🚀 Just released:
Latio 2026 Application Security Market Report.
Read it in our Whitepapers.
100% Signal 0% Noise
Platform
Invicti Platform
Zero-noise AppSec platform
Scan Code
Secure code before runtime
SAST
Early static security analysis
Open Source (SCA)
Find vulnerable dependencies
SBOM & License Risk
Generate SBOMs and track licenses
Secrets
Detect exposed secrets in applications
Infrastructure as Code
Ingest IaC security findings
Container
Track container image vulnerabilities
Test Runtime
Test live applications like attackers
DAST & AI DAST
Test runtime, prove exploitability
Agentic Pentesting
Automate real-world attack techniques
API Security Testing
Discover and test APIs
Attack Surface Management
Identify exposed apps and endpoints
Cloud AppSec
Get a single-pane view of cloud app risk
AI AppSec
Scan smarter, accelerate remediation
Manage Vulnerabilities
See, prioritize, reduce AppSec risk
Vulnerability Management (ASPM)
Centralize and correlate AppSec findings
Compliance & Executive Reporting
Measure risk and impact
Threat Intelligence
Reachability, exploitability, and business logic
Solutions
API Discovery
Manage Vulnerabilities
Automate Security Workflows
Track AppSec KPIs
Manage Open Source Risk
Pricing
Why Invicti
About Us
Case Studies
Contact Us
Careers
Resources
Resource Library
Blog
Webinars
White Papers
Podcasts
Invicti Learn
Savings Calculator
Live Training
Partners
Documentation
Get a demo
Home
/
Web Application Vulnerabilities
/ Medium Severity
Web Application Vulnerabilities
Runtime SCA Findings
Looking for the vulnerability index of Invicti's legacy products?
Invicti Enterprise
Acunetix Standard & Premium
v.26.4.2314
Medium Severity Vulnerabilities
Found
8734 vulnerabilities
at
Medium
severity.
Vulnerability Name
CVE
CWE
Severity
MediaWiki Permissions, Privileges, and Access Controls Vulnerability (CVE-2015-8004)
CVE-2015-8004
CWE-264
Medium
MediaWiki Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-8005)
CVE-2015-8005
CWE-200
Medium
Django Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-8213)
CVE-2015-8213
CWE-200
Medium
WordPress Ultimate Member Plugin Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-8354)
CVE-2015-8354
CWE-707
Medium
PHP-Fusion Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-8375)
CVE-2015-8375
CWE-707
Medium
Atlassian Confluence Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-8398)
CVE-2015-8398
CWE-707
Medium
Atlassian Confluence Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-8399)
CVE-2015-8399
CWE-200
Medium
Joomla Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2015-8563)
CVE-2015-8563
CWE-352
Medium
Serendipity Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-8603)
CVE-2015-8603
CWE-707
Medium
silverstripeCMS Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-8606)
CVE-2015-8606
CWE-707
Medium
MediaWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-8622)
CVE-2015-8622
CWE-707
Medium
MediaWiki Improper Access Control Vulnerability (CVE-2015-8627)
CVE-2015-8627
CWE-284
Medium
MediaWiki Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-8628)
CVE-2015-8628
CWE-200
Medium
phpMyAdmin Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-8669)
CVE-2015-8669
CWE-200
Medium
Dolibarr Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-8685)
CVE-2015-8685
CWE-707
Medium
TYPO3 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-8755)
CVE-2015-8755
CWE-707
Medium
TYPO3 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-8756)
CVE-2015-8756
CWE-707
Medium
TYPO3 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-8757)
CVE-2015-8757
CWE-707
Medium
TYPO3 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-8758)
CVE-2015-8758
CWE-707
Medium
TYPO3 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-8759)
CVE-2015-8759
CWE-707
Medium
TYPO3 Improper Input Validation Vulnerability (CVE-2015-8760)
CVE-2015-8760
CWE-20
Medium
Roundcube Cross-site Scripting (XSS) Vulnerability (CVE-2015-8793)
CVE-2015-8793
-
Medium
Dotclear Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-8831)
CVE-2015-8831
CWE-707
Medium
WordPress Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-8834)
CVE-2015-8834
CWE-707
Medium
PHP Improper Access Control Vulnerability (CVE-2015-8838)
CVE-2015-8838
CWE-284
Medium
Handlebars Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-8861)
CVE-2015-8861
CWE-707
Medium
Mustache Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-8862)
CVE-2015-8862
CWE-707
Medium
Roundcube Cross-site Scripting (XSS) Vulnerability (CVE-2015-8864)
CVE-2015-8864
-
Medium
PHP Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') Vulnerability (CVE-2015-8878)
CVE-2015-8878
CWE-362
Medium
PHP Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-8935)
CVE-2015-8935
CWE-707
Medium
MyBB Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-8975)
CVE-2015-8975
CWE-707
Medium
MyBB Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-8976)
CVE-2015-8976
CWE-707
Medium
WebLogic Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-9251)
CVE-2015-9251
CWE-707
Medium
jQuery Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-9251)
CVE-2015-9251
CWE-707
Medium
PHP Uncontrolled Resource Consumption Vulnerability (CVE-2015-9253)
CVE-2015-9253
CWE-400
Medium
WordPress Ultimate Member Plugin Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-9304)
CVE-2015-9304
CWE-707
Medium
jQuery PrettyPhoto Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-9478)
CVE-2015-9478
CWE-707
Medium
Chamilo URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2015-9540)
CVE-2015-9540
CWE-601
Medium
IBM RTC Improper Restriction of XML External Entity Reference Vulnerability (CVE-2016-0219)
CVE-2016-0219
CWE-611
Medium
IBM RTC Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2016-0273)
CVE-2016-0273
CWE-707
Medium
IBM RTC Improper Restriction of XML External Entity Reference Vulnerability (CVE-2016-0284)
CVE-2016-0284
CWE-611
Medium
IBM RTC Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2016-0285)
CVE-2016-0285
CWE-707
Medium
IBM RTC Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2016-0325)
CVE-2016-0325
CWE-138
Medium
IBM RTC Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2016-0331)
CVE-2016-0331
CWE-707
Medium
Oracle Database Server CVE-2016-0461 Vulnerability (CVE-2016-0461)
CVE-2016-0461
-
Medium
Oracle Database Server CVE-2016-0467 Vulnerability (CVE-2016-0467)
CVE-2016-0467
-
Medium
Oracle Database Server CVE-2016-0472 Vulnerability (CVE-2016-0472)
CVE-2016-0472
-
Medium
MySQL CVE-2016-0502 Vulnerability (CVE-2016-0502)
CVE-2016-0502
-
Medium
MySQL CVE-2016-0503 Vulnerability (CVE-2016-0503)
CVE-2016-0503
-
Medium
MySQL CVE-2016-0504 Vulnerability (CVE-2016-0504)
CVE-2016-0504
-
Medium
MySQL CVE-2016-0505 Vulnerability (CVE-2016-0505)
CVE-2016-0505
-
Medium
MySQL CVE-2016-0594 Vulnerability (CVE-2016-0594)
CVE-2016-0594
-
Medium
MySQL CVE-2016-0595 Vulnerability (CVE-2016-0595)
CVE-2016-0595
-
Medium
MySQL CVE-2016-0596 Vulnerability (CVE-2016-0596)
CVE-2016-0596
-
Medium
MySQL CVE-2016-0597 Vulnerability (CVE-2016-0597)
CVE-2016-0597
-
Medium
MySQL Improper Access Control Vulnerability (CVE-2016-0611)
CVE-2016-0611
CWE-284
Medium
MySQL CVE-2016-0616 Vulnerability (CVE-2016-0616)
CVE-2016-0616
-
Medium
MySQL CVE-2016-0640 Vulnerability (CVE-2016-0640)
CVE-2016-0640
-
Medium
MySQL CVE-2016-0641 Vulnerability (CVE-2016-0641)
CVE-2016-0641
-
Medium
MySQL CVE-2016-0642 Vulnerability (CVE-2016-0642)
CVE-2016-0642
-
Medium
MySQL CVE-2016-0644 Vulnerability (CVE-2016-0644)
CVE-2016-0644
-
Medium
MySQL CVE-2016-0646 Vulnerability (CVE-2016-0646)
CVE-2016-0646
-
Medium
MySQL CVE-2016-0647 Vulnerability (CVE-2016-0647)
CVE-2016-0647
-
Medium
MySQL CVE-2016-0648 Vulnerability (CVE-2016-0648)
CVE-2016-0648
-
Medium
MySQL CVE-2016-0649 Vulnerability (CVE-2016-0649)
CVE-2016-0649
-
Medium
MySQL CVE-2016-0650 Vulnerability (CVE-2016-0650)
CVE-2016-0650
-
Medium
MySQL CVE-2016-0651 Vulnerability (CVE-2016-0651)
CVE-2016-0651
-
Medium
MySQL CVE-2016-0652 Vulnerability (CVE-2016-0652)
CVE-2016-0652
-
Medium
MySQL CVE-2016-0653 Vulnerability (CVE-2016-0653)
CVE-2016-0653
-
Medium
MySQL CVE-2016-0654 Vulnerability (CVE-2016-0654)
CVE-2016-0654
-
Medium
MySQL CVE-2016-0655 Vulnerability (CVE-2016-0655)
CVE-2016-0655
-
Medium
MySQL CVE-2016-0656 Vulnerability (CVE-2016-0656)
CVE-2016-0656
-
Medium
MySQL CVE-2016-0657 Vulnerability (CVE-2016-0657)
CVE-2016-0657
-
Medium
MySQL CVE-2016-0658 Vulnerability (CVE-2016-0658)
CVE-2016-0658
-
Medium
MySQL CVE-2016-0659 Vulnerability (CVE-2016-0659)
CVE-2016-0659
-
Medium
« Previous
1
...
48
49
50
51
52
53
54
55
...
117
Next »