Fallos del tipo CWE-80

552 resultados
CVE-2025-33110MEDIUMIBM OpenPages Vulnerable to HTML InjectionEPSS 0.2%CVE-2025-11874MEDIUMSlippy Slider – Responsive Touch Navigation Slider <= 2.0 - Authenticated (Contributor+) Stored Cross-Site ScriptingEPSS 0.2%CVE-2025-54698MEDIUMWordPress Classified Listing Plugin plugin <= 5.0.0 - Content Injection VulnerabilityEPSS 0.2%CVE-2021-47948MEDIUMWordPress GetPaid Plugin 2.4.6 HTML Injection via Help TextEPSS 0.2%CVE-2025-36230MEDIUMXSS in IBM Aspera FaspexEPSS 0.2%CVE-2026-39712MEDIUMWordPress tagDiv Composer plugin <= 5.4.3 - Arbitrary Shortcode Execution vulnerabilityEPSS 0.2%CVE-2025-52654MEDIUMHCL MyXalytics is affected by an HTML InjectionEPSS 0.2%CVE-2026-45346MEDIUMOpen WebUI: Stored Cross-Site Scripting in SVG RendererEPSS 0.2%CVE-2026-32891CRITICALAnchorr Privilege Escalation: Jellyseerr User → Anchorr Admin via Stored XSSEPSS 0.2%CVE-2026-26460MEDIUMA HTML Injection vulnerability exists in the Dashboard module of Vtiger CRM 8.4.0. The application fails to properly neutralize user-supplieEPSS 0.2%CVE-2025-36121MEDIUMHTML Injection Vulnerability in a Specific URL Endpoint of the IBM OpenPages ApplicationEPSS 0.2%CVE-2025-36397MEDIUMSecurity vulnerabilities have been found in IBM Application GatewayEPSS 0.2%CVE-2025-14289MEDIUMIBM webMethods Integration Server is vulnerable to HTML injectionEPSS 0.2%CVE-2026-1282LOWImproper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) in GitLabEPSS 0.2%CVE-2025-31992MEDIUMHCL MaxAI Assistant is susceptible to a HTML injection vulnerabilityEPSS 0.2%CVE-2026-9646MEDIUMScadaBR Unauthenticated Reflected Cross-Site ScriptingEPSS 0.2%CVE-2025-48884MEDIUMGalette is vulnerable to XSS through Document TypeEPSS 0.2%CVE-2026-39841MEDIUMStored XSS through list fields on Cargo's page values and Special:CargoTablesEPSS 0.2%CVE-2025-52563MEDIUMChamilo: Reflected XSS via page parameterEPSS 0.2%CVE-2026-34718MEDIUMZammad improperly neutralizes of script-related HTML tags in ticket articlesEPSS 0.1%