Platform
Solutions
Pricing
Why Invicti
Resources Library
Get a demo
Home
/
Web Application Vulnerabilities
/ Known Vulnerabilities
Web Application Vulnerabilities
Runtime SCA Findings
Looking for the vulnerability index of Invicti's legacy products?
Invicti Enterprise
Acunetix Standard & Premium
Known Vulnerabilities
This page lists
13509 vulnerabilities
in this category.
Critical: 1465
High: 3387
Medium: 7907
Low: 748
Information: 2
Vulnerability Name
CVE
CWE
Severity
Pega Infinity Other Vulnerability (CVE-2022-24083)
CVE-2022-24083
-
Critical
Pega Infinity Deserialization of Untrusted Data Vulnerability (CVE-2022-24082)
CVE-2022-24082
CWE-502
Critical
Apache HTTP Server Out-of-bounds Write Vulnerability (CVE-2022-23943)
CVE-2022-23943
CWE-787
Critical
Oracle HTTP Server Out-of-bounds Write Vulnerability (CVE-2022-23943)
CVE-2022-23943
CWE-787
Critical
PHP CVE-2012-2688 Vulnerability (CVE-2012-2688)
CVE-2012-2688
-
Critical
Oracle JRE CVE-2012-1725 Vulnerability (CVE-2012-1725)
CVE-2012-1725
-
Critical
Oracle JRE CVE-2012-1723 Vulnerability (CVE-2012-1723)
CVE-2012-1723
-
Critical
Joomla CVE-2022-23799 Vulnerability (CVE-2022-23799)
CVE-2022-23799
-
Critical
Oracle JRE CVE-2012-1716 Vulnerability (CVE-2012-1716)
CVE-2012-1716
-
Critical
Chamilo Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2022-27423)
CVE-2022-27423
CWE-138
Critical
Joomla Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2022-23797)
CVE-2022-23797
CWE-138
Critical
MySQL CVE-2012-2750 Vulnerability (CVE-2012-2750)
CVE-2012-2750
-
Critical
Joomla Improper Authentication Vulnerability (CVE-2022-23795)
CVE-2022-23795
CWE-287
Critical
Envoy Proxy Missing Authentication for Critical Function Vulnerability (CVE-2022-29226)
CVE-2022-29226
CWE-306
Critical
Oracle JRE CVE-2012-4681 Vulnerability (CVE-2012-4681)
CVE-2012-4681
-
Critical
Oracle JRE CVE-2013-1478 Vulnerability (CVE-2013-1478)
CVE-2013-1478
-
Critical
PrestaShop Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2021-43789)
CVE-2021-43789
CWE-138
Critical
Apache HTTP Server Insufficient Verification of Data Authenticity Vulnerability (CVE-2022-31813)
CVE-2022-31813
CWE-345
Critical
Beego Framework Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2022-31836)
CVE-2022-31836
CWE-22
Critical
WordPress Other Vulnerability (CVE-2021-44223)
CVE-2021-44223
-
Critical
Roundcube Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2021-44026)
CVE-2021-44026
CWE-138
Critical
Magento Incorrect Authorization Vulnerability (CVE-2022-34256)
CVE-2022-34256
CWE-863
Critical
Oracle JRE Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-0422)
CVE-2013-0422
CWE-264
Critical
Django Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2022-34265)
CVE-2022-34265
CWE-138
Critical
Oracle JRE CVE-2013-0425 Vulnerability (CVE-2013-0425)
CVE-2013-0425
-
Critical
Oracle JRE CVE-2013-0426 Vulnerability (CVE-2013-0426)
CVE-2013-0426
-
Critical
Oracle JRE CVE-2013-0428 Vulnerability (CVE-2013-0428)
CVE-2013-0428
-
Critical
Moodle Improper Input Validation Vulnerability (CVE-2022-35649)
CVE-2022-35649
CWE-20
Critical
MyBB CVE-2011-5133 Vulnerability (CVE-2011-5133)
CVE-2011-5133
-
Critical
Oracle JRE CVE-2013-0437 Vulnerability (CVE-2013-0437)
CVE-2013-0437
-
Critical
Oracle HTTP Server Out-of-bounds Write Vulnerability (CVE-2021-44790)
CVE-2021-44790
CWE-787
Critical
Oracle JRE CVE-2013-0441 Vulnerability (CVE-2013-0441)
CVE-2013-0441
-
Critical
Oracle JRE CVE-2013-0442 Vulnerability (CVE-2013-0442)
CVE-2013-0442
-
Critical
Oracle JRE CVE-2013-0445 Vulnerability (CVE-2013-0445)
CVE-2013-0445
-
Critical
Oracle JRE CVE-2013-0446 Vulnerability (CVE-2013-0446)
CVE-2013-0446
-
Critical
Oracle JRE CVE-2013-0450 Vulnerability (CVE-2013-0450)
CVE-2013-0450
-
Critical
Oracle JRE CVE-2013-0809 Vulnerability (CVE-2013-0809)
CVE-2013-0809
-
Critical
XWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2022-36094)
CVE-2022-36094
CWE-707
Critical
Apache Traffic Server Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') Vulnerability (CVE-2021-43082)
CVE-2021-43082
CWE-120
Critical
XWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2022-36096)
CVE-2022-36096
CWE-707
Critical
XWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2022-36098)
CVE-2022-36098
CWE-707
Critical
Ramda Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') Vulnerability (CVE-2021-42581)
CVE-2021-42581
CWE-1321
Critical
Oracle JRE CVE-2013-1475 Vulnerability (CVE-2013-1475)
CVE-2013-1475
-
Critical
Oracle JRE CVE-2013-1476 Vulnerability (CVE-2013-1476)
CVE-2013-1476
-
Critical
Ruby on Rails CVE-2013-0277 Vulnerability (CVE-2013-0277)
CVE-2013-0277
-
Critical
PHP Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2022-31631)
CVE-2022-31631
CWE-138
Critical
Oracle JRE CVE-2012-5076 Vulnerability (CVE-2012-5076)
CVE-2012-5076
-
Critical
IBMHttpServer CVE-2012-5955 Vulnerability (CVE-2012-5955)
CVE-2012-5955
-
Critical
Oracle JRE CVE-2012-5083 Vulnerability (CVE-2012-5083)
CVE-2012-5083
-
Critical
MediaWiki Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2022-29904)
CVE-2022-29904
CWE-138
Critical
MediaWiki Incorrect Authorization Vulnerability (CVE-2022-29906)
CVE-2022-29906
CWE-863
Critical
Oracle JRE CVE-2012-5086 Vulnerability (CVE-2012-5086)
CVE-2012-5086
-
Critical
Oracle JRE CVE-2012-5087 Vulnerability (CVE-2012-5087)
CVE-2012-5087
-
Critical
Oracle JRE CVE-2012-5088 Vulnerability (CVE-2012-5088)
CVE-2012-5088
-
Critical
OpenSSL Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2022-2068)
CVE-2022-2068
CWE-138
Critical
WebLogic CVE-2022-21306 Vulnerability (CVE-2022-21306)
CVE-2022-21306
-
Critical
OpenSSL Out-of-bounds Write Vulnerability (CVE-2022-2274)
CVE-2022-2274
CWE-787
Critical
OpenSSL Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2022-1292)
CVE-2022-1292
CWE-138
Critical
Artifactory Improper Privilege Management Vulnerability (CVE-2022-0668)
CVE-2022-0668
CWE-269
Critical
Moodle Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2022-30599)
CVE-2022-30599
CWE-138
Critical
Moodle Incorrect Calculation Vulnerability (CVE-2022-30600)
CVE-2022-30600
CWE-682
Critical
SugarCRM Improper Input Validation Vulnerability (CVE-2012-0694)
CVE-2012-0694
CWE-20
Critical
PHP Out-of-bounds Write Vulnerability (CVE-2022-31627)
CVE-2022-31627
CWE-787
Critical
Atlassian Jira Improper Authentication Vulnerability (CVE-2022-0540)
CVE-2022-0540
CWE-287
Critical
b2evolution Use of Insufficiently Random Values Vulnerability (CVE-2022-30935)
CVE-2022-30935
CWE-330
Critical
Oracle Database Server CVE-2012-0552 Vulnerability (CVE-2012-0552)
CVE-2012-0552
-
Critical
Moodle Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2022-0332)
CVE-2022-0332
CWE-138
Critical
Dolibarr Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2022-0224)
CVE-2022-0224
CWE-138
Critical
Oracle JRE CVE-2012-0507 Vulnerability (CVE-2012-0507)
CVE-2012-0507
-
Critical
Oracle JRE CVE-2012-0504 Vulnerability (CVE-2012-0504)
CVE-2012-0504
-
Critical
Oracle JRE CVE-2012-0500 Vulnerability (CVE-2012-0500)
CVE-2012-0500
-
Critical
Oracle JRE CVE-2012-0499 Vulnerability (CVE-2012-0499)
CVE-2012-0499
-
Critical
Oracle JRE CVE-2012-0498 Vulnerability (CVE-2012-0498)
CVE-2012-0498
-
Critical
Oracle JRE CVE-2012-0497 Vulnerability (CVE-2012-0497)
CVE-2012-0497
-
Critical
PrestaShop Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2022-31181)
CVE-2022-31181
CWE-138
Critical
«
1
...
9
10
11
...
181
»