CWE-79
MITRE ↗Improper Neutralization of Input During Web Page Generation (Cross-site Scripting)
A vulnerability, which was classified as problematic, was found in SourceCodester Wedding Hall Booking System. This affe
A vulnerability classified as problematic was found in SourceCodester Simple E-Learning System. This vulnerability affec
A vulnerability was found in SourceCodester Company Website CMS. It has been rated as problematic. Affected by this issu
A vulnerability was found in SourceCodester Simple Online Book Store System. It has been classified as problematic. Affe
A vulnerability classified as problematic has been found in SourceCodester Online Admission System. This affects an unkn
A vulnerability classified as problematic was found in SourceCodester Library Management System. This vulnerability affe
A vulnerability, which was classified as problematic, has been found in SourceCodester Company Website CMS. This issue a
A vulnerability was found in SourceCodester Apartment Visitor Management System. It has been classified as problematic.
A vulnerability classified as problematic has been found in SourceCodester Guest Management System. This affects an unkn
A vulnerability has been found in SourceCodester Simple and Nice Shopping Cart Script and classified as problematic. Aff
A vulnerability was found in MotoPress Timetable and Event Schedule. It has been rated as problematic. Affected by this
A vulnerability classified as problematic has been found in MotoPress Timetable and Event Schedule up to 1.4.06. This af
A vulnerability classified as problematic has been found in ConsoleTVs Noxen. Affected is an unknown function of the fil
A vulnerability classified as problematic was found in SourceCodester Simple Task Managing System. This vulnerability af
A vulnerability, which was classified as problematic, has been found in oretnom23 Fast Food Ordering System. This issue
An attacker who is logged into OTRS as an admin user may manipulate the URL to cause execution of JavaScript in the cont
A vulnerability was found in SourceCodester Web-Based Student Clearance System. It has been rated as problematic. Affect
A vulnerability was found in Crealogix EBICS 7.0. It has been rated as problematic. Affected by this issue is some unkno
A vulnerability, which was classified as problematic, has been found in SourceCodester Human Resource Management System
A vulnerability was found in SourceCodester Human Resource Management System 1.0. It has been classified as problematic.
A vulnerability was found in Human Resource Management System 1.0. It has been classified as problematic. This affects a
A vulnerability was found in SourceCodester Sanitization Management System. It has been classified as problematic. Affec
A vulnerability was found in SourceCodester Simple Cold Storage Management System 1.0. It has been declared as problemat
A vulnerability, which was classified as problematic, has been found in SourceCodester Sanitization Management System 1.
A vulnerability, which was classified as problematic, was found in SourceCodester Sanitization Management System 1.0. Af
A vulnerability classified as problematic has been found in Ruby on Rails. This affects an unknown part of the file acti
A vulnerability classified as problematic was found in SourceCodester Online Medicine Ordering System 1.0. Affected by t
A vulnerability, which was classified as problematic, has been found in node-red-dashboard. This issue affects some unkn
A vulnerability was found in eolinker apinto-dashboard and classified as problematic. This issue affects some unknown pr
A vulnerability, which was classified as problematic, has been found in Tribal Systems Zenario CMS. Affected by this iss
A vulnerability, which was classified as problematic, was found in Webmin 2.001. Affected is an unknown function of the
GLPI stands for Gestionnaire Libre de Parc Informatique. GLPI is a Free Asset and IT Management Software package that pr
A vulnerability was found in ForU CMS. It has been classified as problematic. Affected is an unknown function of the fil
A vulnerability, which was classified as problematic, has been found in Sourcecodester Simple Cashiering System. This is
A vulnerability, which was classified as problematic, was found in sanluan PublicCMS. Affected is the function initLink
A vulnerability was found in gnuboard5. It has been classified as problematic. Affected is an unknown function of the fi
A vulnerability has been found in emlog and classified as problematic. Affected by this vulnerability is an unknown func
A vulnerability was found in Frappe. It has been rated as problematic. Affected by this issue is some unknown functional
user_oidc is an OpenID Connect user backend for Nextcloud. Versions prior to 1.2.1 did not properly validate discovery u
A vulnerability, which was classified as problematic, was found in Movie Ticket Booking System. Affected is an unknown f
A vulnerability classified as problematic has been found in SourceCodester Human Resource Management System 1.0. Affecte
Improper neutralization of input during web page generation [CWE-79] in FortiSOAR 7.0.0 through 7.0.3 and 7.2.0 may allo
A vulnerability has been found in csliuwy coder-chain_gdut and classified as problematic. Affected by this vulnerability
A vulnerability has been found in LinZhaoguan pb-cms 2.0 and classified as problematic. Affected by this vulnerability i
A vulnerability was found in S-CMS 5.0 Build 20220328. It has been declared as problematic. Affected by this vulnerabili
A vulnerability was found in RDFlib pyrdfa3 and classified as problematic. This issue affects the function _get_option o
A vulnerability was found in zbl1996 FS-Blog and classified as problematic. This issue affects some unknown processing o
A vulnerability was found in pallidlight online-course-selection-system. It has been classified as problematic. Affected
A vulnerability was found in rAthena FluxCP. It has been classified as problematic. Affected is an unknown function of t
A vulnerability was found in ipti br.tag. It has been declared as problematic. Affected by this vulnerability is an unkn
Frequently Asked Questions
What is CWE-79?
CWE-79 (Improper Neutralization of Input During Web Page Generation (Cross-site Scripting)) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-79?
There are 53,037 CVE records associated with CWE-79 in our database. Of these, 560 are critical severity, 4909 are high severity, and 31199 are medium severity.
How can I protect against CWE-79 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-79 using AI-powered security agents.
Detect CWE-79 Vulnerabilities
CyberStrike's AI agents automatically detect improper neutralization of input during web page generation (cross-site scripting) vulnerabilities across your infrastructure.
Get Started