Browse and filter security vulnerabilities across ecosystems
Browse and filter security vulnerabilities across ecosystems
Dashy: Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS)
MCP Inspector is Vulnerable to Potential Command Execution via XSS When Connecting to an Untrusted MCP Server
IBM Engineering Lifecycle Optimization - Publishing cross-site scripting
Tuleap allows XSS via the content of RSS feeds in the RSS widgets
HCL BigFix Patch Download Plug-ins are affected by insecure support for file URI scheme
JavaScript Injection via url encoded values in links in Collabora Office Android
Stored XSS via javascript URI in Apollo Change Requests comment
Backstage has XSS Vulnerability in Software Catalog
A vulnerability has been identified in Desigo PXM30-1 (All versions < V02.20.126.11-41), Desigo PXM30.E (All versions < V02.20.126.11-41), Desigo P...
OpenVPN Access Server 2.9.0 through 2.9.4 allow remote attackers to inject arbitrary web script or HTML via the web login page URL
Elastic App Search versions before 7.7.0 contain a cross site scripting (XSS) flaw when displaying document URLs in the Reference UI