Vulnerability index

Browse CVEs

108 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-site Scripting (XSS)CWE-79 × clear
MEDIUM 6.1 CVE-2017-15573 In Redmine before 3.2.6 and 3.3.x before 3.3.3, XSS exists because markup is mishandled in wiki content. Debian Linux after 3.2.5 Fix from $1,6002017-10-18 MEDIUM 6.1 CVE-2017-15574 In Redmine before 3.2.6 and 3.3.x before 3.3.3, stored XSS is possible by using an SVG document as an attachment. Debian Linux after 3.2.5 Fix from $1,6002017-10-18 MEDIUM 6.1 CVE-2015-6748 Cross-site scripting (XSS) vulnerability in jsoup before 1.8.3. Debian Linux 1.8.3+ Fix from $1,6002017-09-25 MEDIUM 6.1 CVE-2016-10510 Cross-site scripting (XSS) vulnerability in the Security component of Kohana before 3.3.6 allows remote attackers to inject arbitrary web script or H… Debian Linux after 3.3.5 Fix from $1,6002017-08-31 MEDIUM 6.1 CVE-2017-11107 phpLDAPadmin through 1.2.3 has XSS in htdocs/entry_chooser.php via the form, element, rdn, or container parameter. Debian Linux after 1.2.3 Fix from $1,6002017-07-08 MEDIUM 6.1 CVE-2017-4965 An issue was discovered in these Pivotal RabbitMQ versions: all 3.4.x versions, all 3.5.x versions, and 3.6.x versions prior to 3.6.9; and these Rabb… Debian Linux Mitigation only Fix from $1,6002017-06-13 MEDIUM 6.1 CVE-2017-4967 An issue was discovered in these Pivotal RabbitMQ versions: all 3.4.x versions, all 3.5.x versions, and 3.6.x versions prior to 3.6.9; and these Rabb… Debian Linux Mitigation only Fix from $1,6002017-06-13 MEDIUM 6.1 CVE-2017-5938 Cross-site scripting (XSS) vulnerability in the nav_path function in lib/viewvc.py in ViewVC before 1.0.14 and 1.1.x before 1.1.26 allows remote atta… Debian Linux after 1.1.25 Fix from $1,6002017-03-15 MEDIUM 6.1 CVE-2016-6186EPSS 6% Cross-site scripting (XSS) vulnerability in the dismissChangeRelatedObjectPopup function in contrib/admin/static/admin/js/admin/RelatedObjectLookups.… Debian Linux after 1.8.13 Fix from $1,6002016-08-05 MEDIUM 6.1 CVE-2016-1236 Multiple cross-site scripting (XSS) vulnerabilities in (1) revision.php, (2) log.php, (3) listing.php, and (4) comp.php in WebSVN allow context-depen… Debian Linux Mitigation only Fix from $1,6002016-05-11 MEDIUM 6.1 CVE-2016-4561 Cross-site scripting (XSS) vulnerability in the cgierror function in CGI.pm in ikiwiki before 3.20160506 might allow remote attackers to inject arbit… Debian Linux after 3.20160121 Fix from $1,6002016-05-10 MEDIUM 6.1 CVE-2016-1652 Cross-site scripting (XSS) vulnerability in the ModuleSystem::RequireForJsInner function in extensions/renderer/module_system.cc in the Extensions su… Debian Linux after 49.0.2623.112 Fix from $1,6002016-04-18 MEDIUM 6.1 CVE-2016-2228 Cross-site scripting (XSS) vulnerability in horde/templates/topbar/_menubar.html.php in Horde Groupware before 5.2.12 and Horde Groupware Webmail Edi… Debian Linux after 5.2.11 Fix from $1,6002016-04-13 MEDIUM 5.4 CVE-2016-2058 Multiple cross-site scripting (XSS) vulnerabilities in Xymon 4.1.x, 4.2.x, and 4.3.x before 4.3.25 allow (1) remote Xymon clients to inject arbitrary… Debian Linux Patch available Fix from $1,6002016-04-13 MEDIUM 6.1 CVE-2016-2511 Cross-site scripting (XSS) vulnerability in WebSVN 2.3.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the path para… Debian Linux after 2.3.3 Fix from $1,6002016-04-07 MEDIUM 5.4 CVE-2014-9271 Cross-site scripting (XSS) vulnerability in file_download.php in MantisBT before 1.2.18 allows remote authenticated users to inject arbitrary web scr… Debian Linux Patch available Fix from $1,6002015-01-09 MEDIUM 6.1 CVE-2010-5312EPSS 18% Cross-site scripting (XSS) vulnerability in jquery.ui.dialog.js in the Dialog widget in jQuery UI before 1.10.0 allows remote attackers to inject arb… Debian Linux 1.10.0 / 7.86+ Fix from $1,6002014-11-24 MEDIUM 6.8 CVE-2006-6942 Multiple cross-site scripting (XSS) vulnerabilities in PhpMyAdmin before 2.9.1.1 allow remote attackers to inject arbitrary HTML or web script via (1… Debian Linux after 2.9.1 Fix from $1,6002007-01-19