Total
45310 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2026-56011 | 2026-06-26 | N/A | 7.1 HIGH | ||
| Unauthenticated Cross Site Scripting (XSS) in MapPress Maps for WordPress <= 2.97.3 versions. | |||||
| CVE-2026-57656 | 2026-06-26 | N/A | 5.9 MEDIUM | ||
| Author Cross Site Scripting (XSS) in Hester Core <= 1.1.8 versions. | |||||
| CVE-2026-57650 | 2026-06-26 | N/A | 6.5 MEDIUM | ||
| Contributor Cross Site Scripting (XSS) in Magazine Blocks <= 1.8.3 versions. | |||||
| CVE-2025-26984 | 1 Cozyvision | 1 Sms Alert Order Notifications | 2026-06-26 | N/A | 7.1 HIGH |
| Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Cozy Vision SMS Alert Order Notifications sms-alert allows Reflected XSS.This issue affects SMS Alert Order Notifications: from n/a through <= 3.7.8. | |||||
| CVE-2026-57325 | 2026-06-26 | N/A | 7.1 HIGH | ||
| Unauthenticated Cross Site Scripting (XSS) in NanoMag <= 1.8 versions. | |||||
| CVE-2026-57319 | 2026-06-26 | N/A | 7.1 HIGH | ||
| Unauthenticated Cross Site Scripting (XSS) in FOX <= 1.4.8 versions. | |||||
| CVE-2026-57313 | 2026-06-26 | N/A | 6.5 MEDIUM | ||
| Subscriber Cross Site Scripting (XSS) in SureCart <= 4.2.2 versions. | |||||
| CVE-2026-57312 | 2026-06-26 | N/A | 7.1 HIGH | ||
| Unauthenticated Cross Site Scripting (XSS) in Everest Forms <= 3.4.8 versions. | |||||
| CVE-2026-56047 | 2026-06-26 | N/A | 7.1 HIGH | ||
| Unauthenticated Cross Site Scripting (XSS) in perfmatters <= 2.6.3 versions. | |||||
| CVE-2026-56046 | 2026-06-26 | N/A | 6.5 MEDIUM | ||
| Subscriber Cross Site Scripting (XSS) in ListingPro <= 2.9.11 versions. | |||||
| CVE-2026-56040 | 2026-06-26 | N/A | 7.1 HIGH | ||
| Unauthenticated Cross Site Scripting (XSS) in Gutenverse Form <= 2.4.7 versions. | |||||
| CVE-2026-56039 | 2026-06-26 | N/A | 7.1 HIGH | ||
| Unauthenticated Cross Site Scripting (XSS) in Quick Interest Slider <= 3.1.6 versions. | |||||
| CVE-2025-68074 | 2026-06-26 | N/A | 6.5 MEDIUM | ||
| Contributor Cross Site Scripting (XSS) in Image Carousel <= 1.0.0.41 versions. | |||||
| CVE-2026-12425 | 1 Powerschool | 1 Employee Access Center | 2026-06-26 | N/A | 6.1 MEDIUM |
| Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in PowerSchool Employee Access Center allows Cross-Site Scripting (XSS). This issue affects Employee Access Center: 23.10. It is possible to add in javascript code after the login URL and have it be eval()'d in the page and execute in the context of the user. | |||||
| CVE-2026-49241 | 1 Angular | 1 Angular Language Service | 2026-06-26 | N/A | 8.8 HIGH |
| The Angular Language Service VS Code Extension provides a rich editing experience for Angular templates. Prior to 21.2.4, the client-side Angular Language Service VS Code extension reads the custom TypeScript SDK paths typescript.tsdk and js/ts.tsdk.path directly from workspace configurations (.vscode/settings.json) without verifying VS Code Workspace Trust state or asking for user consent (located in client/src/client.ts). The client-side extension then passes the parsed settings path as a command-line argument (--tsdk) to the background Node.js language server process. During server initialization, the background language server resolves and dynamically imports (via standard Node.js require()) the module library tsserverlibrary.js relative to the workspace-specified custom directory path. An attacker can exploit this behavior by committing a repository containing a local malicious tsserverlibrary.js script inside a custom folder, and a crafted .vscode/settings.json file pointing to that folder. When a developer opens the repository folder in VS Code, the extension automatically attempts to initialize and load the server, which dynamically resolves, loads, and executes the malicious script silently in the background. This vulnerability is fixed in 21.2.4. | |||||
| CVE-2026-50178 | 1 Angular | 1 Angular Language Service | 2026-06-26 | N/A | 8.8 HIGH |
| The Angular Language Service VS Code Extension provides a rich editing experience for Angular templates. the client-side Angular Language Service VS Code extension configures the tooltip Markdown renderer with the isTrusted: true option (located in client/src/client.ts). This setting instructs VS Code to trust all rendered content it receives, which enables active elements such as command: URIs. However, the background Angular Language Server process fails to escape or sanitize brackets, raw links, and control characters from JSDoc strings before forwarding the hover Markdown content (located in server/src/handlers/hover.ts and server/src/text_render.ts). An attacker can leverage this behavior by crafting a project TypeScript or JavaScript file (or a third-party npm package dependency) containing a malicious JSDoc tooltip with an embedded active command link. When a developer hovers over the target symbol to render the tooltip and clicks the malicious link, the IDE executes the command sequence directly on the developer's host machine. Prior to 21.2.4, This vulnerability is fixed in 21.2.4. | |||||
| CVE-2026-43915 | 1 Coturn Project | 1 Coturn | 2026-06-26 | N/A | 5.4 MEDIUM |
| Coturn is a free open source implementation of TURN and STUN Server. Versions prior to 4.11.0 contain a stored cross-site scripting (XSS) vulnerability in the web-admin HTTPS interface. An attacker who can create a TURN allocation with a crafted USERNAME value can inject HTML/JavaScript that executes when an authenticated web-admin user views the TURN session list. In configurations using anonymous TURN access (--no-auth), this may be exploitable without TURN credentials. In authenticated deployments, exploitation requires valid TURN credentials or control over a provisioned username. This issue has been fixed in version 4.11.0. | |||||
| CVE-2026-54301 | 1 N8n | 1 N8n | 2026-06-26 | N/A | 5.4 MEDIUM |
| n8n is an open source workflow automation platform. Prior to 1.123.55, 2.25.7, and 2.26.2, an authenticated user with workflow edit access could configure a Respond to Webhook node to serve binary content with an attacker-controlled Content-Type. The binary response path bypassed the central Content-Security-Policy sandbox header, allowing a public webhook to execute JavaScript in the n8n origin when visited by an authenticated user, with access to that user's session. This vulnerability is fixed in 1.123.55, 2.25.7, and 2.26.2. | |||||
| CVE-2026-54302 | 1 N8n | 1 N8n | 2026-06-26 | N/A | 5.4 MEDIUM |
| n8n is an open source workflow automation platform. Prior to 1.123.55, 2.25.7, and 2.26.2, an authenticated user with workflow edit access could inject arbitrary JavaScript into the Chat Trigger's generated page by setting a malicious webhookId. When a logged-in user visited the chat URL, the injected code executed in the n8n origin with that user's session privileges. This vulnerability is fixed in 1.123.55, 2.25.7, and 2.26.2. | |||||
| CVE-2026-9780 | 1 Quest | 1 Netvault Backup | 2026-06-26 | N/A | 8.8 HIGH |
| Quest NetVault Backup addclient3 Cross-Site Scripting Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of Quest NetVault Backup. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the addclient3 webpage. The issue results from the lack of proper validation of user-supplied data, which can lead to the injection of an arbitrary script. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of SYSTEM. Was ZDI-CAN-27666. | |||||
