Platform
Solutions
Pricing
Why Invicti
Resources Library
Get a demo
Home
/
Web Application Vulnerabilities
/ Known Vulnerabilities
Web Application Vulnerabilities
Runtime SCA Findings
Looking for the vulnerability index of Invicti's legacy products?
Invicti Enterprise
Acunetix Standard & Premium
Known Vulnerabilities
This page lists
13509 vulnerabilities
in this category.
Critical: 1465
High: 3387
Medium: 7907
Low: 748
Information: 2
Vulnerability Name
CVE
CWE
Severity
Joomla Improper Neutralization of Formula Elements in a CSV File Vulnerability (CVE-2019-12765)
CVE-2019-12765
CWE-1236
Critical
Java Unspesificed Vulnerability (CVE-2018-3183)
CVE-2018-3183
-
Critical
CubeCart Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2018-20716)
CVE-2018-20716
CWE-138
Critical
Jboss EAP Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') Vulnerability (CVE-2019-20444)
CVE-2019-20444
CWE-444
Critical
Jboss EAP Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') Vulnerability (CVE-2019-20445)
CVE-2019-20445
CWE-444
Critical
Oracle Database Server CVE-2006-0268 Vulnerability (CVE-2006-0268)
CVE-2006-0268
-
Critical
Code Evaluation (Apache Struts) S2-045
CVE-2017-5638
CWE-94
Critical
PostgreSQL Improper Authentication Vulnerability (CVE-2017-7546)
CVE-2017-7546
CWE-287
Critical
PHP Use After Free Vulnerability (CVE-2019-9020)
CVE-2019-9020
CWE-416
Critical
Oracle Application Server CVE-2006-0289 Vulnerability (CVE-2006-0289)
CVE-2006-0289
-
Critical
Oracle Database Server CVE-2006-0290 Vulnerability (CVE-2006-0290)
CVE-2006-0290
-
Critical
Oracle Application Server CVE-2006-0290 Vulnerability (CVE-2006-0290)
CVE-2006-0290
-
Critical
Oracle Database Server CVE-2006-0291 Vulnerability (CVE-2006-0291)
CVE-2006-0291
-
Critical
Jboss EAP Inadequate Encryption Strength Vulnerability (CVE-2019-14887)
CVE-2019-14887
CWE-326
Critical
Oracle Application Server CVE-2006-0291 Vulnerability (CVE-2006-0291)
CVE-2006-0291
-
Critical
Joomla Other Vulnerability (CVE-2006-0303)
CVE-2006-0303
-
Critical
Sqlite Integer Overflow or Wraparound Vulnerability (CVE-2025-7458)
CVE-2025-7458
CWE-190
Critical
Jboss EAP Deserialization of Untrusted Data Vulnerability (CVE-2019-14892)
CVE-2019-14892
CWE-502
Critical
Apache Tomcat Improper Encoding or Escaping of Output Vulnerability (CVE-2025-31651)
CVE-2025-31651
CWE-116
Critical
Claroline Other Vulnerability (CVE-2006-0411)
CVE-2006-0411
-
Critical
Jboss EAP Deserialization of Untrusted Data Vulnerability (CVE-2019-14893)
CVE-2019-14893
CWE-502
Critical
MySQL Deserialization of Untrusted Data Vulnerability (CVE-2019-14893)
CVE-2019-14893
CWE-502
Critical
Oracle Database Server CVE-2006-0287 Vulnerability (CVE-2006-0287)
CVE-2006-0287
-
Critical
ATutor Incorrect Authorization Vulnerability (CVE-2019-16114)
CVE-2019-16114
CWE-863
Critical
Craft CMS Weak Password Recovery Mechanism for Forgotten Password Vulnerability (CVE-2019-15929)
CVE-2019-15929
CWE-640
Critical
Microsoft SQL Server Other Vulnerability (CVE-2002-0721)
CVE-2002-0721
-
Critical
PHP Out-of-bounds Read Vulnerability (CVE-2019-9021)
CVE-2019-9021
CWE-125
Critical
Oracle Database Server CVE-2019-2517 Vulnerability (CVE-2019-2517)
CVE-2019-2517
-
Critical
Atlassian Jira Deserialization of Untrusted Data Vulnerability (CVE-2017-5983)
CVE-2017-5983
CWE-502
Critical
PHP Out-of-bounds Read Vulnerability (CVE-2019-9023)
CVE-2019-9023
CWE-125
Critical
PHP Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2019-9025)
CVE-2019-9025
CWE-119
Critical
WebLogic CVE-2018-2893 Vulnerability (CVE-2018-2893)
CVE-2018-2893
-
Critical
ZenCart Permissions, Privileges, and Access Controls Vulnerability (CVE-2006-0697)
CVE-2006-0697
CWE-264
Critical
WebLogic CVE-2018-2894 Vulnerability (CVE-2018-2894)
CVE-2018-2894
-
Critical
CrushFTP Server Other Vulnerability (CVE-2025-31161)
CVE-2025-31161
-
Critical
Envoy Proxy Use After Free Vulnerability (CVE-2024-39305)
CVE-2024-39305
CWE-416
Critical
Oracle Application Server CVE-2006-0288 Vulnerability (CVE-2006-0288)
CVE-2006-0288
-
Critical
Sqlite Numeric Truncation Error Vulnerability (CVE-2025-6965)
CVE-2025-6965
CWE-197
Critical
Oracle Database Server CVE-2006-0271 Vulnerability (CVE-2006-0271)
CVE-2006-0271
-
Critical
Jboss EAP Deserialization of Untrusted Data Vulnerability (CVE-2019-16335)
CVE-2019-16335
CWE-502
Critical
Django Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2019-14234)
CVE-2019-14234
CWE-138
Critical
Beego Framework Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2025-30223)
CVE-2025-30223
CWE-707
Critical
Oracle Application Server CVE-2006-0273 Vulnerability (CVE-2006-0273)
CVE-2006-0273
-
Critical
Axway Secure Transport Improper Restriction of XML External Entity Reference Vulnerability (CVE-2019-14277)
CVE-2019-14277
CWE-611
Critical
Oracle Application Server CVE-2006-0274 Vulnerability (CVE-2006-0274)
CVE-2006-0274
-
Critical
Oracle Application Server CVE-2006-0282 Vulnerability (CVE-2006-0282)
CVE-2006-0282
-
Critical
Jboss EAP Improperly Controlled Modification of Dynamically-Determined Object Attributes Vulnerability (CVE-2019-14379)
CVE-2019-14379
CWE-915
Critical
WebLogic CVE-2019-2658 Vulnerability (CVE-2019-2658)
CVE-2019-2658
-
Critical
WebLogic Deserialization of Untrusted Data Vulnerability (CVE-2019-16335)
CVE-2019-16335
CWE-502
Critical
YOURLS Access of Resource Using Incompatible Type ('Type Confusion') Vulnerability (CVE-2019-14537)
CVE-2019-14537
CWE-843
Critical
MySQL Deserialization of Untrusted Data Vulnerability (CVE-2019-14540)
CVE-2019-14540
CWE-502
Critical
Jboss EAP Deserialization of Untrusted Data Vulnerability (CVE-2019-14540)
CVE-2019-14540
CWE-502
Critical
WebLogic Deserialization of Untrusted Data Vulnerability (CVE-2019-14540)
CVE-2019-14540
CWE-502
Critical
WebLogic CVE-2019-2646 Vulnerability (CVE-2019-2646)
CVE-2019-2646
-
Critical
Moodle CVE-2019-14880 Vulnerability (CVE-2019-14880)
CVE-2019-14880
-
Critical
WebLogic CVE-2019-2645 Vulnerability (CVE-2019-2645)
CVE-2019-2645
-
Critical
Oracle Database Server CVE-2006-0282 Vulnerability (CVE-2006-0282)
CVE-2006-0282
-
Critical
Oracle Database Server CVE-2006-0283 Vulnerability (CVE-2006-0283)
CVE-2006-0283
-
Critical
Oracle Application Server CVE-2006-0283 Vulnerability (CVE-2006-0283)
CVE-2006-0283
-
Critical
Oracle Application Server CVE-2006-0284 Vulnerability (CVE-2006-0284)
CVE-2006-0284
-
Critical
LimeSurvey Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2019-25019)
CVE-2019-25019
CWE-138
Critical
Oracle Database Server CVE-2018-3110 Vulnerability (CVE-2018-3110)
CVE-2018-3110
-
Critical
Oracle Database Server CVE-2006-0285 Vulnerability (CVE-2006-0285)
CVE-2006-0285
-
Critical
Oracle Application Server CVE-2006-0285 Vulnerability (CVE-2006-0285)
CVE-2006-0285
-
Critical
Oracle Database Server CVE-2006-0286 Vulnerability (CVE-2006-0286)
CVE-2006-0286
-
Critical
LimeSurvey Improper Neutralization of Formula Elements in a CSV File Vulnerability (CVE-2019-16184)
CVE-2019-16184
CWE-1236
Critical
Oracle Application Server CVE-2006-0286 Vulnerability (CVE-2006-0286)
CVE-2006-0286
-
Critical
Oracle Application Server CVE-2006-0287 Vulnerability (CVE-2006-0287)
CVE-2006-0287
-
Critical
WebLogic CVE-2018-3252 Vulnerability (CVE-2018-3252)
CVE-2018-3252
-
Critical
WebERP Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2019-13292)
CVE-2019-13292
CWE-138
Critical
Squid Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') Vulnerability (CVE-2019-12526)
CVE-2019-12526
CWE-120
Critical
Oracle Application Server Other Vulnerability (CVE-2005-3449)
CVE-2005-3449
-
Critical
Squid Out-of-bounds Write Vulnerability (CVE-2019-12519)
CVE-2019-12519
CWE-787
Critical
Oracle Application Server Other Vulnerability (CVE-2005-3445)
CVE-2005-3445
-
Critical
Oracle Application Server Other Vulnerability (CVE-2005-3446)
CVE-2005-3446
-
Critical
«
1
...
18
19
20
...
181
»