Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
web links project web links vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2015-5497
Cross-site scripting (XSS) vulnerability in the Web Links module 6.x-2.x prior to 6.x-2.6 and 7.x-1.x prior to 7.x-1.0 for Drupal allows remote authenticated users with certain permissions to inject arbitrary web script or HTML via unspecified vectors.
Web Links Project Web Links 6.x-2.0
Web Links Project Web Links 7.x-1.0
Web Links Project Web Links 7.x-1.x
Web Links Project Web Links 6.x-2.5
Web Links Project Web Links 6.x-2.4
Web Links Project Web Links 6.x-2.2
Web Links Project Web Links 6.x-2.3
Web Links Project Web Links 6.x-2.1
NA
CVE-2007-5598
Cross-site scripting (XSS) vulnerability in Weblinks for Drupal 4.7.x prior to 4.7.x-1.0 and 5.x prior to 5.x-1.8 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
Web Links Project Web Links
6.1
CVSSv3
CVE-2016-4833
Cross-site scripting (XSS) vulnerability in the Nofollow Links plugin prior to 1.0.11 for WordPress allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
Nofollow Links Project Nofollow Links
NA
CVE-2015-4388
Cross-site scripting (XSS) vulnerability in the Current Search Links module 7.x-1.x prior to 7.x-1.1 for Drupal, when the "Append the keywords passed by the user to the list" option is disabled, allows remote malicious users to inject arbitrary web script or HTML via a ...
Current Search Links Project Current Search Links 7.x-1.x-dev
Current Search Links Project Current Search Links 7.x-1.0
NA
CVE-2014-6294
Cross-site scripting (XSS) vulnerability in the External links click statistics (outstats) extension 0.0.3 and previous versions for TYPO3 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
External Links Click Statistics Project External Links Click Statistics
NA
CVE-2014-4537
Cross-site scripting (XSS) vulnerability in inpage.tpl.php in the Keyword Strategy Internal Links plugin 2.0 and previous versions for WordPress allows remote malicious users to inject arbitrary web script or HTML via the (1) sort, (2) search, or (3) dir parameter.
Keyword Strategy Internal Links Project Keyword Strategy Internal Links
6.1
CVSSv3
CVE-2020-19265
A stored cross-site scripting (XSS) vulnerability in the index.php/Dswjcms/Basis/links component of Dswjcms 1.6.4 allows malicious users to execute arbitrary web scripts or HTML.
Dswjcms Project Dswjcms 1.6.4
NA
CVE-2014-4543
Multiple cross-site scripting (XSS) vulnerabilities in payper/payper.php in the Pay Per Media Player plugin 1.24 and previous versions for WordPress allow remote malicious users to inject arbitrary web script or HTML via the (1) fcolor, (2) links, (3) stitle, (4) height, (5) widt...
Pay Per Media Player Project Pay Per Media Player
NA
CVE-2014-9740
Cross-site scripting (XSS) vulnerability in the Rules Link module 7.x-1.x prior to 7.x-1.1 for Drupal allows remote authenticated users with the "administer rules links" permission to inject arbitrary web script or HTML via unspecified vectors, which are not properly ha...
Rules Link Project Rules Link 7.x-1.0
9.8
CVSSv3
CVE-2021-33913
libspf2 prior to 1.2.11 has a heap-based buffer overflow that might allow remote malicious users to execute arbitrary code (via an unauthenticated e-mail message from anywhere on the Internet) with a crafted SPF DNS record, because of SPF_record_expand_data in spf_expand.c. The a...
Libspf2 Project Libspf2
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-22120
CVE-2024-35921
CVE-2024-35874
brute force
CVE-2024-36080
unprivileged
CVE-2024-35917
IDOR
CVE-2024-4947
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
NEXT »