xss
245 articles with this tag
MEDIUM
HIGH
HIGH
MEDIUM
MEDIUM
MEDIUM
CRITICAL
CRITICAL
MEDIUM
MEDIUM
HIGH
CRITICAL
HIGH
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
HIGH
MEDIUM
MEDIUM
HIGH
MEDIUM
CRITICAL
HIGH
HIGH
HIGH
MEDIUM
CRITICAL
HIGH
HIGH
MEDIUM
MEDIUM
LOW
HIGH
CRITICAL
CRITICAL
HIGH
MEDIUM
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
MEDIUM
MEDIUM
HIGH
MEDIUM
HIGH
INFO
INFO
INFO
MEDIUM
HIGH
HIGH
CRITICAL
LOW
CRITICAL
MEDIUM
HIGH
CRITICAL
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
HIGH
MEDIUM
HIGH
HIGH
HIGH
MEDIUM
HIGH
MEDIUM
HIGH
MEDIUM
CRITICAL
CRITICAL
MEDIUM
CRITICAL
HIGH
MEDIUM
HIGH
HIGH
CRITICAL
MEDIUM
CRITICAL
MEDIUM
INFO
HIGH
Vulnérabilité dans Laravel (10 septembre 2026)
[NEU] [hoch] Drupal Erweiterungen: Mehrere Schwachstellen
NCSC-2026-0363 [1.00] [M/H] Kwetsbaarheden verholpen in Adobe Experience Manager
NCSC-2026-0362 [1.00] [M/H] Kwetsbaarheden verholpen in Adobe ColdFusion
NCSC-2026-0361 [1.00] [M/H] Kwetsbaarheden verholpen in Adobe Commerce
[NEU] [mittel] IBM WebSphere Application Server: Mehrere Schwachstellen
[UPDATE] [hoch] Adobe Experience Manager: Mehrere Schwachstellen
[NEU] [hoch] Roundcube: Mehrere Schwachstellen
Multiples vulnérabilités dans Roundcube Webmail (07 septembre 2026)
NCSC-2026-0343 [1.00] [M/H] Kwetsbaarheden verholpen in GeoNetwork door OpenGeo
Rockwell Automation ArmorStart LT
[NEU] [hoch] BigBlueButton: Mehrere Schwachstellen
[NEU] [hoch] Jenkins: Mehrere Schwachstellen
[webapps] Bludit CMS 3.20.0 - Reflected Cross-Site Scripting
[webapps] PodcastGenerator 3.2.9 - Stored XSS
[webapps] Bludit CMS - Stored XSS
[NEU] [mittel] Livewire: Schwachstelle ermöglicht Cross-Site Scripting
[webapps] C-MOR 6.0104 - Cross-Site Scripting (XSS)
[webapps] CubeCart 6.7.4 - Stored XSS
[webapps] CubeCart 6.7.4 - Cross-Site Scripting
[NEU] [hoch] CKAN: Mehrere Schwachstellen
[NEU] [mittel] WP Royal Royal Elementor Addons: Mehrere Schwachstellen
Multiples vulnérabilités dans Redmine (26 août 2026)
[NEU] [mittel] Grafana: Schwachstelle ermöglicht Cross-Site Scripting
NCSC-2026-0322 [1.00] [M/H] Kwetsbaarheden verholpen in Splunk Enterprise door Splunk
NCSC-2026-0320 [1.00] [M/H] Kwetsbaarheden verholpen in Zabbix
Cisco Industrial Ethernet 1000 Series Switches Stored Cross-Site Scripting Vulnerability
Johnson Controls Metasys
NCSC-2026-0297 [1.00] [M/H] Kwetsbaarheden verholpen in GitLab Enterprise Edition en Community Edition
[NEU] [hoch] Adobe Magento: Mehrere Schwachstellen
NCSC-2026-0292 [1.00] [M/H] Kwetsbaarheden verholpen in Adobe Commerce
NCSC-2026-0286 [1.00] [M/H] Kwetsbaarheden verholpen in Microsoft Office
[NEU] [hoch] HCL BigFix Mobile: Mehrere Schwachstellen
CVE-2026-71497 jsoup: Cleaner may expose markup with custom raw-text elements
New WordPress Pre-Auth XSS Could Lead to PHP Code Execution - Patch ASAP
VU#487613: Alinto SOGo v5.12.7 vulnerable to cross-site scripting via malformed ICS calendar invitations
[NEU] [mittel] Drupal Module: Mehrere Schwachstellen
Cisco Integrated Management Controller Cross-Site Scripting Vulnerability
Stored XSS in Django's admin via an unvalidated URLField display path (CVE-2026-15920)
[NEU] [niedrig] Pega Platform: Schwachstelle ermöglicht Cross-Site Scripting
Multiples vulnérabilités dans Progress MOVEit Transfer (31 juillet 2026)
Laundry Bear’s new Microsoft Exchange attack triggers on email open (CVE-2026-42897)
Russian hackers turn Exchange flaw into ‘half-click’ mailbox takeover
[NEU] [hoch] GitLab: Mehrere Schwachstellen
[NEU] [mittel] drawio: Schwachstelle ermöglicht Cross-Site Scripting
Russian spies take their half-click email attack from Zimbra to Outlook
Russian Hackers Exploit Microsoft OWA Flaw to Keep Mailbox Access After Credential Rotation
[NEU] [hoch] BlackBerry UEM Management Console: Mehrere Schwachstellen
Russian hackers exploited Zimbra zero-day in espionage campaigns
Year-long Russian attacks infect users as soon as they look at an email
Critical Zimbra security update fixes 9 vulnerabilities
Zimbra Patches Critical SNMP Command Injection and Four XSS Vulnerabilities
[NEU] [mittel] Microsoft SharePoint und SharePoint Server: Schwachstelle ermöglicht Cross-Site Scripting
[NEU] [mittel] Microsoft Windows Admin Center: Schwachstelle ermöglicht Cross-Site Scripting
Multiples vulnérabilités dans Drupal (16 juillet 2026)
CVE-2026-57213 RabbitMQ: Stored XSS federation management plugin via unsanitized consumer_tag rendering
NCSC-2026-0234 [1.00] [M/H] Kwetsbaarheden verholpen in Microsoft Exchange
CVE-2026-55021 Microsoft SharePoint Server Spoofing Vulnerability
CVE-2026-55030 Microsoft SharePoint Server Spoofing Vulnerability
CVE-2026-55034 Microsoft SharePoint Server Spoofing Vulnerability
Cross-Site Scripting in Domain parameter
[NEU] [mittel] Grafana: Mehrere Schwachstellen
[NEU] [hoch] JetBrains TeamCity: Mehrere Schwachstellen
Zimbra Patches Critical Code Execution Vulnerability
CVE-2026-59926 Mistune: XSS via unescaped class option in Admonition directive
Critical Zimbra Flaw Could Let Crafted Emails Run Malicious Code in User Sessions
Multiples vulnérabilités dans Progress MOVEit Transfer (10 juillet 2026)
Zimbra urges customers to patch critical web client XSS flaw
[NEU] [hoch] Palo Alto Networks PAN-OS: Mehrere Schwachstellen
[NEU] [mittel] Red Hat JBoss Enterprise Application Platform (io.undertow.jastow): Schwachstelle ermöglicht Cross-Site Scripting
Digi International PortServer TS, Digi One SP IA
Vulnérabilité dans Synacor Zimbra Collaboration (07 juillet 2026)
Multiples vulnérabilités dans Roundcube (06 juillet 2026)
[webapps] KeepInMind 0.8.4.2 - Stored XSS
[webapps] WordPress Plugin WPZOOM Portfolio 1.4.21 - Reflected Cross-Site Scripting (XSS)
NCSC-2026-0219 [1.00] [M/H] Kwetsbaarheden verholpen in GitHub Enterprise Server
NCSC-2026-0217 [1.00] [M/H] Kwetsbaarheden verholpen in Adobe ColdFusion
Multiples vulnérabilités dans Apache Tomcat (30 juin 2026)
Multiples vulnérabilités dans GitLab (25 juin 2026)
GitLab Patches Code Execution, Information Disclosure Vulnerabilities
CVE-2026-25860 turn XSS to RCE
Exploiting Auth0 Defaults in XSS Attacks - elttam
Multiples vulnérabilités dans Drupal (18 juin 2026)
[NEU] [mittel] RabbitMQ: Mehrere Schwachstellen
Multiples vulnérabilités dans Redmine (16 juin 2026)
Vulnérabilité dans LibreNMS (16 juin 2026)
Multiples vulnérabilités dans Microsoft Edge (16 juin 2026)
NCSC-2026-0198 [1.00] [M/H] Kwetsbaarheden verholpen in Splunk Enterprise en Splunk Cloud Platform
CVE-2026-29170 Apache HTTP Server: mod_proxy_ftp XSS
Microsoft patches Exchange Server zero-day exploited in attacks
Multiples vulnérabilités dans les produits SAP (09 juin 2026)
Seven Years on a Public Clipboard: Pasted Secrets, Türkiye's Exposure, and a Stored XSS
Multiples vulnérabilités dans Synology Chat Server pour DSM (04 juin 2026)
VU#265691: Appsmiths SQL Query autocomplete renderer contains a cross site scripting vulnerability
Pretalx vulnerability allows account takeover and admin demotion
[webapps] CubeCart < 6.7.0 - Reflected Cross-Site Scripting (XSS) (Unauthenticated)
[NEU] [hoch] Webmin: Mehrere Schwachstellen
CVE-2026-44844 eml_parser: Recursion DoS via nested message/rfc822 attachments
CVE-2026-44896 Mistune: XSS via unescaped figclass/figwidth in Figure directive
[NEU] [mittel] ONLYOFFICE Docs: Mehrere Schwachstellen