Vulnerability index

Browse CVEs

21 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.4 CVE-2022-38550 A stored cross-site scripting (XSS) vulnerability in the /weibo/list component of Jeesns v2.0.0 allows attackers to execute arbitrary web scripts or … Jeesns No fix yet Fix from $1,6002022-09-19 MEDIUM 6.1 CVE-2020-19295 A reflected cross-site scripting (XSS) vulnerability in the /weibo/topic component of Jeesns 1.4.2 allows attackers to execute arbitrary web scripts … Jeesns No fix yet Fix from $1,6002021-09-09 MEDIUM 5.4 CVE-2020-19294 A stored cross-site scripting (XSS) vulnerability in the /article/comment component of Jeesns 1.4.2 allows attackers to execute arbitrary web scripts… Jeesns No fix yet Fix from $1,6002021-09-09 MEDIUM 6.1 CVE-2020-19282 A reflected cross-site scripting (XSS) vulnerability in Jeesns 1.4.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload … Jeesns No fix yet Fix from $1,6002021-09-09 MEDIUM 6.1 CVE-2020-19283 A reflected cross-site scripting (XSS) vulnerability in the /newVersion component of Jeesns 1.4.2 allows attackers to execute arbitrary web scripts o… Jeesns No fix yet Fix from $1,6002021-09-09 MEDIUM 5.4 CVE-2020-19281 A stored cross-site scripting (XSS) vulnerability in the /manage/loginusername component of Jeesns 1.4.2 allows attackers to execute arbitrary web sc… Jeesns No fix yet Fix from $1,6002021-09-09 MEDIUM 5.4 CVE-2020-19284 A stored cross-site scripting (XSS) vulnerability in the /group/comment component of Jeesns 1.4.2 allows attackers to execute arbitrary web scripts o… Jeesns No fix yet Fix from $1,6002021-09-09 MEDIUM 5.4 CVE-2020-19285 A stored cross-site scripting (XSS) vulnerability in the /group/apply component of Jeesns 1.4.2 allows attackers to execute arbitrary web scripts or … Jeesns No fix yet Fix from $1,6002021-09-09 MEDIUM 5.4 CVE-2020-19286 A stored cross-site scripting (XSS) vulnerability in the /question/detail component of Jeesns 1.4.2 allows attackers to execute arbitrary web scripts… Jeesns No fix yet Fix from $1,6002021-09-09 MEDIUM 5.4 CVE-2020-19287 A stored cross-site scripting (XSS) vulnerability in the /group/post component of Jeesns 1.4.2 allows attackers to execute arbitrary web scripts or H… Jeesns No fix yet Fix from $1,6002021-09-09 MEDIUM 5.4 CVE-2020-19288 A stored cross-site scripting (XSS) vulnerability in the /localhost/u component of Jeesns 1.4.2 allows attackers to execute arbitrary web scripts or … Jeesns No fix yet Fix from $1,6002021-09-09 MEDIUM 5.4 CVE-2020-19289 A stored cross-site scripting (XSS) vulnerability in the /member/picture/album component of Jeesns 1.4.2 allows attackers to execute arbitrary web sc… Jeesns No fix yet Fix from $1,6002021-09-09 MEDIUM 5.4 CVE-2020-19290 A stored cross-site scripting (XSS) vulnerability in the /weibo/comment component of Jeesns 1.4.2 allows attackers to execute arbitrary web scripts o… Jeesns No fix yet Fix from $1,6002021-09-09 MEDIUM 5.4 CVE-2020-19291 A stored cross-site scripting (XSS) vulnerability in the /weibo/publishdata component of Jeesns 1.4.2 allows attackers to execute arbitrary web scrip… Jeesns No fix yet Fix from $1,6002021-09-09 MEDIUM 5.4 CVE-2020-19292 A stored cross-site scripting (XSS) vulnerability in the /question/ask component of Jeesns 1.4.2 allows attackers to execute arbitrary web scripts or… Jeesns No fix yet Fix from $1,6002021-09-09 MEDIUM 5.4 CVE-2020-19293 A stored cross-site scripting (XSS) vulnerability in the /article/add component of Jeesns 1.4.2 allows attackers to execute arbitrary web scripts or … Jeesns No fix yet Fix from $1,6002021-09-09 HIGH 8.8 CVE-2020-19280 Jeesns 1.4.2 contains a cross-site request forgery (CSRF) which allows attackers to escalate privileges and perform sensitive program operations. Jeesns No fix yet Fix from $1,9502021-09-09 MEDIUM 6.1 CVE-2020-18035 Cross Site Scripting (XSS) in Jeesns v1.4.2 allows remote attackers to execute arbitrary code by injecting commands into the "CKEditorFuncNum" parame… Jeesns Mitigation only Fix from $1,6002021-04-29 MEDIUM 5.4 CVE-2018-19178 In JEESNS 1.3, com/lxinet/jeesns/core/utils/XssHttpServletRequestWrapper.java allows stored XSS via an HTML EMBED element, a different vulnerability … Jeesns No fix yet Fix from $1,6002018-11-11 MEDIUM 5.4 CVE-2018-17886 An issue was discovered in JEESNS 1.3. The XSS filter in com.lxinet.jeesns.core.utils.XssHttpServletRequestWrapper.java could be bypassed, as demonst… Jeesns No fix yet Fix from $1,6002018-10-02 MEDIUM 5.4 CVE-2018-12429 JEESNS through 1.2.1 allows XSS attacks by ordinary users who publish articles containing a crafted payload in order to capture an administrator cook… Jeesns after 1.2.1 Fix from $1,6002018-07-18