Platform
Solutions
Pricing
Why Invicti
Resources Library
Get a demo
Home
/
Web Application Vulnerabilities
/ Missing Update
Web Application Vulnerabilities
Runtime SCA Findings
Looking for the vulnerability index of Invicti's legacy products?
Invicti Enterprise
Acunetix Standard & Premium
Missing Update
This page lists
22224 vulnerabilities
in this category.
Critical: 1394
High: 12186
Medium: 7891
Low: 749
Information: 4
Vulnerability Name
CVE
CWE
Severity
Python Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2022-0391)
CVE-2022-0391
CWE-138
High
Jboss EAP Missing Release of Memory after Effective Lifetime Vulnerability (CVE-2022-0853)
CVE-2022-0853
CWE-401
High
Dolibarr Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2022-0819)
CVE-2022-0819
CWE-94
High
phpMyAdmin Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2022-0813)
CVE-2022-0813
CWE-200
High
OpenSSL Loop with Unreachable Exit Condition ('Infinite Loop') Vulnerability (CVE-2022-0778)
CVE-2022-0778
CWE-835
High
Artifactory Deserialization of Untrusted Data Vulnerability (CVE-2022-0573)
CVE-2022-0573
CWE-502
High
Jenkins Deserialization of Untrusted Data Vulnerability (CVE-2022-0538)
CVE-2022-0538
CWE-502
High
Oracle HTTP Server Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2022-0391)
CVE-2022-0391
CWE-138
High
Oracle HTTP Server Integer Overflow or Wraparound Vulnerability (CVE-2022-25314)
CVE-2022-25314
CWE-190
High
Apache Traffic Server Improper Input Validation Vulnerability (CVE-2022-25763)
CVE-2022-25763
CWE-20
High
MediaWiki Incorrect Default Permissions Vulnerability (CVE-2021-44858)
CVE-2021-44858
CWE-276
High
PHP Out-of-bounds Read Vulnerability (CVE-2022-31630)
CVE-2022-31630
CWE-125
High
Grafana Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2022-32275)
CVE-2022-32275
CWE-22
High
osTicket Session Fixation Vulnerability (CVE-2022-31888)
CVE-2022-31888
CWE-384
High
Apache Traffic Server Improper Input Validation Vulnerability (CVE-2022-31780)
CVE-2022-31780
CWE-20
High
Apache Traffic Server Improper Input Validation Vulnerability (CVE-2022-31779)
CVE-2022-31779
CWE-20
High
Apache Traffic Server Improper Input Validation Vulnerability (CVE-2022-31778)
CVE-2022-31778
CWE-20
High
ownCloud Exposure of Resource to Wrong Sphere Vulnerability (CVE-2022-31649)
CVE-2022-31649
CWE-668
High
PHP Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') Vulnerability (CVE-2022-31626)
CVE-2022-31626
CWE-120
High
Piwigo Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2022-32297)
CVE-2022-32297
CWE-138
High
PHP Release of Invalid Pointer or Reference Vulnerability (CVE-2022-31625)
CVE-2022-31625
CWE-763
High
XWiki CVE-2022-31166 Vulnerability (CVE-2022-31166)
CVE-2022-31166
-
High
jQuery Validation Other Vulnerability (CVE-2022-31147)
CVE-2022-31147
-
High
Grafana Insufficiently Protected Credentials Vulnerability (CVE-2022-31130)
CVE-2022-31130
CWE-522
High
Moment.js Other Vulnerability (CVE-2022-31129)
CVE-2022-31129
-
High
Grafana Improper Verification of Cryptographic Signature Vulnerability (CVE-2022-31123)
CVE-2022-31123
CWE-347
High
Grafana Improper Authentication Vulnerability (CVE-2022-32276)
CVE-2022-32276
CWE-287
High
Apache Traffic Server Improper Check for Unusual or Exceptional Conditions Vulnerability (CVE-2022-32749)
CVE-2022-32749
CWE-754
High
TYPO3 Insufficient Session Expiration Vulnerability (CVE-2022-31050)
CVE-2022-31050
CWE-613
High
Skipper Incorrect Authorization Vulnerability (CVE-2022-34296)
CVE-2022-34296
CWE-863
High
XWiki Other Vulnerability (CVE-2022-36090)
CVE-2022-36090
-
High
RubyGems Improper Authentication Vulnerability (CVE-2022-36073)
CVE-2022-36073
CWE-287
High
SharePoint CVE-2022-35823 Vulnerability (CVE-2022-35823)
CVE-2022-35823
-
High
Sqlite Improper Validation of Array Index Vulnerability (CVE-2022-35737)
CVE-2022-35737
CWE-129
High
Moodle Improper Input Validation Vulnerability (CVE-2022-35650)
CVE-2022-35650
CWE-20
High
MediaWiki Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2022-34750)
CVE-2022-34750
CWE-770
High
Magento Incorrect Authorization Vulnerability (CVE-2022-34255)
CVE-2022-34255
CWE-863
High
OpenVPN AS Insertion of Sensitive Information into Log File Vulnerability (CVE-2022-33737)
CVE-2022-33737
CWE-532
High
Magento Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2022-34254)
CVE-2022-34254
CWE-22
High
Magento XML Injection (aka Blind XPath Injection) Vulnerability (CVE-2022-34253)
CVE-2022-34253
CWE-91
High
Jenkins Incorrect Authorization Vulnerability (CVE-2022-34175)
CVE-2022-34175
CWE-863
High
Jenkins Observable Discrepancy Vulnerability (CVE-2022-34174)
CVE-2022-34174
CWE-203
High
Oracle JRE Incorrect Conversion between Numeric Types Vulnerability (CVE-2022-34169)
CVE-2022-34169
CWE-681
High
Caddy Web Server Out-of-bounds Read Vulnerability (CVE-2022-34037)
CVE-2022-34037
CWE-125
High
OpenVPN AS Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG) Vulnerability (CVE-2022-33738)
CVE-2022-33738
CWE-338
High
Grafana Incorrect Authorization Vulnerability (CVE-2022-31107)
CVE-2022-31107
CWE-863
High
Play Framework Generation of Error Message Containing Sensitive Information Vulnerability (CVE-2022-31023)
CVE-2022-31023
CWE-209
High
AngularJS Inefficient Regular Expression Complexity Vulnerability (CVE-2022-25844)
CVE-2022-25844
CWE-1333
High
AbanteCart Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2022-26521)
CVE-2022-26521
CWE-434
High
MediaWiki Release of Invalid Pointer or Reference Vulnerability (CVE-2022-28203)
CVE-2022-28203
CWE-763
High
Apache Traffic Server Improper Input Validation Vulnerability (CVE-2022-28129)
CVE-2022-28129
CWE-20
High
Chamilo Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2022-27427)
CVE-2022-27427
CWE-94
High
Chamilo Server-Side Request Forgery (SSRF) Vulnerability (CVE-2022-27426)
CVE-2022-27426
CWE-918
High
Chamilo Improper Privilege Management Vulnerability (CVE-2022-27421)
CVE-2022-27421
CWE-269
High
GibbonEdu Session Fixation Vulnerability (CVE-2022-27305)
CVE-2022-27305
CWE-384
High
Python Untrusted Search Path Vulnerability (CVE-2022-26488)
CVE-2022-26488
CWE-426
High
MediaWiki CVE-2022-28323 Vulnerability (CVE-2022-28323)
CVE-2022-28323
-
High
Apache HTTP Server Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') Vulnerability (CVE-2022-26377)
CVE-2022-26377
CWE-444
High
Piwigo Exposure of Resource to Wrong Sphere Vulnerability (CVE-2022-26267)
CVE-2022-26267
CWE-668
High
Piwigo Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2022-26266)
CVE-2022-26266
CWE-138
High
qdPM Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2022-26180)
CVE-2022-26180
CWE-352
High
MODX Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2022-26149)
CVE-2022-26149
CWE-434
High
UAParser.js Inefficient Regular Expression Complexity Vulnerability (CVE-2022-25927)
CVE-2022-25927
CWE-1333
High
MediaWiki CVE-2022-28204 Vulnerability (CVE-2022-28204)
CVE-2022-28204
-
High
Ruby Out-of-bounds Read Vulnerability (CVE-2022-28739)
CVE-2022-28739
CWE-125
High
Play Framework Uncontrolled Resource Consumption Vulnerability (CVE-2022-31018)
CVE-2022-31018
CWE-400
High
Undertow Uncontrolled Resource Consumption Vulnerability (CVE-2022-2053)
CVE-2022-2053
CWE-400
High
Lighttpd Uncontrolled Resource Consumption Vulnerability (CVE-2022-30780)
CVE-2022-30780
CWE-400
High
Apache HTTP Server Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2022-30556)
CVE-2022-30556
CWE-200
High
Apache HTTP Server Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2022-30522)
CVE-2022-30522
CWE-770
High
Moodle Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2022-2986)
CVE-2022-2986
CWE-352
High
PostgreSQL Improper Control of Dynamically-Managed Code Resources Vulnerability (CVE-2022-2625)
CVE-2022-2625
CWE-913
High
Jetty Improper Resource Shutdown or Release Vulnerability (CVE-2022-2191)
CVE-2022-2191
CWE-404
High
Jetty Uncontrolled Resource Consumption Vulnerability (CVE-2022-2048)
CVE-2022-2048
CWE-400
High
Liferay Portal Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2022-28981)
CVE-2022-28981
CWE-22
High
«
1
...
52
53
54
...
297
»