Total
47482 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2023-51361 | 1 Gingerplugins | 1 Sticky Chat Widget | 2026-06-17 | N/A | 5.9 MEDIUM |
| Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ginger Plugins Sticky Chat Widget: Click to chat, SMS, Email, Messages, Call Button, Live Chat and Live Support Button allows Stored XSS.This issue affects Sticky Chat Widget: Click to chat, SMS, Email, Messages, Call Button, Live Chat and Live Support Button: from n/a through 1.1.8. | |||||
| CVE-2023-51338 | 1 Phpjabbers | 1 Meeting Room Booking System | 2026-06-17 | N/A | 5.4 MEDIUM |
| PHPJabbers Meeting Room Booking System v1.0 is vulnerable to Multiple Stored Cross-Site Scripting (XSS) in the "title, name" parameters of index.php page. | |||||
| CVE-2023-51337 | 1 Phpjabbers | 1 Event Ticketing System | 2026-06-17 | N/A | 5.4 MEDIUM |
| PHPJabbers Event Ticketing System v1.0 is vulnerable to Reflected Cross-Site Scripting (XSS) in "lid" parameter in index. | |||||
| CVE-2023-51335 | 1 Phpjabbers | 1 Cinema Booking System | 2026-06-17 | N/A | 6.5 MEDIUM |
| PHPJabbers Cinema Booking System v1.0 is vulnerable to Multiple Stored Cross-Site Scripting (XSS) in the "title, name" parameters. | |||||
| CVE-2023-51330 | 1 Phpjabbers | 1 Cinema Booking System | 2026-06-17 | N/A | 5.4 MEDIUM |
| PHPJabbers Cinema Booking System v1.0 is vulnerable to Reflected Cross-Site Scripting (XSS) in Now Showing menu "date" parameter. | |||||
| CVE-2023-51328 | 1 Phpjabbers | 1 Cleaning Business Software | 2026-06-17 | N/A | 5.4 MEDIUM |
| PHPJabbers Cleaning Business Software v1.0 is vulnerable to Multiple Stored Cross-Site Scripting (XSS) in the "c_name, name" parameters. | |||||
| CVE-2023-51325 | 1 Phpjabbers | 1 Shared Asset Booking System | 2026-06-17 | N/A | 5.4 MEDIUM |
| PHPJabbers Shared Asset Booking System v1.0 is vulnerable to Multiple Stored Cross-Site Scripting (XSS) in the "title, name" parameters. | |||||
| CVE-2023-51318 | 1 Phpjabbers | 1 Bus Reservation System | 2026-06-17 | N/A | 5.4 MEDIUM |
| PHPJabbers Bus Reservation System v1.1 is vulnerable to Multiple Stored Cross-Site Scripting (XSS) in the "title, name" parameters. | |||||
| CVE-2023-51315 | 1 Phpjabbers | 1 Restaurant Booking System | 2026-06-17 | N/A | 5.4 MEDIUM |
| PHPJabbers Restaurant Booking System v3.0 is vulnerable to Multiple Stored Cross-Site Scripting (XSS) in the "seat_name, plugin_sms_api_key, plugin_sms_country_code, title, name" parameters. | |||||
| CVE-2023-51312 | 1 Phpjabbers | 1 Restaurant Booking System | 2026-06-17 | N/A | 5.4 MEDIUM |
| PHPJabbers Restaurant Booking System v3.0 is vulnerable to Reflected Cross-Site Scripting (XSS) in Reservations menu, Schedule section date parameter. | |||||
| CVE-2023-51306 | 1 Phpjabbers | 1 Event Ticketing System | 2026-06-17 | N/A | 5.4 MEDIUM |
| PHPJabbers Event Ticketing System v1.0 is vulnerable to Multiple Stored Cross-Site Scripting (XSS) in the "name, title" parameters. | |||||
| CVE-2023-51305 | 2026-06-17 | N/A | 5.4 MEDIUM | ||
| PHPJabbers Car Park Booking System v3.0 is vulnerable to Multiple Stored Cross-Site Scripting (XSS) in the "name, plugin_sms_api_key, plugin_sms_country_code, title, plugin_sms_api_key" parameters. | |||||
| CVE-2023-51303 | 1 Phpjabbers | 1 Event Ticketing System | 2026-06-17 | N/A | 6.1 MEDIUM |
| PHPJabbers Event Ticketing System v1.0 is vulnerable to Multiple HTML Injection in the "lid, name, plugin_sms_api_key, plugin_sms_country_code, title, plugin_sms_api_key, title" parameters. | |||||
| CVE-2023-51300 | 1 Phpjabbers | 1 Hotel Booking System | 2026-06-17 | N/A | 6.1 MEDIUM |
| PHPJabbers Hotel Booking System v4.0 is vulnerable to Cross-Site Scripting (XSS) vulnerabilities in the "name, plugin_sms_api_key, plugin_sms_country_code, title, plugin_sms_api_key" parameters. | |||||
| CVE-2023-51299 | 1 Phpjabbers | 1 Hotel Booking System | 2026-06-17 | N/A | 6.1 MEDIUM |
| PHPJabbers Hotel Booking System v4.0 is vulnerable to HTML Injection in the "name, plugin_sms_api_key, plugin_sms_country_code, title, plugin_sms_api_key, title" parameters. | |||||
| CVE-2023-51296 | 1 Phpjabbers | 1 Event Booking Calendar | 2026-06-17 | N/A | 6.1 MEDIUM |
| PHPJabbers Event Booking Calendar v4.0 is vulnerable to Cross-Site Scripting (XSS) in the "name, plugin_sms_api_key, plugin_sms_country_code, title, plugin_sms_api_key" parameters which allows attackers to execute arbitrary code | |||||
| CVE-2023-51281 | 1 Oretnom23 | 1 Customer Support System | 2026-06-17 | N/A | 5.4 MEDIUM |
| Cross Site Scripting vulnerability in Customer Support System v.1.0 allows a remote attacker to escalate privileges via a crafted script firstname, "lastname", "middlename", "contact" and address parameters. | |||||
| CVE-2023-51254 | 1 Jfinalcms Project | 1 Jfinalcms | 2026-06-17 | N/A | 6.1 MEDIUM |
| Cross Site Scripting vulnerability in Jfinalcms v.5.0.0 allows a remote attacker to execute arbitrary code via a crafted script to the friendship link component. | |||||
| CVE-2023-51252 | 1 Publiccms | 1 Publiccms | 2026-06-17 | N/A | 5.4 MEDIUM |
| PublicCMS 4.0 is vulnerable to Cross Site Scripting (XSS). Because files can be uploaded and online preview function is provided, pdf files and html files containing malicious code are uploaded, an XSS popup window is realized through online viewing. | |||||
| CVE-2023-51246 | 1 Get-simple | 1 Getsimplecms | 2026-06-17 | N/A | 5.4 MEDIUM |
| A Cross Site Scripting (XSS) vulnerability in GetSimple CMS 3.3.16 exists when using Source Code Mode as a backend user to add articles via the /admin/edit.php page. | |||||
