CWE-79
MITRE ↗Improper Neutralization of Input During Web Page Generation (Cross-site Scripting)
A vulnerability, which was classified as problematic, has been found in Huashengdun WebSSH up to 1.6.2. Affected by this
A vulnerability has been found in Zavy86 WikiDocs up to 1.0.78 and classified as problematic. This vulnerability affects
A vulnerability was found in yangzongzhuan RuoYi up to 4.8.1. It has been rated as problematic. This issue affects some
A vulnerability, which was classified as problematic, has been found in PHPGurukul Online Banquet Booking System 1.0. Af
A vulnerability was found in PHPGurukul Taxi Stand Management System 1.0 and classified as problematic. Affected by this
A vulnerability was found in PHPGurukul Taxi Stand Management System 1.0. It has been classified as problematic. This af
A vulnerability was found in PHPGurukul Apartment Visitors Management System 1.0. It has been rated as problematic. This
A vulnerability classified as problematic was found in jerryshensjf JPACookieShop 蛋糕商城JPA版 up to 24a15c02b4f75042c9f7f61
A vulnerability was found in code-projects Intern Membership Management System 1.0. It has been declared as problematic.
A vulnerability, which was classified as problematic, has been found in Portabilis i-Educar 2.10. Affected by this issue
A vulnerability was found in Portabilis i-Educar 2.9. It has been rated as problematic. Affected by this issue is some u
A vulnerability classified as problematic has been found in Portabilis i-Educar 2.9. This affects an unknown part of the
A vulnerability classified as problematic was found in Portabilis i-Educar 2.9. This vulnerability affects unknown code
A vulnerability, which was classified as problematic, has been found in Portabilis i-Educar 2.9. This issue affects some
A vulnerability, which was classified as problematic, was found in Portabilis i-Educar 2.9. Affected is an unknown funct
Inappropriate implementation in Picture In Picture in Google Chrome prior to 139.0.7258.66 allowed a remote attacker who
Inappropriate implementation in Picture In Picture in Google Chrome prior to 139.0.7258.66 allowed a remote attacker who
Inappropriate implementation in Filesystems in Google Chrome prior to 139.0.7258.66 allowed a remote attacker to perform
Inappropriate implementation in Extensions in Google Chrome prior to 139.0.7258.66 allowed a remote attacker who convinc
A vulnerability was identified in 1000 Projects Sales Management System 1.0. This issue affects some unknown processing
A vulnerability has been found in 1000 Projects Sales Management System 1.0. Affected is an unknown function of the file
A vulnerability has been found in PHPGurukul Zoo Management System 2.1. This vulnerability affects unknown code of the f
HCL BigFix SaaS Authentication Service is affected by a Cross-Site Scripting (XSS) vulnerability. The image upload func
A vulnerability was determined in Portabilis i-Diario up to 1.5.0. This impacts an unknown function of the file /alunos/
A flaw has been found in mtons mblog up to 3.5.0. Impacted is an unknown function of the file /search. This manipulation
A vulnerability has been found in mtons mblog up to 3.5.0. The affected element is an unknown function of the file /admi
A vulnerability was found in mtons mblog up to 3.5.0. The impacted element is an unknown function of the file /admin/use
A vulnerability was determined in 1000projects Online Project Report Submission and Evaluation System 1.0. This affects
A security flaw has been discovered in 1000projects Online Project Report Submission and Evaluation System 1.0. Affected
A weakness has been identified in 1000projects Online Project Report Submission and Evaluation System 1.0. Affected by t
A security vulnerability has been detected in 1000projects Online Project Report Submission and Evaluation System 1.0. A
A vulnerability was found in code-projects Student Information Management System 1.0. The impacted element is an unknown
A weakness has been identified in mtons mblog up to 3.5.0. This issue affects some unknown processing of the file /admin
A security vulnerability has been detected in PHPGurukul Directory Management System 2.0. This vulnerability affects unk
A security vulnerability has been detected in givanz Vvveb 1.0.7.2. This affects an unknown part of the file app/templat
A vulnerability has been found in Khanakag-17 Library Management System up to 60ed174506094dcd166e34904a54288e5d10ff24.
A flaw has been found in RemoteClinic up to 2.0. This vulnerability affects unknown code of the file /staff/edit.php. Ex
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Akınsoft QR
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Akinsoft Oc
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Akinsoft Pr
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Akinsoft My
A security vulnerability has been detected in Campcodes Sales and Inventory System 1.0. Affected by this vulnerability i
A flaw has been found in Campcodes Sales and Inventory System 1.0. This affects an unknown part of the file /index.php.
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Akinsoft e-
A vulnerability was detected in Jinher OA 1.0. Affected is an unknown function of the file /jc6/platform/sys/login!chang
A flaw was found in Keycloak. Keycloak’s account console and other pages accept arbitrary text in the error_description
A vulnerability was detected in Campcodes Grocery Sales and Inventory System 1.0. The affected element is an unknown fun
A vulnerability was identified in itsourcecode POS Point of Sale System 1.0. This vulnerability affects unknown code of
A security flaw has been discovered in itsourcecode POS Point of Sale System 1.0. This issue affects some unknown proces
A weakness has been identified in itsourcecode POS Point of Sale System 1.0. Impacted is an unknown function of the file
Frequently Asked Questions
What is CWE-79?
CWE-79 (Improper Neutralization of Input During Web Page Generation (Cross-site Scripting)) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-79?
There are 53,037 CVE records associated with CWE-79 in our database. Of these, 560 are critical severity, 4909 are high severity, and 31199 are medium severity.
How can I protect against CWE-79 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-79 using AI-powered security agents.
Detect CWE-79 Vulnerabilities
CyberStrike's AI agents automatically detect improper neutralization of input during web page generation (cross-site scripting) vulnerabilities across your infrastructure.
Get Started