Platform
Solutions
Pricing
Why Invicti
Resources Library
Get a demo
Home
/
Web Application Vulnerabilities
/ Medium Severity
Web Application Vulnerabilities
Runtime SCA Findings
Looking for the vulnerability index of Invicti's legacy products?
Invicti Enterprise
Acunetix Standard & Premium
Medium Severity Vulnerabilities
Found
8230 vulnerabilities
at
Medium
severity.
Vulnerability Name
CVE
CWE
Severity
Oracle JRE CVE-2024-21235 Vulnerability (CVE-2024-21235)
CVE-2024-21235
-
Medium
MySQL CVE-2024-21236 Vulnerability (CVE-2024-21236)
CVE-2024-21236
-
Medium
MySQL CVE-2024-21238 Vulnerability (CVE-2024-21238)
CVE-2024-21238
-
Medium
MySQL CVE-2024-21239 Vulnerability (CVE-2024-21239)
CVE-2024-21239
-
Medium
MySQL CVE-2024-21241 Vulnerability (CVE-2024-21241)
CVE-2024-21241
-
Medium
MySQL CVE-2024-21262 Vulnerability (CVE-2024-21262)
CVE-2024-21262
-
Medium
Opencart Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-21515)
CVE-2024-21515
CWE-707
Medium
Opencart Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-21516)
CVE-2024-21516
CWE-707
Medium
Opencart Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-21517)
CVE-2024-21517
CWE-707
Medium
PrestaShop Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-21627)
CVE-2024-21627
CWE-707
Medium
PrestaShop Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-21628)
CVE-2024-21628
CWE-707
Medium
XWiki Uncontrolled Resource Consumption Vulnerability (CVE-2024-21651)
CVE-2024-21651
CWE-400
Medium
Atlassian Confluence Incorrect Permission Assignment for Critical Resource Vulnerability (CVE-2024-21703)
CVE-2024-21703
CWE-732
Medium
Joomla Insufficient Session Expiration Vulnerability (CVE-2024-21722)
CVE-2024-21722
CWE-613
Medium
Joomla URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2024-21723)
CVE-2024-21723
CWE-601
Medium
Joomla Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-21724)
CVE-2024-21724
CWE-707
Medium
Joomla Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-21725)
CVE-2024-21725
CWE-707
Medium
Joomla Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-21726)
CVE-2024-21726
CWE-707
Medium
Joomla Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-21729)
CVE-2024-21729
CWE-707
Medium
Joomla Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-21730)
CVE-2024-21730
CWE-707
Medium
Joomla Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-21731)
CVE-2024-21731
CWE-707
Medium
Apache Tomcat Generation of Error Message Containing Sensitive Information Vulnerability (CVE-2024-21733)
CVE-2024-21733
CWE-209
Medium
TinyMCE Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-21908)
CVE-2024-21908
CWE-707
Medium
TinyMCE Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-21910)
CVE-2024-21910
CWE-707
Medium
TinyMCE Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-21911)
CVE-2024-21911
CWE-707
Medium
phpMyFAQ Improper Access Control Vulnerability (CVE-2024-22202)
CVE-2024-22202
CWE-284
Medium
phpMyFAQ Incorrect Authorization Vulnerability (CVE-2024-22208)
CVE-2024-22208
CWE-863
Medium
Seo Panel Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2024-22643)
CVE-2024-22643
CWE-352
Medium
Seo Panel Generation of Error Message Containing Sensitive Information Vulnerability (CVE-2024-22646)
CVE-2024-22646
CWE-209
Medium
Seo Panel Observable Discrepancy Vulnerability (CVE-2024-22647)
CVE-2024-22647
CWE-203
Medium
Seo Panel Server-Side Request Forgery (SSRF) Vulnerability (CVE-2024-22648)
CVE-2024-22648
CWE-918
Medium
osCommerce Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2024-22724)
CVE-2024-22724
CWE-94
Medium
CrushFTP Server Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-22910)
CVE-2024-22910
CWE-707
Medium
MediaWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-23171)
CVE-2024-23171
CWE-707
Medium
MediaWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-23172)
CVE-2024-23172
CWE-707
Medium
MediaWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-23173)
CVE-2024-23173
CWE-707
Medium
MediaWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-23174)
CVE-2024-23174
CWE-707
Medium
MediaWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-23177)
CVE-2024-23177
CWE-707
Medium
MediaWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-23178)
CVE-2024-23178
CWE-707
Medium
MediaWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-23179)
CVE-2024-23179
CWE-707
Medium
Envoy Proxy Uncontrolled Resource Consumption Vulnerability (CVE-2024-23323)
CVE-2024-23323
CWE-400
Medium
MyBB CVE-2024-23335 Vulnerability (CVE-2024-23335)
CVE-2024-23335
-
Medium
MyBB Server-Side Request Forgery (SSRF) Vulnerability (CVE-2024-23336)
CVE-2024-23336
CWE-918
Medium
GeoServer Other Vulnerability (CVE-2024-23634)
CVE-2024-23634
-
Medium
Squid Operation on a Resource after Expiration or Release Vulnerability (CVE-2024-23638)
CVE-2024-23638
CWE-672
Medium
GeoServer Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-23640)
CVE-2024-23640
CWE-707
Medium
GeoServer Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-23642)
CVE-2024-23642
CWE-707
Medium
GeoServer Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-23643)
CVE-2024-23643
CWE-707
Medium
Apache Tomcat Incomplete Cleanup Vulnerability (CVE-2024-23672)
CVE-2024-23672
CWE-459
Medium
Dolibarr Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-23817)
CVE-2024-23817
CWE-707
Medium
GeoServer Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-23818)
CVE-2024-23818
CWE-707
Medium
GeoServer Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-23819)
CVE-2024-23819
CWE-707
Medium
GeoServer Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-23821)
CVE-2024-23821
CWE-707
Medium
phpMyFAQ Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-24574)
CVE-2024-24574
CWE-707
Medium
Apache HTTP Server Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Request/Response Splitting') Vulnerability (CVE-2024-24795)
CVE-2024-24795
CWE-707
Medium
CKEditor Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-24815)
CVE-2024-24815
CWE-707
Medium
CKEditor Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-24816)
CVE-2024-24816
CWE-707
Medium
EspoCRM URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2024-24818)
CVE-2024-24818
CWE-601
Medium
TYPO3 CVE-2024-25118 Vulnerability (CVE-2024-25118)
CVE-2024-25118
-
Medium
TYPO3 CVE-2024-25119 Vulnerability (CVE-2024-25119)
CVE-2024-25119
-
Medium
TYPO3 CVE-2024-25120 Vulnerability (CVE-2024-25120)
CVE-2024-25120
-
Medium
Liferay Portal Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2024-25143)
CVE-2024-25143
CWE-770
Medium
Liferay DXP Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2024-25143)
CVE-2024-25143
CWE-770
Medium
Liferay DXP Excessive Iteration Vulnerability (CVE-2024-25144)
CVE-2024-25144
CWE-834
Medium
Liferay Portal Excessive Iteration Vulnerability (CVE-2024-25144)
CVE-2024-25144
CWE-834
Medium
Liferay Portal Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-25145)
CVE-2024-25145
CWE-707
Medium
Liferay DXP Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-25145)
CVE-2024-25145
CWE-707
Medium
Liferay Portal Observable Discrepancy Vulnerability (CVE-2024-25146)
CVE-2024-25146
CWE-203
Medium
Liferay DXP Observable Discrepancy Vulnerability (CVE-2024-25146)
CVE-2024-25146
CWE-203
Medium
Liferay DXP Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-25147)
CVE-2024-25147
CWE-707
Medium
Liferay Portal Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-25147)
CVE-2024-25147
CWE-707
Medium
Liferay DXP Incorrect Authorization Vulnerability (CVE-2024-25149)
CVE-2024-25149
CWE-863
Medium
Liferay Portal Incorrect Authorization Vulnerability (CVE-2024-25149)
CVE-2024-25149
CWE-863
Medium
Liferay DXP Other Vulnerability (CVE-2024-25150)
CVE-2024-25150
-
Medium
Liferay Portal Other Vulnerability (CVE-2024-25150)
CVE-2024-25150
-
Medium
« Previous
1
...
102
103
104
105
106
107
108
109
110
Next »