Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

7,228 of 17,305 · Page 56/145
6.1
CVE-2017-18498

The simple-job-board plugin before 2.4.4 for WordPress has reflected XSS via keyword search.

6.1
CVE-2017-18507

The wp-live-chat-support plugin before 7.1.05 for WordPress has XSS.

6.1
CVE-2018-20963

The contact-form-to-email plugin before 1.2.66 for WordPress has XSS.

6.1
CVE-2016-10866

The all-in-one-wp-security-and-firewall plugin before 4.2.0 for WordPress has multiple XSS issues.

6.1
CVE-2016-10867

The all-in-one-wp-security-and-firewall plugin before 4.0.6 for WordPress has XSS in settings pages.

6.1
CVE-2017-18487

The adsense-plugin (aka Google AdSense) plugin before 1.44 for WordPress has multiple XSS issues.

6.1
CVE-2017-18488

The Backup Guard plugin before 1.1.47 for WordPress has multiple XSS issues.

6.1
CVE-2019-0332

SAP BusinessObjects Business Intelligence Platform (Info View), versions 4.1, 4.2, 4.3, allows an attacker to give some

6.1
CVE-2019-0335

Under certain conditions SAP BusinessObjects Business Intelligence Platform (Central Management Console), versions 4.1,

6.1
CVE-2019-0337

Java Proxy Runtime of SAP NetWeaver Process Integration, versions 7.10, 7.11, 7.30, 7.31, 7.40, 7.50, does not sufficien

6.1
CVE-2015-9311

The newstatpress plugin before 1.0.6 for WordPress has reflected XSS.

6.1
CVE-2015-9312

The newstatpress plugin before 1.0.5 for WordPress has XSS related to an IMG element.

6.1
CVE-2015-9314

The newstatpress plugin before 1.0.4 for WordPress has XSS related to the Referer header.

6.1
CVE-2016-10880

The google-document-embedder plugin before 2.6.1 for WordPress has XSS.

6.1
CVE-2016-10881

The google-document-embedder plugin before 2.6.2 for WordPress has XSS.

6.1
CVE-2019-14974

SugarCRM Enterprise 9.0.0 allows mobile/error-not-supported-platform.html?desktop_url= XSS.

6.1
CVE-2018-19386

SolarWinds Database Performance Analyzer 11.1.457 contains an instance of Reflected XSS in its idcStateError component,

6.1
CVE-2019-14427

XSS exists in WEB STUDIO Ultimate Loan Manager 2.0 by adding a branch under the Branches button that sets the notes para

6.1
CVE-2019-14790

The limb-gallery (aka Limb Gallery) plugin 1.4.0 for WordPress has XSS via the wp-admin/admin-ajax.php?action=grsGallery

6.1
CVE-2019-14784

The "CP Contact Form with PayPal" plugin before 1.2.98 for WordPress has XSS in CSS edition.

6.1
CVE-2019-14789

The Custom 404 Pro plugin 3.2.8 for WordPress has XSS via the wp-admin/admin.php?page=c4p-main page parameter.

6.1
CVE-2019-15095

DWSurvey through 2019-07-22 has reflected XSS via the design/qu-multi-fillblank!answers.action surveyId parameter.

6.1
CVE-2017-18541

The xo-security plugin before 1.5.3 for WordPress has XSS.

6.1
CVE-2017-18542

The zendesk-help-center plugin before 1.0.5 for WordPress has multiple XSS issues.

6.1
CVE-2019-15116

The easy-digital-downloads plugin before 2.9.16 for WordPress has XSS related to IP address logging.

6.1
CVE-2019-6159

A stored cross-site scripting (XSS) vulnerability exists in various firmware versions of the legacy IBM System x IMM (IM

6.1
CVE-2019-15227

FlightPath 4.8.3 has XSS in the Content, Edit urgent message, and Users sections of the Admin Console. This could lead t

6.1
CVE-2018-20975

Fat Free CRM before 0.18.1 has XSS in the tags_helper in app/helpers/tags_helper.rb.

6.1
CVE-2019-15082

The 360-product-rotation plugin before 1.4.8 for WordPress has reflected XSS.

6.1
CVE-2019-15233

The Live:Text Box macro in the Old Street Live Input Macros app before 2.11 for Confluence has XSS, leading to theft of

6.1
CVE-2015-9317

The awesome-support plugin before 3.1.7 for WordPress has XSS via custom information messages.

6.1
CVE-2015-9329

The wp-all-import plugin before 3.2.5 for WordPress has reflected XSS.

6.1
CVE-2016-10893

The crayon-syntax-highlighter plugin before 2.8.4 for WordPress has multiple XSS issues via AJAX requests.

6.1
CVE-2016-10913

The wp-latest-posts plugin before 3.7.5 for WordPress has XSS.

6.1
CVE-2017-18517

The bws-pinterest plugin before 1.0.5 for WordPress has multiple XSS issues.

6.1
CVE-2017-18520

The democracy-poll plugin before 5.4 for WordPress has XSS via update_l10n in admin/class.DemAdminInit.php.

6.1
CVE-2017-18567

The wp-all-import plugin before 3.4.6 for WordPress has XSS.

6.1
CVE-2017-18568

The my-wp-translate plugin before 1.0.4 for WordPress has XSS.

6.1
CVE-2015-9319

The gregs-high-performance-seo plugin before 1.6.2 for WordPress has XSS in the context of an old browser.

6.1
CVE-2015-9320

The option-tree plugin before 2.5.4 for WordPress has XSS related to add_query_arg.

6.1
CVE-2016-10892

The chained-quiz plugin before 1.0 for WordPress has multiple XSS issues.

6.1
CVE-2016-10895

The option-tree plugin before 2.6.0 for WordPress has XSS via an add_list_item or add_social_links AJAX request.

6.1
CVE-2017-18518

The bws-smtp plugin before 1.1.0 for WordPress has multiple XSS issues.

6.1
CVE-2017-18519

The customer-area plugin before 7.4.3 for WordPress has XSS via admin pages.

6.1
CVE-2017-18522

The eelv-newsletter plugin before 4.6.1 for WordPress has XSS in the address book.

6.1
CVE-2017-18524

The football-pool plugin before 2.6.5 for WordPress has multiple XSS issues.

6.1
CVE-2017-18526

The moreads-se plugin before 1.4.7 for WordPress has XSS.

6.1
CVE-2017-18527

The pagination plugin before 1.0.7 for WordPress has multiple XSS issues.

6.1
CVE-2017-18528

The pdf-print plugin before 1.9.4 for WordPress has multiple XSS issues.

6.1
CVE-2017-18529

The promobar plugin before 1.1.1 for WordPress has multiple XSS issues.

Scan for 2019 Vulnerabilities

CyberStrike detects these CVEs across your infrastructure automatically.

Get Started