🚀 Just released:
Latio 2026 Application Security Market Report.
Read it in our Whitepapers.
100% Signal 0% Noise
Platform
Invicti Platform
Zero-noise AppSec platform
Scan Code
Secure code before runtime
SAST
Early static security analysis
Open Source (SCA)
Find vulnerable dependencies
SBOM & License Risk
Generate SBOMs and track licenses
Secrets
Detect exposed secrets in applications
Infrastructure as Code
Ingest IaC security findings
Container
Track container image vulnerabilities
Test Runtime
Test live applications like attackers
DAST & AI DAST
Test runtime, prove exploitability
Agentic Pentesting
Automate real-world attack techniques
API Security Testing
Discover and test APIs
Attack Surface Management
Identify exposed apps and endpoints
Cloud AppSec
Get a single-pane view of cloud app risk
AI AppSec
Scan smarter, accelerate remediation
Manage Vulnerabilities
See, prioritize, reduce AppSec risk
Vulnerability Management (ASPM)
Centralize and correlate AppSec findings
Compliance & Executive Reporting
Measure risk and impact
Threat Intelligence
Reachability, exploitability, and business logic
Solutions
API Discovery
Manage Vulnerabilities
Automate Security Workflows
Track AppSec KPIs
Manage Open Source Risk
Pricing
Why Invicti
About Us
Case Studies
Contact Us
Careers
Resources
Resource Library
Blog
Webinars
White Papers
Podcasts
Invicti Learn
Savings Calculator
Live Training
Partners
Documentation
Get a demo
Home
/
Web Application Vulnerabilities
Web Application Vulnerabilities
Runtime SCA Findings
Looking for the vulnerability index of Invicti's legacy products?
Invicti Enterprise
Acunetix Standard & Premium
v.26.4.2314
Web Application Vulnerabilities
This page lists
24302 vulnerabilities
in
62 categories
.
Critical: 1589
High: 13053
Medium: 8721
Low: 870
Information: 69
Vulnerability Name
CVE
CWE
Severity
LimeSurvey Loop with Unreachable Exit Condition ('Infinite Loop') Vulnerability (CVE-2025-41074)
CVE-2025-41074
CWE-835
High
LimeSurvey Loop with Unreachable Exit Condition ('Infinite Loop') Vulnerability (CVE-2025-41075)
CVE-2025-41075
CWE-835
High
LimeSurvey Other Vulnerability (CVE-2014-5018)
CVE-2014-5018
-
Medium
LimeSurvey Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2018-1000658)
CVE-2018-1000658
CWE-434
High
LimeSurvey Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2018-16397)
CVE-2018-16397
CWE-434
Medium
LimeSurvey Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2021-44967)
CVE-2021-44967
CWE-434
High
LimeSurvey Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2022-48008)
CVE-2022-48008
CWE-434
Critical
Limited Remote File Read/Include in Jira Software Server
CVE-2021-26086
CWE-22
Medium
LISTSERV XSS (CVE-2022-39195)
CVE-2022-39195
CWE-79
Medium
LiteSpeed Web Server Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2010-2333)
CVE-2010-2333
CWE-200
Medium
LiteSpeed Web Server Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2012-4871)
CVE-2012-4871
CWE-707
Medium
LiteSpeed Web Server Missing Release of Memory after Effective Lifetime Vulnerability (CVE-2025-54939)
CVE-2025-54939
CWE-401
High
LiteSpeed Web Server Out-of-bounds Read Vulnerability (CVE-2004-0112)
CVE-2004-0112
CWE-125
Medium
LLM Command Injection
-
CWE-78
Critical
LLM Insecure Output Handling
-
CWE-116
High
LLM Model Detected
-
CWE-200
Information
LLM Prompt Injection
-
CWE-74
High
LLM Response Pattern Detected
-
CWE-200
Information
LLM Server-Side Request Forgery (SSRF)
-
CWE-918
High
LLM System Prompt Leakage
-
CWE-200
Medium
LLM Tool Usage Exposure
-
CWE-200
Low
Local File Inclusion
-
CWE-20
High
Local File Inclusion (CMS Made Simple)
-
CWE-94
Medium
Lodash Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2019-1010266)
CVE-2019-1010266
CWE-770
Medium
Lodash CVE-2018-16487 Vulnerability (CVE-2018-16487)
CVE-2018-16487
-
Medium
Lodash CVE-2018-3721 Vulnerability (CVE-2018-3721)
CVE-2018-3721
-
Medium
Lodash Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2026-4800)
CVE-2026-4800
CWE-94
Critical
Lodash Improper Neutralization of Special Elements used in a Command ('Command Injection') Vulnerability (CVE-2021-23337)
CVE-2021-23337
CWE-138
High
Lodash Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') Vulnerability (CVE-2020-8203)
CVE-2020-8203
CWE-1321
High
Lodash Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') Vulnerability (CVE-2025-13465)
CVE-2025-13465
CWE-1321
Medium
Lodash Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') Vulnerability (CVE-2026-2950)
CVE-2026-2950
CWE-1321
Medium
Lodash Other Vulnerability (CVE-2019-10744)
CVE-2019-10744
-
Critical
Lodash Other Vulnerability (CVE-2020-28500)
CVE-2020-28500
-
Medium
Long password denial of service
-
CWE-400
High
Lotus Notes formula injection
-
CWE-89
High
Lucee CF_CLIENT_ RCE
-
CWE-200
Critical
Lucee Server Arbitrary File Creation
CVE-2021-21307
CWE-22
High
Lucee Stacktrace Information Disclosure
-
CWE-200
Medium
Lucee Unset Admin Password
-
CWE-200
Critical
Macromedia Dreamweaver remote database scripts
CVE-2004-1893
CWE-200
High
Magento (2.2.0 to 2.3.0) Unauthenticated SQL Injection Vulnerability
CVE-2019-7139
CWE-89
High
Magento 2.0-2.3 End of life
-
CWE-1104
Information
Magento Authorization Bypass Through User-Controlled Key Vulnerability (CVE-2019-7854)
CVE-2019-7854
CWE-639
High
Magento Authorization Bypass Through User-Controlled Key Vulnerability (CVE-2019-7864)
CVE-2019-7864
CWE-639
Medium
Magento Authorization Bypass Through User-Controlled Key Vulnerability (CVE-2019-7872)
CVE-2019-7872
CWE-639
Medium
Magento Authorization Bypass Through User-Controlled Key Vulnerability (CVE-2019-7890)
CVE-2019-7890
CWE-639
High
Magento Authorization Bypass Through User-Controlled Key Vulnerability (CVE-2019-7925)
CVE-2019-7925
CWE-639
Medium
Magento Authorization Bypass Through User-Controlled Key Vulnerability (CVE-2019-7950)
CVE-2019-7950
CWE-639
High
Magento Authorization Bypass Through User-Controlled Key Vulnerability (CVE-2019-8235)
CVE-2019-8235
CWE-639
Medium
Magento Cacheleak
-
CWE-200
High
Magento Cleartext Storage of Sensitive Information Vulnerability (CVE-2019-8118)
CVE-2019-8118
CWE-312
Medium
Magento Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') Vulnerability (CVE-2019-8232)
CVE-2019-8232
CWE-362
Medium
Magento Config File Disclosure
-
CWE-200
Medium
Magento Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2018-5301)
CVE-2018-5301
CWE-352
Medium
Magento Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2019-7851)
CVE-2019-7851
CWE-352
Medium
Magento Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2019-7857)
CVE-2019-7857
CWE-352
Medium
Magento Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2019-7865)
CVE-2019-7865
CWE-352
High
Magento Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2019-7873)
CVE-2019-7873
CWE-352
Medium
Magento Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2019-7874)
CVE-2019-7874
CWE-352
Medium
Magento Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2019-7947)
CVE-2019-7947
CWE-352
Medium
Magento Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2019-8109)
CVE-2019-8109
CWE-352
High
Magento Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2019-8155)
CVE-2019-8155
CWE-352
High
Magento Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2021-21027)
CVE-2021-21027
CWE-352
Medium
Magento Cryptographic Issues Vulnerability (CVE-2019-7855)
CVE-2019-7855
-
Medium
Magento Cryptographic Issues Vulnerability (CVE-2019-7858)
CVE-2019-7858
-
High
Magento Cryptographic Issues Vulnerability (CVE-2019-7860)
CVE-2019-7860
-
High
Magento Cryptographic Issues Vulnerability (CVE-2019-7886)
CVE-2019-7886
-
High
Magento CVE-2019-7876 Vulnerability (CVE-2019-7876)
CVE-2019-7876
-
High
Magento CVE-2019-7895 Vulnerability (CVE-2019-7895)
CVE-2019-7895
-
High
Magento CVE-2019-7896 Vulnerability (CVE-2019-7896)
CVE-2019-7896
-
High
Magento CVE-2019-7904 Vulnerability (CVE-2019-7904)
CVE-2019-7904
-
Medium
Magento CVE-2019-7915 Vulnerability (CVE-2019-7915)
CVE-2019-7915
-
High
Magento CVE-2019-7928 Vulnerability (CVE-2019-7928)
CVE-2019-7928
-
High
Magento CVE-2019-8090 Vulnerability (CVE-2019-8090)
CVE-2019-8090
-
Medium
Magento CVE-2019-8091 Vulnerability (CVE-2019-8091)
CVE-2019-8091
-
High
«
1
...
75
76
77
...
325
»