Fallos del tipo CWE-80

551 resultados
CVE-2024-11404MEDIUMFile Upload Bypass in django FilerEPSS 0.3%CVE-2023-45635MEDIUMWordPress Responsive Tabs plugin < 4.0.6 - HTML Content Injection vulnerabilityEPSS 0.3%CVE-2025-47600MEDIUMWordPress WoodMart theme <= 8.3.7 - Arbitrary Shortcode Execution vulnerabilityEPSS 0.3%CVE-2024-23522MEDIUMWordPress Formidable Forms plugin <= 6.7 - Content Injection vulnerabilityEPSS 0.3%CVE-2024-10621MEDIUMSimple Shortcode for Google Maps <= 1.5.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via ShortcodeEPSS 0.3%CVE-2024-26282HIGHUsing an AMP url with a canonical element, an attacker could have executed JavaScript from an opened bookmarked page. This vulnerability affEPSS 0.3%CVE-2022-23543MEDIUMHTML attributes when attaching a YouTube link to the postEPSS 0.3%CVE-2024-45406MEDIUMCraft CMS stored XSS in breadcrumb list and title fieldsEPSS 0.3%CVE-2025-1807MEDIUMEastnets PaymentSafe Edit Manual Reply directRouter.rfc cross site scriptingEPSS 0.3%CVE-2025-24673MEDIUMWordPress Ketchup Shortcodes Plugin <= 0.1.2 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.3%CVE-2024-28832MEDIUMXSS in Crash Report PageEPSS 0.3%CVE-2025-24678MEDIUMWordPress Listamester Plugin <= 2.3.4 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.3%CVE-2024-54128MEDIUMDirectus has an HTML Injection in CommentEPSS 0.3%CVE-2025-30210HIGHBruno XSS On Environment NameEPSS 0.3%CVE-2026-13314LOWStored XSS in pretix-digitalEPSS 0.3%CVE-2026-57534LOWStored XSS in pretix-pagesEPSS 0.3%CVE-2026-57532HIGHMalicious HTML content contained in the layout specification of a PDF ticket or badge layout was executed when the PDF editor is opened in EPSS 0.3%CVE-2026-1154MEDIUMSourceCodester E-Learning System Lesson index.php cross site scriptingEPSS 0.3%CVE-2024-35680MEDIUMWordPress YITH WooCommerce Product Add-Ons plugin <= 4.9.2 - Content Injection vulnerabilityEPSS 0.3%CVE-2024-35224HIGHStored Cross-Site Scripting (XSS) in OpenProjectEPSS 0.3%