CWE-79
MITRE ↗Improper Neutralization of Input During Web Page Generation (Cross-site Scripting)
A vulnerability was found in donglight bookstore电商书城系统说明 1.0.0. It has been rated as problematic. This issue affects the
A vulnerability classified as problematic was found in langhsu Mblog Blog System 3.5.0. Affected by this vulnerability i
A vulnerability classified as problematic was found in SingMR HouseRent 1.0. This vulnerability affects unknown code of
A vulnerability classified as problematic has been found in code-projects Online Bike Rental 1.0. Affected is an unknown
A vulnerability, which was classified as problematic, was found in CampCodes Computer Laboratory Management System 1.0.
A vulnerability was found in CampCodes DepEd Equipment Inventory System 1.0. It has been rated as problematic. This issu
A vulnerability, which was classified as problematic, was found in reckcn SPPanAdmin 1.0. Affected is an unknown functio
An improper neutralization of script-related html tags in a web page (basic xss) in Fortinet FortiPortal 6.0.0 through 6
A vulnerability has been found in Fanli2012 native-php-cms 1.0 and classified as problematic. This vulnerability affects
A vulnerability was found in Fanli2012 native-php-cms 1.0. It has been classified as problematic. Affected is an unknown
A vulnerability has been found in code-projects Job Recruitment 1.0 and classified as problematic. This vulnerability af
A vulnerability, which was classified as problematic, was found in code-projects Tourism Management System 1.0. Affected
A vulnerability was found in Facile Sistemas Cloud Apps up to 20250107. It has been classified as problematic. Affected
A vulnerability classified as problematic has been found in CampCodes School Management Software 1.0. This affects an un
A vulnerability was found in fumiao opencms 2.2. It has been declared as problematic. This vulnerability affects unknown
A vulnerability classified as problematic has been found in CampCodes School Management Software 1.0. Affected is an unk
A vulnerability was found in ESAFENET CDG V5 and classified as problematic. This issue affects some unknown processing o
A vulnerability was found in ESAFENET CDG V5. It has been declared as problematic. Affected by this vulnerability is an
A vulnerability classified as problematic was found in ESAFENET CDG V5. This vulnerability affects unknown code of the f
A vulnerability was found in ESAFENET CDG V5 and classified as problematic. Affected by this issue is some unknown funct
A vulnerability was found in ESAFENET CDG V5. It has been classified as problematic. This affects an unknown part of the
DevDojo Voyager through version 1.8.0 is vulnerable to reflected XSS via /admin/compass. By manipulating an authenticate
A vulnerability classified as problematic has been found in Maybecms 1.2. This affects an unknown part of the file /mb/a
A vulnerability, which was classified as problematic, has been found in code-projects Job Recruitment 1.0. Affected by t
A vulnerability was found in Zenvia Movidesk up to 25.01.22. It has been rated as problematic. Affected by this issue is
A vulnerability classified as problematic has been found in Zenvia Movidesk up to 25.01.22. This affects an unknown part
A vulnerability classified as problematic has been found in Mindskip xzs-mysql 学之思开源考试系统 3.9.0. Affected is an unknown f
A vulnerability classified as problematic has been found in newbee-mall 1.0. Affected is the function save of the file /
OpenProject is open-source, web-based project management software. In versions prior to 15.2.1, the application fails to
A vulnerability was found in CampCodes School Management Software 1.0. It has been declared as problematic. Affected by
A vulnerability was found in SourceCodester Image Compressor Tool 1.0. It has been rated as problematic. This issue affe
A vulnerability classified as problematic has been found in code-projects Real Estate Property Management System 1.0. Af
A vulnerability classified as problematic was found in code-projects Real Estate Property Management System 1.0. Affecte
A vulnerability has been found in code-projects Job Recruitment 1.0 and classified as problematic. This vulnerability af
A vulnerability, which was classified as problematic, has been found in code-projects Real Estate Property Management Sy
A vulnerability, which was classified as problematic, was found in code-projects Real Estate Property Management System
A vulnerability was found in code-projects Wazifa System 1.0. It has been rated as problematic. This issue affects some
A vulnerability classified as problematic has been found in code-projects Wazifa System 1.0. Affected is the function se
A vulnerability was found in pihome-shc PiHome 1.77. It has been rated as problematic. Affected by this issue is some un
The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content WordPress pl
The Everest Forms WordPress plugin before 3.0.8.1 does not sanitise and escape some of its settings, which could allow
The Simple Video Management System WordPress plugin through 1.0.4 does not sanitise and escape some of its settings, whi
A vulnerability was found in Eastnets PaymentSafe 2.5.26.0. It has been classified as problematic. This affects an unkno
A vulnerability, which was classified as problematic, was found in Internet Web Solutions Sublime CRM up to 20250207. Af
A vulnerability has been found in D-Link DIR-816 1.01TO and classified as problematic. Affected by this vulnerability is
The Master Slider WordPress plugin before 3.10.5 does not sanitise and escape some of its settings, which could allow h
The Carousel, Slider, Gallery by WP Carousel WordPress plugin before 2.7.4 does not sanitise and escape some of its set
The Ajax Search Lite WordPress plugin before 4.12.5 does not sanitise and escape some of its settings, which could allo
A vulnerability was found in iteachyou Dreamer CMS 4.1.3. It has been declared as problematic. This vulnerability affect
A vulnerability was found in pankajindevops scale up to 3633544a00245d3df88b6d13d9b3dd0f411be7f6. It has been classified
Frequently Asked Questions
What is CWE-79?
CWE-79 (Improper Neutralization of Input During Web Page Generation (Cross-site Scripting)) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-79?
There are 53,037 CVE records associated with CWE-79 in our database. Of these, 560 are critical severity, 4909 are high severity, and 31199 are medium severity.
How can I protect against CWE-79 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-79 using AI-powered security agents.
Detect CWE-79 Vulnerabilities
CyberStrike's AI agents automatically detect improper neutralization of input during web page generation (cross-site scripting) vulnerabilities across your infrastructure.
Get Started