Platform
Solutions
Pricing
Why Invicti
Resources Library
Get a demo
Home
/
Web Application Vulnerabilities
/ Missing Update
Web Application Vulnerabilities
Runtime SCA Findings
Looking for the vulnerability index of Invicti's legacy products?
Invicti Enterprise
Acunetix Standard & Premium
Missing Update
This page lists
22224 vulnerabilities
in this category.
Critical: 1394
High: 12186
Medium: 7891
Low: 749
Information: 4
Vulnerability Name
CVE
CWE
Severity
Grafana Incorrect Authorization Vulnerability (CVE-2023-6152)
CVE-2023-6152
CWE-863
Medium
osCommerce Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-6296)
CVE-2023-6296
CWE-707
Medium
MySQL CVE-2022-21256 Vulnerability (CVE-2022-21256)
CVE-2022-21256
-
Medium
Liferay Portal Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-11993)
CVE-2024-11993
CWE-707
Medium
WebLogic CVE-2022-21258 Vulnerability (CVE-2022-21258)
CVE-2022-21258
-
Medium
PostgreSQL CVE-2024-10978 Vulnerability (CVE-2024-10978)
CVE-2024-10978
-
Medium
Liferay Portal Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-25476)
CVE-2020-25476
CWE-707
Medium
WordPress CVE-2020-25286 Vulnerability (CVE-2020-25286)
CVE-2020-25286
-
Medium
Oracle HTTP Server Out-of-bounds Read Vulnerability (CVE-2020-24977)
CVE-2020-24977
CWE-125
Medium
Drupal Other Vulnerability (CVE-2024-11942)
CVE-2024-11942
-
Medium
Liferay DXP Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-11993)
CVE-2024-11993
CWE-707
Medium
WebLogic CVE-2022-21259 Vulnerability (CVE-2022-21259)
CVE-2022-21259
-
Medium
WordPress Ultimate Member Plugin Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2024-12276)
CVE-2024-12276
CWE-138
Medium
Drupal Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-12393)
CVE-2024-12393
CWE-707
Medium
osTicket Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-24917)
CVE-2020-24917
CWE-707
Medium
Jboss EAP Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2024-1102)
CVE-2024-1102
CWE-200
Medium
WebLogic CVE-2022-21257 Vulnerability (CVE-2022-21257)
CVE-2022-21257
-
Medium
Joomla Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-24599)
CVE-2020-24599
CWE-707
Medium
PostgreSQL CVE-2024-10976 Vulnerability (CVE-2024-10976)
CVE-2024-10976
-
Medium
WebLogic CVE-2022-21260 Vulnerability (CVE-2022-21260)
CVE-2022-21260
-
Medium
Python CVE-2023-6507 Vulnerability (CVE-2023-6507)
CVE-2023-6507
-
Medium
Jboss EAP Uncontrolled Resource Consumption Vulnerability (CVE-2020-25689)
CVE-2020-25689
CWE-400
Medium
WebLogic CVE-2022-21262 Vulnerability (CVE-2022-21262)
CVE-2022-21262
-
Medium
TCExam Missing Authorization Vulnerability (CVE-2023-6554)
CVE-2023-6554
CWE-862
Medium
osCommerce Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-6609)
CVE-2023-6609
CWE-707
Medium
WP Plugin Contact Form 7 Authorization Bypass Through User-Controlled Key Vulnerability (CVE-2023-6630)
CVE-2023-6630
CWE-639
Medium
phpMyFAQ Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-6889)
CVE-2023-6889
CWE-707
Medium
phpMyFAQ Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-6890)
CVE-2023-6890
CWE-707
Medium
Moodle Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-25631)
CVE-2020-25631
CWE-707
Medium
Pega Infinity Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-10716)
CVE-2024-10716
CWE-707
Medium
Sqlite Use After Free Vulnerability (CVE-2024-0232)
CVE-2024-0232
CWE-416
Medium
OpenSSL CVE-2024-0727 Vulnerability (CVE-2024-0727)
CVE-2024-0727
-
Medium
Moodle Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-25628)
CVE-2020-25628
CWE-707
Medium
Moodle Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-25627)
CVE-2020-25627
CWE-707
Medium
WebLogic CVE-2022-21261 Vulnerability (CVE-2022-21261)
CVE-2022-21261
-
Medium
WordPress Ultimate Member Plugin Missing Authorization Vulnerability (CVE-2024-10528)
CVE-2024-10528
CWE-862
Medium
SharePoint Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-1227)
CVE-2020-1227
CWE-707
Medium
Moodle CVE-2024-33996 Vulnerability (CVE-2024-33996)
CVE-2024-33996
-
Medium
osCommerce Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-43703)
CVE-2023-43703
CWE-707
Medium
MySQL CVE-2020-14624 Vulnerability (CVE-2020-14624)
CVE-2020-14624
-
Medium
MySQL CVE-2020-14597 Vulnerability (CVE-2020-14597)
CVE-2020-14597
-
Medium
MySQL CVE-2020-14614 Vulnerability (CVE-2020-14614)
CVE-2020-14614
-
Medium
Oracle JRE Deserialization of Untrusted Data Vulnerability (CVE-2025-30761)
CVE-2025-30761
CWE-502
Medium
Oracle JRE Improper Access Control Vulnerability (CVE-2025-30754)
CVE-2025-30754
CWE-284
Medium
WebLogic Uncontrolled Resource Consumption Vulnerability (CVE-2025-30753)
CVE-2025-30753
CWE-400
Medium
Plone CMS Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2021-29002)
CVE-2021-29002
CWE-707
Medium
MySQL CVE-2020-14619 Vulnerability (CVE-2020-14619)
CVE-2020-14619
-
Medium
Moodle Exposure of Resource to Wrong Sphere Vulnerability (CVE-2021-43560)
CVE-2021-43560
CWE-668
Medium
MySQL CVE-2020-14620 Vulnerability (CVE-2020-14620)
CVE-2020-14620
-
Medium
Oracle JRE Improper Access Control Vulnerability (CVE-2025-30698)
CVE-2025-30698
CWE-284
Medium
Oracle JRE Improper Access Control Vulnerability (CVE-2025-30691)
CVE-2025-30691
CWE-284
Medium
Oracle JRE CVE-2020-14621 Vulnerability (CVE-2020-14621)
CVE-2020-14621
-
Medium
WebLogic CVE-2020-14622 Vulnerability (CVE-2020-14622)
CVE-2020-14622
-
Medium
MySQL CVE-2020-14623 Vulnerability (CVE-2020-14623)
CVE-2020-14623
-
Medium
Next.js Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2025-30218)
CVE-2025-30218
CWE-200
Medium
Drupal Incorrect Authorization Vulnerability (CVE-2025-31673)
CVE-2025-31673
CWE-863
Medium
PostgreSQL Improper Certificate Validation Vulnerability (CVE-2021-43767)
CVE-2021-43767
CWE-295
Medium
WebLogic CVE-2020-14652 Vulnerability (CVE-2020-14652)
CVE-2020-14652
-
Medium
MySQL CVE-2020-14651 Vulnerability (CVE-2020-14651)
CVE-2020-14651
-
Medium
MySQL CVE-2020-14643 Vulnerability (CVE-2020-14643)
CVE-2020-14643
-
Medium
MySQL Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2020-14641)
CVE-2020-14641
CWE-200
Medium
Grafana Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2021-43813)
CVE-2021-43813
CWE-22
Medium
WebLogic CVE-2020-14640 Vulnerability (CVE-2020-14640)
CVE-2020-14640
-
Medium
WebLogic CVE-2020-14638 Vulnerability (CVE-2020-14638)
CVE-2020-14638
-
Medium
MySQL CVE-2020-14631 Vulnerability (CVE-2020-14631)
CVE-2020-14631
-
Medium
WebLogic CVE-2020-14637 Vulnerability (CVE-2020-14637)
CVE-2020-14637
-
Medium
XWikiplatform Other Vulnerability (CVE-2025-29925)
CVE-2025-29925
-
Medium
WebLogic CVE-2020-14636 Vulnerability (CVE-2020-14636)
CVE-2020-14636
-
Medium
Chamilo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2021-43687)
CVE-2021-43687
CWE-707
Medium
FluxBB Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2021-43677)
CVE-2021-43677
CWE-707
Medium
MySQL CVE-2020-14632 Vulnerability (CVE-2020-14632)
CVE-2020-14632
-
Medium
MySQL CVE-2020-14591 Vulnerability (CVE-2020-14591)
CVE-2020-14591
-
Medium
Drupal Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2025-31675)
CVE-2025-31675
CWE-707
Medium
Sqlite Integer Overflow or Wraparound Vulnerability (CVE-2025-29088)
CVE-2025-29088
CWE-190
Medium
MySQL CVE-2020-14559 Vulnerability (CVE-2020-14559)
CVE-2020-14559
-
Medium
«
1
...
233
234
235
...
297
»