🚀 Just released:
Latio 2026 Application Security Market Report.
Read it in our Whitepapers.
100% Signal 0% Noise
Platform
Invicti Platform
Zero-noise AppSec platform
Scan Code
Secure code before runtime
SAST
Early static security analysis
Open Source (SCA)
Find vulnerable dependencies
SBOM & License Risk
Generate SBOMs and track licenses
Secrets
Detect exposed secrets in applications
Infrastructure as Code
Ingest IaC security findings
Container
Track container image vulnerabilities
Test Runtime
Test live applications like attackers
DAST & AI DAST
Test runtime, prove exploitability
Agentic Pentesting
Automate real-world attack techniques
API Security Testing
Discover and test APIs
Attack Surface Management
Identify exposed apps and endpoints
Cloud AppSec
Get a single-pane view of cloud app risk
AI AppSec
Scan smarter, accelerate remediation
Manage Vulnerabilities
See, prioritize, reduce AppSec risk
Vulnerability Management (ASPM)
Centralize and correlate AppSec findings
Compliance & Executive Reporting
Measure risk and impact
Threat Intelligence
Reachability, exploitability, and business logic
Solutions
API Discovery
Manage Vulnerabilities
Automate Security Workflows
Track AppSec KPIs
Manage Open Source Risk
Pricing
Why Invicti
About Us
Case Studies
Contact Us
Careers
Resources
Resource Library
Blog
Webinars
White Papers
Podcasts
Invicti Learn
Savings Calculator
Live Training
Partners
Documentation
Get a demo
Home
/
Web Application Vulnerabilities
/ Missing Update
Web Application Vulnerabilities
Runtime SCA Findings
Looking for the vulnerability index of Invicti's legacy products?
Invicti Enterprise
Acunetix Standard & Premium
v.26.4.2314
Missing Update
This page lists
23101 vulnerabilities
in this category.
Critical: 1474
High: 12458
Medium: 8395
Low: 770
Information: 4
Vulnerability Name
CVE
CWE
Severity
phpMyAdmin Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2015-3902)
CVE-2015-3902
CWE-352
Medium
Moodle Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-3274)
CVE-2015-3274
CWE-707
Medium
Oracle HTTP Server Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-3195)
CVE-2015-3195
CWE-200
Medium
OpenSSL Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-3195)
CVE-2015-3195
CWE-200
Medium
OpenSSL Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') Vulnerability (CVE-2015-3196)
CVE-2015-3196
CWE-362
Medium
OpenSSL Cryptographic Issues Vulnerability (CVE-2015-3197)
CVE-2015-3197
-
Medium
OpenSSL Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') Vulnerability (CVE-2015-3216)
CVE-2015-3216
CWE-362
Medium
Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-3226)
CVE-2015-3226
CWE-707
Medium
Ruby on Rails CVE-2015-3227 Vulnerability (CVE-2015-3227)
CVE-2015-3227
-
Medium
Drupal Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-3231)
CVE-2015-3231
CWE-200
Medium
Drupal Other Vulnerability (CVE-2015-3232)
CVE-2015-3232
-
Medium
Drupal Other Vulnerability (CVE-2015-3233)
CVE-2015-3233
-
Medium
Drupal Improper Input Validation Vulnerability (CVE-2015-3234)
CVE-2015-3234
CWE-20
Medium
GlassFish Improper Input Validation Vulnerability (CVE-2015-3237)
CVE-2015-3237
CWE-20
Medium
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2015-3273)
CVE-2015-3273
CWE-264
Medium
Moodle Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-3275)
CVE-2015-3275
CWE-707
Medium
Apache HTTP Server DEPRECATED: Code Vulnerability (CVE-2015-3183)
CVE-2015-3183
-
Medium
markdown-it Improper Access Control Vulnerability (CVE-2015-3295)
CVE-2015-3295
CWE-284
Medium
PHP Improper Input Validation Vulnerability (CVE-2015-3330)
CVE-2015-3330
CWE-20
Medium
PHP Improper Input Validation Vulnerability (CVE-2015-3411)
CVE-2015-3411
CWE-20
Medium
PHP Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-3412)
CVE-2015-3412
CWE-200
Medium
WordPress Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-3438)
CVE-2015-3438
CWE-707
Medium
WordPress Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-3439)
CVE-2015-3439
CWE-707
Medium
WordPress Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-3440)
CVE-2015-3440
CWE-707
Medium
Magento Improper Authentication Vulnerability (CVE-2015-3457)
CVE-2015-3457
CWE-287
Medium
Magento Permissions, Privileges, and Access Controls Vulnerability (CVE-2015-3458)
CVE-2015-3458
CWE-264
Medium
phpBB URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2015-3880)
CVE-2015-3880
CWE-601
Medium
qdPM Sensitive Information Disclosure Vulnerability (CVE-2015-3882)
CVE-2015-3882
-
Medium
qdPM Multiple Cross-site Scripting (XSS) Vulnerabilities (CVE-2015-3883)
CVE-2015-3883
-
Medium
Ruby 7PK - Security Features Vulnerability (CVE-2015-3900)
CVE-2015-3900
-
Medium
RubyGems 7PK - Security Features Vulnerability (CVE-2015-3900)
CVE-2015-3900
-
Medium
Apache HTTP Server Permissions, Privileges, and Access Controls Vulnerability (CVE-2015-3185)
CVE-2015-3185
CWE-264
Medium
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2015-3181)
CVE-2015-3181
CWE-264
Medium
MySQL CVE-2015-2582 Vulnerability (CVE-2015-2582)
CVE-2015-2582
-
Medium
MediaWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-2931)
CVE-2015-2931
CWE-707
Medium
Oracle Database Server CVE-2015-2586 Vulnerability (CVE-2015-2586)
CVE-2015-2586
-
Medium
Oracle Database Server CVE-2015-2595 Vulnerability (CVE-2015-2595)
CVE-2015-2595
-
Medium
Oracle Database Server CVE-2015-2599 Vulnerability (CVE-2015-2599)
CVE-2015-2599
-
Medium
MySQL CVE-2015-2611 Vulnerability (CVE-2015-2611)
CVE-2015-2611
-
Medium
MySQL CVE-2015-2617 Vulnerability (CVE-2015-2617)
CVE-2015-2617
-
Medium
MySQL CVE-2015-2620 Vulnerability (CVE-2015-2620)
CVE-2015-2620
-
Medium
MySQL CVE-2015-2643 Vulnerability (CVE-2015-2643)
CVE-2015-2643
-
Medium
MySQL CVE-2015-2648 Vulnerability (CVE-2015-2648)
CVE-2015-2648
-
Medium
Oracle Database Server CVE-2015-2655 Vulnerability (CVE-2015-2655)
CVE-2015-2655
-
Medium
Drupal URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2015-2749)
CVE-2015-2749
CWE-601
Medium
Drupal URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2015-2750)
CVE-2015-2750
CWE-601
Medium
PHP Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2015-2783)
CVE-2015-2783
CWE-119
Medium
Oracle HTTP Server Use of a Broken or Risky Cryptographic Algorithm Vulnerability (CVE-2015-2808)
CVE-2015-2808
CWE-327
Medium
MediaWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-2932)
CVE-2015-2932
CWE-707
Medium
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-3180)
CVE-2015-3180
CWE-200
Medium
MediaWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-2933)
CVE-2015-2933
CWE-707
Medium
MediaWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-2934)
CVE-2015-2934
CWE-707
Medium
MediaWiki Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-2935)
CVE-2015-2935
CWE-200
Medium
MediaWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-2938)
CVE-2015-2938
CWE-707
Medium
MediaWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-2941)
CVE-2015-2941
CWE-707
Medium
Zenphoto Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-2948)
CVE-2015-2948
CWE-707
Medium
Zenphoto Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-2949)
CVE-2015-2949
CWE-707
Medium
osCommerce Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2015-2965)
CVE-2015-2965
CWE-22
Medium
ownCloud Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2015-3013)
CVE-2015-3013
CWE-138
Medium
PHP Improper Certificate Validation Vulnerability (CVE-2015-3152)
CVE-2015-3152
CWE-295
Medium
MySQL Improper Access Control Vulnerability (CVE-2015-3152)
CVE-2015-3152
CWE-284
Medium
PostgreSQL Other Vulnerability (CVE-2015-3165)
CVE-2015-3165
-
Medium
Moodle Other Vulnerability (CVE-2015-3175)
CVE-2015-3175
-
Medium
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-3176)
CVE-2015-3176
CWE-200
Medium
IBM RTC Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-7471)
CVE-2015-7471
CWE-707
Medium
Ember.js Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-7565)
CVE-2015-7565
CWE-707
Medium
Django Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2016-6186)
CVE-2016-6186
CWE-707
Medium
MySQL CVE-2016-3521 Vulnerability (CVE-2016-3521)
CVE-2016-3521
-
Medium
Drupal Other Vulnerability (CVE-2016-3166)
CVE-2016-3166
-
Medium
Drupal 7PK - Security Features Vulnerability (CVE-2016-3168)
CVE-2016-3168
-
Medium
Drupal Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-3170)
CVE-2016-3170
CWE-200
Medium
Python Other Vulnerability (CVE-2016-3189)
CVE-2016-3189
-
Medium
WebLogic CVE-2016-3416 Vulnerability (CVE-2016-3416)
CVE-2016-3416
-
Medium
MySQL CVE-2016-3424 Vulnerability (CVE-2016-3424)
CVE-2016-3424
-
Medium
WebLogic CVE-2016-3445 Vulnerability (CVE-2016-3445)
CVE-2016-3445
-
Medium
«
1
...
213
214
215
...
309
»