Platform
Solutions
Pricing
Why Invicti
Resources Library
Get a demo
Home
/
Web Application Vulnerabilities
/ Known Vulnerabilities
Web Application Vulnerabilities
Runtime SCA Findings
Looking for the vulnerability index of Invicti's legacy products?
Invicti Enterprise
Acunetix Standard & Premium
Known Vulnerabilities
This page lists
13509 vulnerabilities
in this category.
Critical: 1465
High: 3387
Medium: 7907
Low: 748
Information: 2
Vulnerability Name
CVE
CWE
Severity
Grafana Improper Verification of Cryptographic Signature Vulnerability (CVE-2022-31123)
CVE-2022-31123
CWE-347
High
MySQL Other Vulnerability (CVE-2001-1274)
CVE-2001-1274
-
High
TYPO3 Insufficient Session Expiration Vulnerability (CVE-2022-31050)
CVE-2022-31050
CWE-613
High
XWiki Improper Authentication Vulnerability (CVE-2022-36093)
CVE-2022-36093
CWE-287
High
XWikiplatform Incorrect Privilege Assignment Vulnerability (CVE-2025-49580)
CVE-2025-49580
CWE-266
High
Grafana Incorrect Authorization Vulnerability (CVE-2022-31107)
CVE-2022-31107
CWE-863
High
XWiki Improper Authentication Vulnerability (CVE-2022-36092)
CVE-2022-36092
CWE-287
High
XWiki Missing Authorization Vulnerability (CVE-2022-36091)
CVE-2022-36091
CWE-862
High
Internet Information Services Other Vulnerability (CVE-2000-1104)
CVE-2000-1104
-
High
Oracle Database Server CVE-2012-0519 Vulnerability (CVE-2012-0519)
CVE-2012-0519
-
High
Sqlite Improper Validation of Array Index Vulnerability (CVE-2022-35737)
CVE-2022-35737
CWE-129
High
Apache Tomcat Authentication Bypass Using an Alternate Path or Channel Vulnerability (CVE-2025-49125)
CVE-2025-49125
CWE-288
High
Moment.js Other Vulnerability (CVE-2022-31129)
CVE-2022-31129
-
High
XWiki Other Vulnerability (CVE-2022-36090)
CVE-2022-36090
-
High
RubyGems Improper Authentication Vulnerability (CVE-2022-36073)
CVE-2022-36073
CWE-287
High
PHP Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') Vulnerability (CVE-2001-1246)
CVE-2001-1246
CWE-707
High
IBMHttpServer Other Vulnerability (CVE-2000-1168)
CVE-2000-1168
-
High
Apache Tomcat Untrusted Search Path Vulnerability (CVE-2025-49124)
CVE-2025-49124
CWE-426
High
SharePoint CVE-2022-35823 Vulnerability (CVE-2022-35823)
CVE-2022-35823
-
High
Zope Web Application Server Other Vulnerability (CVE-2001-1227)
CVE-2001-1227
-
High
Jenkins Incorrect Authorization Vulnerability (CVE-2022-34175)
CVE-2022-34175
CWE-863
High
Jenkins Observable Discrepancy Vulnerability (CVE-2022-34174)
CVE-2022-34174
CWE-203
High
MySQL Other Vulnerability (CVE-2001-1275)
CVE-2001-1275
-
High
XWiki CVE-2022-31166 Vulnerability (CVE-2022-31166)
CVE-2022-31166
-
High
Internet Information Services Other Vulnerability (CVE-2001-0507)
CVE-2001-0507
-
High
Internet Information Services Other Vulnerability (CVE-2001-0506)
CVE-2001-0506
-
High
Apache Traffic Server Improper Input Validation Vulnerability (CVE-2022-31778)
CVE-2022-31778
CWE-20
High
ownCloud Exposure of Resource to Wrong Sphere Vulnerability (CVE-2022-31649)
CVE-2022-31649
CWE-668
High
phpMyAdmin Other Vulnerability (CVE-2001-0478)
CVE-2001-0478
-
High
Oracle Application Server Other Vulnerability (CVE-2001-0419)
CVE-2001-0419
-
High
Microsoft SQL Server Other Vulnerability (CVE-2001-0344)
CVE-2001-0344
-
High
PHP Out-of-bounds Read Vulnerability (CVE-2022-31630)
CVE-2022-31630
CWE-125
High
Apache Tomcat Improper Handling of Case Sensitivity Vulnerability (CVE-2025-46701)
CVE-2025-46701
CWE-178
High
TYPO3 Authentication Bypass Using an Alternate Path or Channel Vulnerability (CVE-2025-47941)
CVE-2025-47941
CWE-288
High
Craft CMS Improper Neutralization of Special Elements Used in a Template Engine Vulnerability (CVE-2025-46731)
CVE-2025-46731
CWE-138
High
SharePoint Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2025-47172)
CVE-2025-47172
CWE-138
High
SharePoint Deserialization of Untrusted Data Vulnerability (CVE-2025-47163)
CVE-2025-47163
CWE-502
High
Internet Information Services Other Vulnerability (CVE-2001-0333)
CVE-2001-0333
-
High
SharePoint Deserialization of Untrusted Data Vulnerability (CVE-2025-47166)
CVE-2025-47166
CWE-502
High
PHP Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') Vulnerability (CVE-2022-31626)
CVE-2022-31626
CWE-120
High
SharePoint Heap-based Buffer Overflow Vulnerability (CVE-2025-47169)
CVE-2025-47169
CWE-122
High
SharePoint Use After Free Vulnerability (CVE-2025-47168)
CVE-2025-47168
CWE-416
High
TYPO3 Unverified Ownership Vulnerability (CVE-2025-47940)
CVE-2025-47940
CWE-283
High
Apache Traffic Server Improper Input Validation Vulnerability (CVE-2022-31779)
CVE-2022-31779
CWE-20
High
MyBB Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2025-48940)
CVE-2025-48940
CWE-22
High
OpenVPN AS Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG) Vulnerability (CVE-2022-33738)
CVE-2022-33738
CWE-338
High
Zope Web Application Server Other Vulnerability (CVE-2000-1211)
CVE-2000-1211
-
High
Oracle JRE Incorrect Conversion between Numeric Types Vulnerability (CVE-2022-34169)
CVE-2022-34169
CWE-681
High
Oracle JRE CVE-2012-0505 Vulnerability (CVE-2012-0505)
CVE-2012-0505
-
High
Mailman Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2025-43919)
CVE-2025-43919
CWE-22
High
Mailman Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2025-43920)
CVE-2025-43920
CWE-138
High
Oracle JRE CVE-2012-0503 Vulnerability (CVE-2012-0503)
CVE-2012-0503
-
High
Caddy Web Server Out-of-bounds Read Vulnerability (CVE-2022-34037)
CVE-2022-34037
CWE-125
High
Oracle Application Server Other Vulnerability (CVE-2001-0591)
CVE-2001-0591
-
High
OpenVPN AS Insertion of Sensitive Information into Log File Vulnerability (CVE-2022-33737)
CVE-2022-33737
CWE-532
High
Apache Traffic Server Improper Input Validation Vulnerability (CVE-2022-31780)
CVE-2022-31780
CWE-20
High
Apache Traffic Server Improper Check for Unusual or Exceptional Conditions Vulnerability (CVE-2022-32749)
CVE-2022-32749
CWE-754
High
XWikiplatform CVE-2025-48063 Vulnerability (CVE-2025-48063)
CVE-2025-48063
-
High
Piwigo Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2022-32297)
CVE-2022-32297
CWE-138
High
Grafana Improper Authentication Vulnerability (CVE-2022-32276)
CVE-2022-32276
CWE-287
High
Oracle Application Server Other Vulnerability (CVE-2000-1236)
CVE-2000-1236
-
High
Grafana Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2022-32275)
CVE-2022-32275
CWE-22
High
OpenSSL Cryptographic Issues Vulnerability (CVE-2000-1254)
CVE-2000-1254
-
High
Microsoft SQL Server Other Vulnerability (CVE-2001-0542)
CVE-2001-0542
-
High
osTicket Session Fixation Vulnerability (CVE-2022-31888)
CVE-2022-31888
CWE-384
High
XWikiplatform Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2025-49581)
CVE-2025-49581
CWE-94
High
Zope Web Application Server Other Vulnerability (CVE-2001-1278)
CVE-2001-1278
-
High
Apache HTTP Server CVE-2002-0392 Vulnerability (CVE-2002-0392)
CVE-2002-0392
-
High
Lighttpd NULL Pointer Dereference Vulnerability (CVE-2022-37797)
CVE-2022-37797
CWE-476
High
Internet Information Services Other Vulnerability (CVE-2000-0746)
CVE-2000-0746
-
High
Jboss EAP Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-4605)
CVE-2011-4605
CWE-264
High
Jboss EAP Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-4608)
CVE-2011-4608
CWE-264
High
SharePoint CVE-2022-38053 Vulnerability (CVE-2022-38053)
CVE-2022-38053
-
High
SharePoint CVE-2022-38009 Vulnerability (CVE-2022-38009)
CVE-2022-38009
-
High
SharePoint CVE-2022-38008 Vulnerability (CVE-2022-38008)
CVE-2022-38008
-
High
«
1
...
60
61
62
...
181
»