🚀 Just released:
Latio 2026 Application Security Market Report.
Read it in our Whitepapers.
100% Signal 0% Noise
Platform
Invicti Platform
Zero-noise AppSec platform
Scan Code
Secure code before runtime
SAST
Early static security analysis
Open Source (SCA)
Find vulnerable dependencies
SBOM & License Risk
Generate SBOMs and track licenses
Secrets
Detect exposed secrets in applications
Infrastructure as Code
Ingest IaC security findings
Container
Track container image vulnerabilities
Test Runtime
Test live applications like attackers
DAST & AI DAST
Test runtime, prove exploitability
Agentic Pentesting
Automate real-world attack techniques
API Security Testing
Discover and test APIs
Attack Surface Management
Identify exposed apps and endpoints
Cloud AppSec
Get a single-pane view of cloud app risk
AI AppSec
Scan smarter, accelerate remediation
Manage Vulnerabilities
See, prioritize, reduce AppSec risk
Vulnerability Management (ASPM)
Centralize and correlate AppSec findings
Compliance & Executive Reporting
Measure risk and impact
Threat Intelligence
Reachability, exploitability, and business logic
Solutions
API Discovery
Manage Vulnerabilities
Automate Security Workflows
Track AppSec KPIs
Manage Open Source Risk
Pricing
Why Invicti
About Us
Case Studies
Contact Us
Careers
Resources
Resource Library
Blog
Webinars
White Papers
Podcasts
Invicti Learn
Savings Calculator
Live Training
Partners
Documentation
Get a demo
Home
/
Web Application Vulnerabilities
/ Missing Update
Web Application Vulnerabilities
Runtime SCA Findings
Looking for the vulnerability index of Invicti's legacy products?
Invicti Enterprise
Acunetix Standard & Premium
v.26.4.2314
Missing Update
This page lists
23101 vulnerabilities
in this category.
Critical: 1474
High: 12458
Medium: 8395
Low: 770
Information: 4
Vulnerability Name
CVE
CWE
Severity
PostgreSQL Other Vulnerability (CVE-2013-1902)
CVE-2013-1902
-
Critical
PostgreSQL Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-1903)
CVE-2013-1903
CWE-264
Critical
Atlassian Jira CVE-2012-2926 Vulnerability (CVE-2012-2926)
CVE-2012-2926
-
Critical
MySQL CVE-2012-2750 Vulnerability (CVE-2012-2750)
CVE-2012-2750
-
Critical
Plone CMS Missing Authentication for Critical Function Vulnerability (CVE-2020-35190)
CVE-2020-35190
CWE-306
Critical
Oracle HTTP Server Improper Input Validation Vulnerability (CVE-2020-35169)
CVE-2020-35169
CWE-20
Critical
Oracle HTTP Server Other Vulnerability (CVE-2020-35168)
CVE-2020-35168
-
Critical
Oracle HTTP Server Other Vulnerability (CVE-2020-35167)
CVE-2020-35167
-
Critical
Oracle HTTP Server Other Vulnerability (CVE-2020-35166)
CVE-2020-35166
-
Critical
Oracle HTTP Server Use of Insufficiently Random Values Vulnerability (CVE-2020-35163)
CVE-2020-35163
CWE-330
Critical
PHP CVE-2012-2688 Vulnerability (CVE-2012-2688)
CVE-2012-2688
-
Critical
Joomla CVE-2021-23128 Vulnerability (CVE-2021-23128)
CVE-2021-23128
-
Critical
concrete5 Server-Side Request Forgery (SSRF) Vulnerability (CVE-2021-22958)
CVE-2021-22958
CWE-918
Critical
Oracle JRE CVE-2013-1480 Vulnerability (CVE-2013-1480)
CVE-2013-1480
-
Critical
Jenkins Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2021-21690)
CVE-2021-21690
CWE-22
Critical
Oracle JRE CVE-2013-1481 Vulnerability (CVE-2013-1481)
CVE-2013-1481
-
Critical
Oracle JRE CVE-2013-1484 Vulnerability (CVE-2013-1484)
CVE-2013-1484
-
Critical
PrestaShop Improper Authentication Vulnerability (CVE-2020-4074)
CVE-2020-4074
CWE-287
Critical
Oracle JRE CVE-2013-1486 Vulnerability (CVE-2013-1486)
CVE-2013-1486
-
Critical
Oracle JRE CVE-2013-1487 Vulnerability (CVE-2013-1487)
CVE-2013-1487
-
Critical
Oracle JRE Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2013-1493)
CVE-2013-1493
CWE-119
Critical
Oracle JRE CVE-2013-1518 Vulnerability (CVE-2013-1518)
CVE-2013-1518
-
Critical
Oracle Database Server CVE-2013-1534 Vulnerability (CVE-2013-1534)
CVE-2013-1534
-
Critical
Oracle JRE CVE-2013-1537 Vulnerability (CVE-2013-1537)
CVE-2013-1537
-
Critical
Jenkins Missing Authorization Vulnerability (CVE-2021-21685)
CVE-2021-21685
CWE-862
Critical
Jenkins Missing Authorization Vulnerability (CVE-2021-21687)
CVE-2021-21687
CWE-862
Critical
Magento CVE-2020-3718 Vulnerability (CVE-2020-3718)
CVE-2020-3718
-
Critical
Jenkins Other Vulnerability (CVE-2021-21689)
CVE-2021-21689
-
Critical
Jenkins Protection Mechanism Failure Vulnerability (CVE-2021-21690 )
CVE-2021-21690
CWE-693
Critical
Jenkins Improper Link Resolution Before File Access ('Link Following') Vulnerability (CVE-2021-21691)
CVE-2021-21691
CWE-59
Critical
WordPress Deserialization of Untrusted Data Vulnerability (CVE-2020-36326)
CVE-2020-36326
CWE-502
Critical
Jenkins Incorrect Authorization Vulnerability (CVE-2021-21692 )
CVE-2021-21692
CWE-863
Critical
Jenkins Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2021-21692)
CVE-2021-21692
CWE-22
Critical
Jenkins Improper Authorization Vulnerability (CVE-2021-21693)
CVE-2021-21693
CWE-285
Critical
Jenkins Missing Authorization Vulnerability (CVE-2021-21694)
CVE-2021-21694
CWE-862
Critical
Jenkins Protection Mechanism Failure Vulnerability (CVE-2021-21696 )
CVE-2021-21696
CWE-693
Critical
Jenkins Other Vulnerability (CVE-2021-21696)
CVE-2021-21696
-
Critical
Jenkins Other Vulnerability (CVE-2021-21697)
CVE-2021-21697
-
Critical
Magento Deserialization of Untrusted Data Vulnerability (CVE-2020-3716)
CVE-2020-3716
CWE-502
Critical
EspoCRM Authorization Bypass Through User-Controlled Key Vulnerability (CVE-2020-37094)
CVE-2020-37094
CWE-639
Critical
Oracle JRE CVE-2013-1557 Vulnerability (CVE-2013-1557)
CVE-2013-1557
-
Critical
Oracle JRE CVE-2013-1558 Vulnerability (CVE-2013-1558)
CVE-2013-1558
-
Critical
PHP Use After Free Vulnerability (CVE-2021-21708)
CVE-2021-21708
CWE-416
Critical
Moodle Incorrect Permission Assignment for Critical Resource Vulnerability (CVE-2021-21809)
CVE-2021-21809
CWE-732
Critical
Oracle JRE CVE-2013-1569 Vulnerability (CVE-2013-1569)
CVE-2013-1569
-
Critical
Apache Traffic Server Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') Vulnerability (CVE-2020-1944)
CVE-2020-1944
CWE-444
Critical
Ruby Inadequate Encryption Strength Vulnerability (CVE-2011-4121)
CVE-2011-4121
CWE-326
Critical
MyBB CVE-2015-2786 Vulnerability (CVE-2015-2786)
CVE-2015-2786
-
Critical
OpenSSL Improper Input Validation Vulnerability (CVE-2009-3245)
CVE-2009-3245
CWE-20
Critical
Sqlite Out-of-bounds Read Vulnerability (CVE-2019-8457)
CVE-2019-8457
CWE-125
Critical
Oracle HTTP Server Integer Overflow or Wraparound Vulnerability (CVE-2022-25315)
CVE-2022-25315
CWE-190
Critical
Atlassian Confluence Unauthenticated Remote Code Execution Vulnerability (CVE-2022-26134)
CVE-2022-26134
-
Critical
Atlassian Jira Incorrect Behavior Order: Validate Before Canonicalize Vulnerability (CVE-2022-26136)
CVE-2022-26136
CWE-180
Critical
PHP Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2009-3546)
CVE-2009-3546
CWE-119
Critical
Atlassian Confluence Incorrect Behavior Order: Validate Before Canonicalize Vulnerability (CVE-2022-26136)
CVE-2022-26136
CWE-180
Critical
Atlassian Confluence Incorrect Behavior Order: Validate Before Canonicalize Vulnerability (CVE-2022-26137)
CVE-2022-26137
CWE-180
Critical
Oracle Database Server CVE-2009-3415 Vulnerability (CVE-2009-3415)
CVE-2009-3415
-
Critical
Atlassian Jira Incorrect Behavior Order: Validate Before Canonicalize Vulnerability (CVE-2022-26137)
CVE-2022-26137
CWE-180
Critical
Grafana Cleartext Storage of Sensitive Information Vulnerability (CVE-2022-26148)
CVE-2022-26148
CWE-312
Critical
Dot CMS Other Vulnerability (CVE-2022-26352)
CVE-2022-26352
-
Critical
Drupal CVE-2009-3352 Vulnerability (CVE-2009-3352)
CVE-2009-3352
-
Critical
MediaWiki Improper Restriction of XML External Entity Reference Vulnerability (CVE-2014-9487)
CVE-2014-9487
CWE-611
Critical
FluxBB Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2014-9574)
CVE-2014-9574
CWE-22
Critical
Oracle HTTP Server Improper Encoding or Escaping of Output Vulnerability (CVE-2022-25235)
CVE-2022-25235
CWE-116
Critical
Internet Information Services Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') Vulnerability (CVE-2009-3023)
CVE-2009-3023
CWE-120
Critical
Magento XML Injection (aka Blind XPath Injection) Vulnerability (CVE-2019-8158)
CVE-2019-8158
CWE-91
Critical
Chamilo Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2022-27423)
CVE-2022-27423
CWE-138
Critical
WordPress Permissions, Privileges, and Access Controls Vulnerability (CVE-2009-2853)
CVE-2009-2853
CWE-264
Critical
ATutor Improper Authentication Vulnerability (CVE-2014-9753)
CVE-2014-9753
CWE-287
Critical
PHP Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2014-9912)
CVE-2014-9912
CWE-119
Critical
SharePoint Resource Management Errors Vulnerability (CVE-2015-0064)
CVE-2015-0064
-
Critical
SharePoint Other Vulnerability (CVE-2015-0085)
CVE-2015-0085
-
Critical
SharePoint Resource Management Errors Vulnerability (CVE-2015-0086)
CVE-2015-0086
-
Critical
MediaWiki CVE-2022-28205 Vulnerability (CVE-2022-28205)
CVE-2022-28205
-
Critical
MediaWiki CVE-2022-28206 Vulnerability (CVE-2022-28206)
CVE-2022-28206
-
Critical
«
1
...
10
11
12
...
309
»