Vulnerabilities (CVE)

Filtered by CWE-79
Total 47177 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2026-66636 2026-08-20 N/A 6.5 MEDIUM
Contributor Cross Site Scripting (XSS) in Wise Chat <= 3.4 versions.
CVE-2026-66667 2026-08-20 N/A 7.1 HIGH
Unauthenticated Cross Site Scripting (XSS) in Templately <= 3.7.1 versions.
CVE-2026-61986 2026-08-20 N/A 7.1 HIGH
Unauthenticated Cross Site Scripting (XSS) in Contest Gallery <= 30.0.5 versions.
CVE-2026-66639 2026-08-20 N/A 6.5 MEDIUM
Contributor Cross Site Scripting (XSS) in WPZOOM Forms – Contact Form Plugin for Gutenberg <= 2.0.4 versions.
CVE-2026-68565 2026-08-20 N/A 6.5 MEDIUM
Contributor Cross Site Scripting (XSS) in GeoDirectory <= 2.8.172 versions.
CVE-2026-73362 2026-08-20 N/A 7.1 HIGH
Unauthenticated Cross Site Scripting (XSS) in URL Shortify <= 2.5.0 versions.
CVE-2026-66646 2026-08-20 N/A 6.5 MEDIUM
Contributor Cross Site Scripting (XSS) in WP Tab Widget <= 1.2.11 versions.
CVE-2026-73378 2026-08-20 N/A 7.1 HIGH
Unauthenticated Cross Site Scripting (XSS) in Contact Form by Supsystic < 1.10.0 versions.
CVE-2026-19916 2026-08-20 4.0 MEDIUM 3.5 LOW
A vulnerability was detected in code-projects Online Food Order System 1.0. The affected element is an unknown function of the file edit_food_items.php. Performing a manipulation of the argument dname results in cross site scripting. Remote exploitation of the attack is possible. The exploit is now public and may be used.
CVE-2026-73338 2026-08-20 N/A 7.1 HIGH
Unauthenticated Cross Site Scripting (XSS) in Autopay <= 5.0.0 versions.
CVE-2026-68567 2026-08-20 N/A 7.1 HIGH
Unauthenticated Cross Site Scripting (XSS) in Convert Pro <= 1.0.1 versions.
CVE-2026-73375 2026-08-20 N/A 7.1 HIGH
Unauthenticated Cross Site Scripting (XSS) in Ultimate Maps by Supsystic < 1.5.0 versions.
CVE-2026-73382 2026-08-20 N/A 7.1 HIGH
Unauthenticated Cross Site Scripting (XSS) in Site Reviews <= 8.2.0 versions.
CVE-2026-66644 2026-08-20 N/A 6.5 MEDIUM
Contributor Cross Site Scripting (XSS) in Typing Effect <= 1.3.7 versions.
CVE-2026-73351 2026-08-20 N/A 7.1 HIGH
Unauthenticated Cross Site Scripting (XSS) in WordPress Social Login and Register <= 7.8.1 versions.
CVE-2026-66629 2026-08-20 N/A 7.1 HIGH
Unauthenticated Cross Site Scripting (XSS) in Kirki <= 6.2.3 versions.
CVE-2026-73184 2026-08-20 N/A 7.1 HIGH
Unauthenticated Cross Site Scripting (XSS) in Global Gallery <= 11.1.2 versions.
CVE-2026-73360 2026-08-20 N/A 7.1 HIGH
Unauthenticated Cross Site Scripting (XSS) in Chaty Pro <= 3.5.8 versions.
CVE-2026-73358 2026-08-20 N/A 7.1 HIGH
Unauthenticated Cross Site Scripting (XSS) in Affiliates Manager <= 2.9.53 versions.
CVE-2026-73393 2026-08-20 N/A 7.1 HIGH
Unauthenticated Cross Site Scripting (XSS) in Subscribe2 <= 10.46 versions.