEPSS 0.22%via NVD
CVE-2026-0396Low· 3.1
5mo ago

An attacker might be able to inject HTML content into the internal web dashboard by sending crafted DNS queries to a DNSdist instance where domain-based dynamic rules have been enabled via either DynBlockRulesGroup:setSuffixMatchRule or …

An attacker might be able to inject HTML content into the internal web dashboard by sending crafted DNS queries to a DNSdist instance where domain-based dynamic rules have been enabled via either DynBlockRulesGroup:setSuffixMatchRule or …

Sunlitpowerdns · dnsdistEPSS 0.14%via NVD
CVE-2025-51989High· 7.0
1y ago

HTML injection vulnerability in the registration interface in Evolution Consulting Kft

HTML injection vulnerability in the registration interface in Evolution Consulting Kft. HRmaster module v235 allows an attacker to inject HTML tags into the "keresztnév" (firstname) field, which will be sent out in an email resulting in …

TwilightEPSS 0.40%via NVD
CVE-2025-54789Medium· 6.1
1y ago

Files is a module for managing files inside spaces and user profiles

Files is a module for managing files inside spaces and user profiles. In versions 0.16.9 and below, the File Move functionality does not contain logic that prevents injection of arbitrary JavaScript, which can lead to Browser JS code exe…

Sunlithumhub · filesEPSS 0.27%via NVD
CVE-2023-0594High· 7.3
3y ago

grafana: cross site scripting (CVE-2023-0594)

A flaw was found in the grafana package. This flaw allows a malicious user with the ability to introduce trace data to provide a JavaScript that changes the password for the user viewing the trace view (this could be an admin) to a known p…

TwilightRed Hat · Red Hat Ceph Storage 5.3 ToolsEPSS 9.2%via CSAF
CVE-2022-35509Medium· 5.4
4y ago

An issue was discovered in EyouCMS 1.5.8

An issue was discovered in EyouCMS 1.5.8. There is a Storage XSS vulnerability that can allows an attacker to execute arbitrary Web scripts or HTML by injecting a special payload via the title parameter in the foreground contribution, al…

Sunliteyoucms · eyoucmsEPSS 0.57%via NVD
CVE-2018-19953Medium· 6.1CISA KEV0day
5y ago

If exploited, this cross-site scripting vulnerability could allow remote attackers to inject malicious code

If exploited, this cross-site scripting vulnerability could allow remote attackers to inject malicious code. QNAP has already fixed the issue in the following QTS versions. QTS 4.4.2.1231 on build 20200302; QTS 4.4.1.1201 on build 202001…

Midnightqnap · qtsEPSS 24%via NVD
CVE-2018-19943High· 8.0CISA KEV0day
5y ago

If exploited, this cross-site scripting vulnerability could allow remote attackers to inject malicious code

If exploited, this cross-site scripting vulnerability could allow remote attackers to inject malicious code. QNAP has already fixed these issues in the following QTS versions. QTS 4.4.2.1270 build 20200410 and later QTS 4.4.1.1261 build …

Abyssalqnap · qtsEPSS 18%via NVD
CWE-80 vulnerabilities (CVEs) · VulnSea