Top technology
Linux 13140
Google 12530
Microsoft 12379
Oracle 6737
Apple 6692
Adobe 6387
Ibm 6330
Cisco 5757
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 6.5
CVE-2026-57638
Contributor Cross Site Scripting (XSS) in Fluent Booking <= 2.1.0 versions.
No fix yet
MEDIUM 6.5
CVE-2026-57629
Contributor Cross Site Scripting (XSS) in StatCounter <= 2.1.1 versions.
Mitigation only
HIGH 7.1
CVE-2026-57325
Unauthenticated Cross Site Scripting (XSS) in NanoMag <= 1.8 versions.
Mitigation only
MEDIUM 6.5
CVE-2026-57431
Author Cross Site Scripting (XSS) in Featured Image <= 2.1 versions.
Mitigation only
MEDIUM 6.5
CVE-2026-57617
Contributor Cross Site Scripting (XSS) in SeedProd Pro < 6.19.5 versions.
Mitigation only
MEDIUM 6.5
CVE-2026-57618
Contributor Cross Site Scripting (XSS) in Neve PRO <= 3.1.2 versions.
Mitigation only
HIGH 7.1
CVE-2026-57314
Unauthenticated Cross Site Scripting (XSS) in SureCart <= 4.3.2 versions.
Mitigation only
HIGH 7.1
CVE-2026-57317
Unauthenticated Cross Site Scripting (XSS) in Simply Schedule Appointments <= 1.6.12.2 versions.
Mitigation only
HIGH 7.1
CVE-2026-57319
Unauthenticated Cross Site Scripting (XSS) in FOX <= 1.4.8 versions.
Mitigation only
HIGH 7.1
CVE-2026-57322
Unauthenticated Cross Site Scripting (XSS) in weMail <= 2.1.2 versions.
Mitigation only
HIGH 7.1
CVE-2026-56072
Unauthenticated Cross Site Scripting (XSS) in WoodMart <= 8.5.3 versions.
Mitigation only
HIGH 7.1
CVE-2026-57312
Unauthenticated Cross Site Scripting (XSS) in Everest Forms <= 3.4.8 versions.
Mitigation only
MEDIUM 6.5
CVE-2026-57313
Subscriber Cross Site Scripting (XSS) in SureCart <= 4.2.2 versions.
Mitigation only
HIGH 7.1
CVE-2026-56041
Unauthenticated Cross Site Scripting (XSS) in Responsive Lightbox <= 2.7.6 versions.
Mitigation only
HIGH 7.1
CVE-2026-56043
Unauthenticated Cross Site Scripting (XSS) in Customer Reviews for WooCommerce <= 5.110.1 versions.
Mitigation only
HIGH 7.1
CVE-2026-56044
Unauthenticated Cross Site Scripting (XSS) in Blog2Social <= 8.9.2 versions.
Mitigation only
HIGH 7.1
CVE-2026-56045
Unauthenticated Cross Site Scripting (XSS) in Automatic < 3.135.1 versions.
Mitigation only
MEDIUM 6.5
CVE-2026-56046
Subscriber Cross Site Scripting (XSS) in ListingPro <= 2.9.11 versions.
Mitigation only
HIGH 7.1
CVE-2026-56047
Unauthenticated Cross Site Scripting (XSS) in perfmatters <= 2.6.3 versions.
Mitigation only
HIGH 7.1
CVE-2026-56039
Unauthenticated Cross Site Scripting (XSS) in Quick Interest Slider <= 3.1.6 versions.
Mitigation only
HIGH 7.1
CVE-2026-56040
Unauthenticated Cross Site Scripting (XSS) in Gutenverse Form <= 2.4.7 versions.
Mitigation only
HIGH 7.1
CVE-2026-56011
Unauthenticated Cross Site Scripting (XSS) in MapPress Maps for WordPress <= 2.97.3 versions.
Mitigation only
MEDIUM 6.5
CVE-2025-68074
Contributor Cross Site Scripting (XSS) in Image Carousel <= 1.0.0.41 versions.
Mitigation only
MEDIUM 6.5
CVE-2025-68075
Contributor Cross Site Scripting (XSS) in BNE Testimonials <= 2.0.8 versions.
Mitigation only
MEDIUM 6.5
CVE-2026-57620
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Tim Strifler Exclusive Addons Elementor allows …
Mitigation only
MEDIUM 5.4
CVE-2026-6658
A vulnerability in jupyter/nbconvert versions <= 7.17.0 allows for Cross-site Scripting (XSS) via unsanitized `text/vnd.mermaid` output in HTML expor…
Mitigation only
MEDIUM 5.4
CVE-2026-50740
A missing sanitisation vulnerability of user input in the zone-include.php script exists in Revive Adserver 6.0.7 and earlier. A low‑privileged user …
Revive Adserver
6.0.8+
MEDIUM 5.4
CVE-2026-50742
A stored XSS vulnerabilities exists in the `maintenance-acl-check.php` and `maintenance-banners-check.php` tools of Revive Adserver 6.0.7. The issue …
Revive Adserver
6.0.8+
MEDIUM 6.1
CVE-2026-50745
A missing sanitisation vulnerability exists with user input in the stats-video.php script. The way URLs to this script were constructed did not follo…
Revive Adserver
6.0.8+
MEDIUM 6.9
CVE-2026-13083
A flaw was found in the Pen Drive report generator. Cluster-sourced data is rendered into HTML reports without proper escaping or sanitization. An at…
Pen Drive
1.0.0-2+