Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Improper Neutralization of Input During Web Page Generation (Cross-site Scripting)

560
CRITICAL
4,909
HIGH
31,199
MEDIUM
2,399
LOW
39,637 CVEs · Page 416/793
3.5
CVE-2024-11259

A vulnerability, which was classified as problematic, has been found in code-projects Farmacia 1.0. This issue affects s

3.5
CVE-2024-10515

In the process of testing the SEO Plugin by Squirrly SEO WordPress plugin before 12.3.21, a vulnerability was found that

3.5
CVE-2024-11488

A vulnerability was found in 115cms up to 20240807 and classified as problematic. This issue affects some unknown proces

3.5
CVE-2024-11489

A vulnerability was found in 115cms up to 20240807. It has been classified as problematic. Affected is an unknown functi

3.5
CVE-2024-11490

A vulnerability was found in 115cms up to 20240807. It has been declared as problematic. Affected by this vulnerability

3.5
CVE-2024-11491

A vulnerability was found in 115cms up to 20240807. It has been rated as problematic. Affected by this issue is some unk

3.5
CVE-2024-11492

A vulnerability classified as problematic has been found in 115cms up to 20240807. This affects an unknown part of the f

3.5
CVE-2024-11493

A vulnerability classified as problematic was found in 115cms up to 20240807. This vulnerability affects unknown code of

3.5
CVE-2024-11587

A vulnerability was found in idcCMS 1.60. It has been classified as problematic. This affects the function GetCityOption

3.5
CVE-2024-51337

Cross Site Scripting vulnerability in Gibbon before v.27.0.01 and fixed in v.28.0.00 allows a remote attacker to obtain

3.5
CVE-2024-10710

The YaDisk Files WordPress plugin through 1.2.5 does not sanitise and escape some of its settings, which could allow hig

3.5
CVE-2024-7056

The WPForms WordPress plugin before 1.9.1.6 does not sanitise and escape some of its settings, which could allow high p

3.5
CVE-2024-11660

A vulnerability was found in code-projects Farmacia 1.0. It has been classified as problematic. This affects an unknown

3.5
CVE-2024-11675

A vulnerability has been found in CodeAstro Hospital Management System 1.0 and classified as problematic. Affected by th

3.5
CVE-2024-11676

A vulnerability was found in CodeAstro Hospital Management System 1.0 and classified as problematic. Affected by this is

3.5
CVE-2024-11677

A vulnerability was found in CodeAstro Hospital Management System 1.0. It has been classified as problematic. This affec

3.5
CVE-2024-11678

A vulnerability was found in CodeAstro Hospital Management System 1.0. It has been declared as problematic. This vulnera

3.5
CVE-2024-11742

A vulnerability, which was classified as problematic, has been found in SourceCodester Best House Rental Management Syst

3.5
CVE-2024-11820

A vulnerability, which was classified as problematic, has been found in code-projects Crud Operation System 1.0. This is

3.5
CVE-2024-49502

A Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in the Setup

3.5
CVE-2024-49503

A Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in SUSE mana

3.5
CVE-2024-11971

A vulnerability classified as problematic was found in Guizhou Xiaoma Technology jpress 5.1.2. Affected by this vulnerab

3.5
CVE-2024-11995

A vulnerability has been found in code-projects Farmacia 1.0 and classified as problematic. Affected by this vulnerabili

3.5
CVE-2024-11996

A vulnerability was found in code-projects Farmacia 1.0 and classified as problematic. Affected by this issue is some un

3.5
CVE-2024-11997

A vulnerability was found in code-projects Farmacia 1.0. It has been classified as problematic. This affects an unknown

3.5
CVE-2024-12000

A vulnerability was found in code-projects Blood Bank System 1.0. It has been rated as problematic. This issue affects s

3.5
CVE-2024-12001

A vulnerability classified as problematic has been found in code-projects Wazifa System 1.0. Affected is an unknown func

3.5
CVE-2024-12180

A vulnerability classified as problematic has been found in DedeCMS 5.7.116. Affected is an unknown function of the file

3.5
CVE-2024-12181

A vulnerability classified as problematic was found in DedeCMS 5.7.116. Affected by this vulnerability is an unknown fun

3.5
CVE-2024-12182

A vulnerability, which was classified as problematic, has been found in DedeCMS 5.7.116. Affected by this issue is some

3.5
CVE-2024-12183

A vulnerability, which was classified as problematic, was found in DedeCMS 5.7.116. This affects the function RemoveXSS

3.5
CVE-2024-12232

A vulnerability has been found in code-projects Simple CRUD Functionality 1.0 and classified as problematic. This vulner

3.5
CVE-2024-12346

A vulnerability has been found in Talentera up to 20241128 and classified as problematic. This vulnerability affects unk

3.5
CVE-2024-12348

A vulnerability was found in Guizhou Xiaoma Technology jpress 5.1.2. It has been classified as problematic. Affected is

3.5
CVE-2024-12359

A vulnerability was found in code-projects Admin Dashboard 1.0. It has been declared as problematic. This vulnerability

3.5
CVE-2024-12536

A vulnerability, which was classified as problematic, has been found in SourceCodester Kortex Lite Advocate Office Manag

3.5
CVE-2024-56082

ChatBar.tsx in Lumos before 1.0.17 parses raw HTML in Markdown because the markdown-to-jsx package is used without disab

3.5
CVE-2024-12664

A vulnerability, which was classified as problematic, has been found in ruifang-tech Rebuild 3.8.5. This issue affects s

3.5
CVE-2024-12665

A vulnerability, which was classified as problematic, was found in ruifang-tech Rebuild 3.8.5. Affected is an unknown fu

3.5
CVE-2024-12783

A vulnerability was found in itsourcecode Vehicle Management System 1.0 and classified as problematic. This issue affect

3.5
CVE-2024-12790

A vulnerability was found in code-projects Hostel Management Site 1.0. It has been declared as problematic. This vulnera

3.5
CVE-2024-12845

A vulnerability classified as problematic was found in Emlog Pro up to 2.4.1. Affected by this vulnerability is an unkno

3.5
CVE-2024-12892

A vulnerability classified as problematic was found in code-projects Online Exam Mastering System 1.0. Affected by this

3.5
CVE-2024-12930

A vulnerability was found in code-projects Simple Admin Panel 1.0 and classified as problematic. This issue affects some

3.5
CVE-2024-12932

A vulnerability was found in code-projects Simple Admin Panel 1.0. It has been declared as problematic. Affected by this

3.5
CVE-2024-12933

A vulnerability was found in code-projects Simple Admin Panel 1.0. It has been rated as problematic. Affected by this is

3.5
CVE-2024-12991

A vulnerability was found in Beijing Longda Jushang Technology DBShop商城系统 3.3 Release 231225. It has been declared as pr

3.5
CVE-2024-12995

A vulnerability classified as problematic has been found in ruifang-tech Rebuild 3.8.6. This affects an unknown part of

3.5
CVE-2024-13012

A vulnerability, which was classified as problematic, has been found in code-projects Hostel Management System 1.0. This

3.5
CVE-2024-13019

A vulnerability classified as problematic has been found in code-projects Chat System 1.0. Affected is an unknown functi

Frequently Asked Questions

What is CWE-79?

CWE-79 (Improper Neutralization of Input During Web Page Generation (Cross-site Scripting)) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-79?

There are 53,037 CVE records associated with CWE-79 in our database. Of these, 560 are critical severity, 4909 are high severity, and 31199 are medium severity.

How can I protect against CWE-79 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-79 using AI-powered security agents.

Detect CWE-79 Vulnerabilities

CyberStrike's AI agents automatically detect improper neutralization of input during web page generation (cross-site scripting) vulnerabilities across your infrastructure.

Get Started