Security
Headlines
HeadlinesLatestCVEs

Tag

#xss

CVE-2023-36299: Release v1.2.1 · typecho/typecho

A File Upload vulnerability in typecho v.1.2.1 allows a remote attacker to execute arbitrary code via the upload and options-general parameters in index.php.

CVE
#sql#xss#vulnerability#web#windows#php#ssl
CVE-2023-4136: Security Advisories — CrafterCMS 4.0.7 documentation

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CrafterCMS Engine on Windows, MacOS, Linux, x86, ARM, 64 bit allows Reflected XSS.This issue affects CrafterCMS: from 4.0.0 through 4.0.2, from 3.1.0 through 3.1.27.

OX App Suite SSRF / SQL Injection / Cross Site Scripting

OX App Suite suffers from remote SQL injection, server-side request forgery, cross site scripting, improper neutralization, command injection, and exposure of sensitive information vulnerabilities.

Academy LMS 6.0 Cross Site Scripting

Academy LMS version 6.0 suffers from a cross site scripting vulnerability.

PHPJabbers Rental Property Booking 2.0 Cross Site Scripting

PHPJabbers Rental Property Booking version 2.0 suffers from a cross site scripting vulnerability.

PHPJabbers Taxi Booking 2.0 Cross Site Scripting

PHPJabbers Taxi Booking version 2.0 suffers from a cross site scripting vulnerability.

PHPJabbers Cleaning Business 1.0 Cross Site Scripting

PHPJabbers Cleaning Business version 1.0 suffers from a cross site scripting vulnerability.

PHPJabbers Night Club Booking 1.0 Cross Site Scripting

PHPJabbers Night Club Booking version 1.0 suffers from a cross site scripting vulnerability.

PHPJabbers Service Booking Script 1.0 Cross Site Scripting

PHPJabbers Service Booking Script version 1.0 suffers from a cross site scripting vulnerability.

PHPJabbers Shuttle Booking Software 1.0 Cross Site Scripting

PHPJabbers Shuttle Booking Software version 1.0 suffers from a cross site scripting vulnerability.