Security
Headlines
HeadlinesLatestCVEs

Tag

#xss

GHSA-mrcj-5qxr-vhp2: angular-ui-notification Cross-site Scripting vulnerability

angular-ui-notification v0.1.0, v0.2.0, and v0.3.6 was discovered to contain a cross-site scripting (XSS) vulnerability.

ghsa
#xss#vulnerability#git
CVE-2023-37302

An issue was discovered in SiteLinksView.php in Wikibase in MediaWiki through 1.39.3. There is XSS via a crafted badge title attribute. This is also related to lack of escaping in wbTemplate (from resources/wikibase/templates.js) for quotes (which can be in a title attribute).

CVE-2023-37304

An issue was discovered in the DoubleWiki extension for MediaWiki through 1.39.3. includes/DoubleWiki.php allows XSS via the column alignment feature.

CVE-2023-34840: GitHub - Xh4H/CVE-2023-34840: XSS in angular-ui-notification

angular-ui-notification v0.1.0, v0.2.0, and v0.3.6 was discovered to contain a cross-site scripting (XSS) vulnerability.

GZ Multi Hotel Booking System 1.8 Cross Site Scripting

GZ Multi Hotel Booking System version 1.8 suffers from a cross site scripting vulnerability.

GZ E Learning Platform 1.8 Cross Site Scripting

GZ E Learning Platform version 1.8 suffers from a cross site scripting vulnerability.

CRM Platform 1.8 Cross Site Scripting

CRM Platform version 1.8 suffers from a cross site scripting vulnerability.

GZ Forum Script 1.8 Cross Site Scripting

GZ Forum Script version 1.8 suffers from a cross site scripting vulnerability.

GZ Hotel Booking Script 1.8 Cross Site Scripting

GZ Hotel Booking Script version 1.8 suffers from a cross site scripting vulnerability.

Ticket Booking Script 1.8 Cross Site Scripting

Ticket Booking Script version 1.8 suffers from a cross site scripting vulnerability.