🚀 Just released:
Latio 2026 Application Security Market Report.
Read it in our Whitepapers.
100% Signal 0% Noise
Platform
Invicti Platform
Zero-noise AppSec platform
Scan Code
Secure code before runtime
SAST
Early static security analysis
Open Source (SCA)
Find vulnerable dependencies
SBOM & License Risk
Generate SBOMs and track licenses
Secrets
Detect exposed secrets in applications
Infrastructure as Code
Ingest IaC security findings
Container
Track container image vulnerabilities
Test Runtime
Test live applications like attackers
DAST & AI DAST
Test runtime, prove exploitability
Agentic Pentesting
Automate real-world attack techniques
API Security Testing
Discover and test APIs
Attack Surface Management
Identify exposed apps and endpoints
Cloud AppSec
Get a single-pane view of cloud app risk
AI AppSec
Scan smarter, accelerate remediation
Manage Vulnerabilities
See, prioritize, reduce AppSec risk
Vulnerability Management (ASPM)
Centralize and correlate AppSec findings
Compliance & Executive Reporting
Measure risk and impact
Threat Intelligence
Reachability, exploitability, and business logic
Solutions
API Discovery
Manage Vulnerabilities
Automate Security Workflows
Track AppSec KPIs
Manage Open Source Risk
Pricing
Why Invicti
About Us
Case Studies
Contact Us
Careers
Resources
Resource Library
Blog
Webinars
White Papers
Podcasts
Invicti Learn
Savings Calculator
Live Training
Partners
Documentation
Get a demo
Home
/
Web Application Vulnerabilities
Web Application Vulnerabilities
Runtime SCA Findings
Looking for the vulnerability index of Invicti's legacy products?
Invicti Enterprise
Acunetix Standard & Premium
v.26.4.2314
Web Application Vulnerabilities
This page lists
24342 vulnerabilities
in
62 categories
.
Critical: 1593
High: 13071
Medium: 8734
Low: 875
Information: 69
Vulnerability Name
CVE
CWE
Severity
WordPress Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2015-2213)
CVE-2015-2213
CWE-138
High
WordPress Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-14723)
CVE-2017-14723
CWE-138
Critical
WordPress Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-16510)
CVE-2017-16510
CWE-138
Critical
WordPress Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-5611)
CVE-2017-5611
CWE-138
Critical
WordPress Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2022-21661)
CVE-2022-21661
CWE-138
High
WordPress Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2022-21664)
CVE-2022-21664
CWE-138
High
WordPress Improper Privilege Management Vulnerability (CVE-2019-20043)
CVE-2019-20043
CWE-269
Medium
WordPress Improper Privilege Management Vulnerability (CVE-2020-28035)
CVE-2020-28035
CWE-269
Critical
WordPress Improper Privilege Management Vulnerability (CVE-2020-28036)
CVE-2020-28036
CWE-269
Critical
WordPress Improper Restriction of XML External Entity Reference Vulnerability (CVE-2021-29447)
CVE-2021-29447
CWE-611
Medium
WordPress Inadequate Encryption Strength Vulnerability (CVE-2012-6707)
CVE-2012-6707
CWE-326
High
WordPress Incorrect Authorization Vulnerability (CVE-2017-6816)
CVE-2017-6816
CWE-863
Medium
WordPress Incorrect Authorization Vulnerability (CVE-2018-20147)
CVE-2018-20147
CWE-863
Medium
WordPress Incorrect Default Permissions Vulnerability (CVE-2011-1762)
CVE-2011-1762
CWE-276
Medium
WordPress Insecure Default Initialization of Resource Vulnerability (CVE-2017-5491)
CVE-2017-5491
CWE-1188
Medium
WordPress MailPoet Newsletters (wysija-newsletters) unauthenticated file upload
-
CWE-434
High
WordPress migration backup publicly accessible
-
CWE-538
High
WordPress Missing Authentication for Critical Function Vulnerability (CVE-2020-11028)
CVE-2020-11028
CWE-306
High
WordPress MU 'wp-admin/wpmu-blogs.php' Multiple Cross-Site Scripting Vulnerabilities (1.0 - 2.5.1)
CVE-2008-4671
CWE-79
High
WordPress MU 'wp-includes/wpmu-functions.php' Cross-Site Scripting Vulnerability (1.0 - 2.6)
CVE-2009-1030
CWE-79
High
WordPress Multiple Cross-Site Scripting and SQL Injection Vulnerabilities (1.2.1 - 1.2.2)
-
CWE-89
High
WordPress Multiple Cross-Site Scripting Vulnerabilities (1.2 - 1.2.1)
-
CWE-79
High
WordPress Multiple Cross-Site Scripting Vulnerabilities (2.0 - 2.0.1)
CVE-2006-1796
CWE-79
High
WordPress Multiple Cross-Site Scripting Vulnerabilities (2.0.11 - 2.3)
CVE-2008-0193
CWE-79
High
WordPress Multiple Cross-Site Scripting Vulnerabilities (4.1 - 4.2.1)
CVE-2015-8834
CWE-79
High
WordPress Multiple Vulnerabilities (0.70 - 3.6.1)
CVE-2016-5839
CWE-400
High
WordPress OptimizePress unrestricted file upload
CVE-2013-7102
CWE-20
High
WordPress Other Vulnerability (CVE-2004-1559)
CVE-2004-1559
-
Medium
WordPress Other Vulnerability (CVE-2004-1584)
CVE-2004-1584
-
Medium
WordPress Other Vulnerability (CVE-2005-1102)
CVE-2005-1102
-
Medium
WordPress Other Vulnerability (CVE-2005-1687)
CVE-2005-1687
-
High
WordPress Other Vulnerability (CVE-2005-1810)
CVE-2005-1810
-
High
WordPress Other Vulnerability (CVE-2005-2107)
CVE-2005-2107
-
Medium
WordPress Other Vulnerability (CVE-2005-2108)
CVE-2005-2108
-
High
WordPress Other Vulnerability (CVE-2005-2109)
CVE-2005-2109
-
Medium
WordPress Other Vulnerability (CVE-2005-2110)
CVE-2005-2110
-
Medium
WordPress Other Vulnerability (CVE-2005-2612)
CVE-2005-2612
-
High
WordPress Other Vulnerability (CVE-2005-4463)
CVE-2005-4463
-
Medium
WordPress Other Vulnerability (CVE-2006-0733)
CVE-2006-0733
-
Low
WordPress Other Vulnerability (CVE-2006-0985)
CVE-2006-0985
-
Medium
WordPress Other Vulnerability (CVE-2006-0986)
CVE-2006-0986
-
Medium
WordPress Other Vulnerability (CVE-2006-1012)
CVE-2006-1012
-
High
WordPress Other Vulnerability (CVE-2006-1263)
CVE-2006-1263
-
Medium
WordPress Other Vulnerability (CVE-2006-1796)
CVE-2006-1796
-
Medium
WordPress Other Vulnerability (CVE-2006-2667)
CVE-2006-2667
-
High
WordPress Other Vulnerability (CVE-2006-2702)
CVE-2006-2702
-
Medium
WordPress Other Vulnerability (CVE-2006-3389)
CVE-2006-3389
-
Medium
WordPress Other Vulnerability (CVE-2006-3390)
CVE-2006-3390
-
Medium
WordPress Other Vulnerability (CVE-2006-4743)
CVE-2006-4743
-
Medium
WordPress Other Vulnerability (CVE-2006-5705)
CVE-2006-5705
-
Medium
WordPress Other Vulnerability (CVE-2006-6016)
CVE-2006-6016
-
Medium
WordPress Other Vulnerability (CVE-2006-6017)
CVE-2006-6017
-
Medium
WordPress Other Vulnerability (CVE-2006-6808)
CVE-2006-6808
-
Medium
WordPress Other Vulnerability (CVE-2007-0106)
CVE-2007-0106
-
Medium
WordPress Other Vulnerability (CVE-2007-0107)
CVE-2007-0107
-
Medium
WordPress Other Vulnerability (CVE-2007-0109)
CVE-2007-0109
-
Medium
WordPress Other Vulnerability (CVE-2007-0233)
CVE-2007-0233
-
High
WordPress Other Vulnerability (CVE-2007-0262)
CVE-2007-0262
-
High
WordPress Other Vulnerability (CVE-2007-0539)
CVE-2007-0539
-
High
WordPress Other Vulnerability (CVE-2007-0540)
CVE-2007-0540
-
Medium
WordPress Other Vulnerability (CVE-2007-1049)
CVE-2007-1049
-
Medium
WordPress Other Vulnerability (CVE-2007-1230)
CVE-2007-1230
-
Medium
WordPress Other Vulnerability (CVE-2007-1244)
CVE-2007-1244
-
Medium
WordPress Other Vulnerability (CVE-2007-1409)
CVE-2007-1409
-
Medium
WordPress Other Vulnerability (CVE-2007-1599)
CVE-2007-1599
-
Medium
WordPress Other Vulnerability (CVE-2007-1622)
CVE-2007-1622
-
Medium
WordPress Other Vulnerability (CVE-2007-1894)
CVE-2007-1894
-
Medium
WordPress Other Vulnerability (CVE-2007-2627)
CVE-2007-2627
-
Medium
WordPress Other Vulnerability (CVE-2007-2821)
CVE-2007-2821
-
High
WordPress Other Vulnerability (CVE-2007-3140)
CVE-2007-3140
-
Medium
WordPress Other Vulnerability (CVE-2007-3238)
CVE-2007-3238
-
Medium
WordPress Other Vulnerability (CVE-2007-3239)
CVE-2007-3239
-
Medium
WordPress Other Vulnerability (CVE-2007-3240)
CVE-2007-3240
-
Medium
WordPress Other Vulnerability (CVE-2007-3241)
CVE-2007-3241
-
Medium
WordPress Other Vulnerability (CVE-2007-3543)
CVE-2007-3543
-
Medium
«
1
...
213
214
215
...
325
»