Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Improper Neutralization of Input During Web Page Generation (Cross-site Scripting)

560
CRITICAL
4,909
HIGH
31,199
MEDIUM
2,399
LOW
39,637 CVEs · Page 410/793
3.5
CVE-2020-36828

A vulnerability was found in DiscuzX up to 3.4-20200818. It has been classified as problematic. Affected is the function

3.5
CVE-2014-125110

A vulnerability has been found in wp-file-upload Plugin up to 2.4.3 on WordPress and classified as problematic. Affected

3.5
CVE-2022-4966

A vulnerability was found in sequentech admin-console up to 6.1.7 and classified as problematic. Affected by this issue

3.5
CVE-2024-3138

** DISPUTED ** A vulnerability was found in francoisjacquet RosarioSIS 11.5.1. It has been rated as problematic. This is

3.5
CVE-2024-3140

A vulnerability, which was classified as problematic, was found in SourceCodester Computer Laboratory Management System

3.5
CVE-2024-3320

A vulnerability was found in SourceCodester eLearning System 1.0. It has been rated as problematic. Affected by this iss

3.5
CVE-2024-3321

A vulnerability classified as problematic has been found in SourceCodester eLearning System 1.0. This affects an unknown

3.5
CVE-2024-3357

A vulnerability classified as problematic has been found in SourceCodester Aplaya Beach Resort Online Reservation System

3.5
CVE-2024-3358

A vulnerability classified as problematic was found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0.

3.5
CVE-2024-3364

A vulnerability was found in SourceCodester Online Library System 1.0. It has been declared as problematic. This vulnera

3.5
CVE-2024-3365

A vulnerability was found in SourceCodester Online Library System 1.0. It has been rated as problematic. This issue affe

3.5
CVE-2024-3414

A vulnerability was found in SourceCodester Human Resource Information System 1.0 and classified as problematic. This is

3.5
CVE-2024-3415

A vulnerability was found in SourceCodester Human Resource Information System 1.0. It has been classified as problematic

3.5
CVE-2024-3426

A vulnerability, which was classified as problematic, has been found in SourceCodester Online Courseware 1.0. Affected b

3.5
CVE-2024-3427

A vulnerability, which was classified as problematic, was found in SourceCodester Online Courseware 1.0. This affects an

3.5
CVE-2024-3428

A vulnerability has been found in SourceCodester Online Courseware 1.0 and classified as problematic. This vulnerability

3.5
CVE-2024-3433

A vulnerability classified as problematic has been found in PuneethReddyHC Event Management 1.0. Affected is an unknown

3.5
CVE-2011-10006

A vulnerability was found in GamerZ WP-PostRatings up to 1.64. It has been classified as problematic. This affects an un

3.5
CVE-2014-125111

A vulnerability was found in namithjawahar Wp-Insert up to 2.0.8 and classified as problematic. Affected by this issue i

3.5
CVE-2024-3443

A vulnerability classified as problematic was found in SourceCodester Prison Management System 1.0. This vulnerability a

3.5
CVE-2024-3463

A vulnerability has been found in SourceCodester Laundry Management System 1.0 and classified as problematic. This vulne

3.5
CVE-2024-3524

A vulnerability, which was classified as problematic, has been found in Campcodes Online Event Management System 1.0. Th

3.5
CVE-2024-3525

A vulnerability, which was classified as problematic, was found in Campcodes Online Event Management System 1.0. Affecte

3.5
CVE-2024-3526

A vulnerability has been found in Campcodes Online Event Management System 1.0 and classified as problematic. Affected b

3.5
CVE-2024-3528

A vulnerability was found in Campcodes Complete Online Student Management System 1.0 and classified as problematic. Affe

3.5
CVE-2024-3529

A vulnerability was found in Campcodes Complete Online Student Management System 1.0. It has been classified as problema

3.5
CVE-2024-3530

A vulnerability was found in Campcodes Complete Online Student Management System 1.0. It has been declared as problemati

3.5
CVE-2024-3531

A vulnerability was found in Campcodes Complete Online Student Management System 1.0. It has been rated as problematic.

3.5
CVE-2024-3532

A vulnerability classified as problematic has been found in Campcodes Complete Online Student Management System 1.0. Aff

3.5
CVE-2024-3533

A vulnerability classified as problematic was found in Campcodes Complete Online Student Management System 1.0. Affected

3.5
CVE-2024-3541

A vulnerability classified as problematic has been found in Campcodes Church Management System 1.0. This affects an unkn

3.5
CVE-2024-3542

A vulnerability classified as problematic was found in Campcodes Church Management System 1.0. This vulnerability affect

3.5
CVE-2024-3612

A vulnerability was found in SourceCodester Warehouse Management System 1.0. It has been declared as problematic. Affect

3.5
CVE-2024-3613

A vulnerability was found in SourceCodester Warehouse Management System 1.0. It has been rated as problematic. Affected

3.5
CVE-2024-3614

A vulnerability classified as problematic has been found in SourceCodester Warehouse Management System 1.0. This affects

3.5
CVE-2024-3616

A vulnerability classified as problematic was found in SourceCodester Warehouse Management System 1.0. This vulnerabilit

3.5
CVE-2024-3687

A vulnerability was found in bihell Dice 3.1.0 and classified as problematic. Affected by this issue is some unknown fun

3.5
CVE-2024-3695

A vulnerability has been found in SourceCodester Computer Laboratory Management System 1.0 and classified as problematic

3.5
CVE-2024-30950

A stored cross-site scripting (XSS) vulnerability in FUDforum v3.1.3 allows attackers to execute arbitrary web scripts o

3.5
CVE-2024-3931

A vulnerability was found in Totara LMS up to 18.7. It has been rated as problematic. Affected by this issue is some unk

3.5
CVE-2015-10132

A vulnerability classified as problematic was found in Thimo Grauerholz WP-Spreadplugin up to 3.8.6.1 on WordPress. This

3.5
CVE-2018-25101

A vulnerability, which was classified as problematic, has been found in l2c2technologies Koha up to 20180108. This issue

3.5
CVE-2024-4072

A vulnerability was found in Kashipara Online Furniture Shopping Ecommerce Website 1.0. It has been classified as proble

3.5
CVE-2024-4073

A vulnerability was found in Kashipara Online Furniture Shopping Ecommerce Website 1.0. It has been declared as problema

3.5
CVE-2024-4074

A vulnerability was found in Kashipara Online Furniture Shopping Ecommerce Website 1.0. It has been rated as problematic

3.5
CVE-2024-4075

A vulnerability classified as problematic has been found in Kashipara Online Furniture Shopping Ecommerce Website 1.0. T

3.5
CVE-2024-4293

A vulnerability classified as problematic was found in PHPGurukul Doctor Appointment Management System 1.0. Affected by

3.5
CVE-2024-4327

A vulnerability was found in Apryse WebViewer up to 10.8.0. It has been classified as problematic. This affects an unkno

3.5
CVE-2024-4512

A vulnerability classified as problematic was found in SourceCodester Prison Management System 1.0. This vulnerability a

3.5
CVE-2024-4513

A vulnerability, which was classified as problematic, has been found in Campcodes Complete Web-Based School Management S

Frequently Asked Questions

What is CWE-79?

CWE-79 (Improper Neutralization of Input During Web Page Generation (Cross-site Scripting)) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-79?

There are 53,037 CVE records associated with CWE-79 in our database. Of these, 560 are critical severity, 4909 are high severity, and 31199 are medium severity.

How can I protect against CWE-79 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-79 using AI-powered security agents.

Detect CWE-79 Vulnerabilities

CyberStrike's AI agents automatically detect improper neutralization of input during web page generation (cross-site scripting) vulnerabilities across your infrastructure.

Get Started