CWE-80

High likelihood

Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS)

Parent: CWE-79 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

The product receives input from an upstream component, but it does not neutralize or incorrectly neutralizes special characters such as "<", ">", and "&" that could be interpreted as web-scripting elements when they are sent to a downstream component that processes web pages.

517 vulnerabilities with CWE-80
CVE-2025-29431 LOW
Code-projects Online Class And Exam Scheduling System - Basic XSS
CVSS 3.2
CVE-2025-25363 MEDIUM
Thepluginpeople Enterprise Mail Handler < 4.1.69-dc - Basic XSS
CVSS 6.5
CVE-2025-28015 MEDIUM
Phpgurukul User Registration & Login ... - Basic XSS
CVSS 5.3
CVE-2025-27155 MEDIUM
Pinecone <ea4c337 - XSS
CVSS 6.1
CVE-2025-27099 MEDIUM
Tuleap - XSS
CVSS 4.8
CVE-2025-1807 LOW
Eastnets PaymentSafe <2.5.26.0 - XSS
CVSS 3.5
CVE-2025-22274 LOW
CyberArk Endpoint Privilege Manager <24.7.1 - XSS
CVE-2025-25299 LOW
CKEditor 5 - XSS
CVE-2025-22402 LOW
Dell Update Manager Plugin < 1.7.0 - Basic XSS
CVSS 2.6
CVE-2025-24680 HIGH
Wpexperts WP Multi Store Locator < 2.5.1 - Basic XSS
CVSS 7.1
CVE-2025-24678 MEDIUM
Listamester <2.3.4 - XSS
CVSS 6.5
CVE-2025-24673 MEDIUM
AyeCode Ltd Ketchup Shortcodes <0.1.2 - XSS
CVSS 6.5
CVE-2025-23919 MEDIUM
Ella van Durpe Slides & Presentations <0.0.39 - Basic XSS
CVSS 5.4
CVE-2025-21612 HIGH
Starcitizentools Tabber-neue < 2.7.2 - Basic XSS
CVSS 8.6
CVE-2024-49343 MEDIUM
IBM Informix Dynamic Server - Basic XSS
CVSS 5.4
CVE-2024-51475 MEDIUM
IBM Content Navigator - Basic XSS
CVSS 5.4
CVE-2024-13497 HIGH
Tripetto <8.0.9 - XSS
CVSS 7.2
CVE-2024-34398 MEDIUM
BMC Remedy Mid Tier <7.6.04 - Info Disclosure
CVSS 4.2
CVE-2024-49337 MEDIUM
IBM Openpages With Watson < 8.3.0.3 - Basic XSS
CVSS 5.4
CVE-2024-13704 HIGH
Themepoints Super Testimonials < 4.0.2 - Basic XSS
CVSS 7.2
CVE-2024-46910 HIGH
Apache Atlas < 2.4.0 - Basic XSS
CVSS 7.1
CVE-2024-38318 MEDIUM
IBM Aspera Shares <1.9.0-1.10.0 PL6 - XSS
CVSS 4.8
CVE-2024-57004 MEDIUM
Roundcube Webmail 1.6.9 - XSS
CVSS 6.1
CVE-2024-11954 LOW
Pimcore 11.4.2 - XSS
CVSS 2.4
CVE-2024-35112 MEDIUM
IBM Control Center - Basic XSS
CVSS 5.4
Details
Vulnerabilities 517
Exploit Likelihood High