Severity Critical High Medium Low Informational Vulnerability Categories Abuse Of Functionality Acumonitor Arbitrary File Creation Arbitrary File Read Arbitrary File Write Authentication Bypass BOLA Bruteforce Possible Buffer Overflow CSRF CSTI Code Execution Configuration Crlf Injection Deepscan Default Credentials Denial-of-service Dev Files Directory Listing Directory Traversal Eli Injection Error Handling File Inclusion Http Parameter Pollution Http Response Splitting Information Disclosure Insecure Admin Access Insecure Deserialization Internal Ip Disclosure Known Vulnerabilitie Known Vulnerabilities Ldap Injection Malware Missing Update Path Traversal Privilege Escalation Remote Code Execution SSRF SSTI Sensitive Data Not Over Ssl Server Side Template Injection Session Fixation Source Code Disclosure Sql Injection Test Files Unauthenticated File Upload Url Redirection Weak Credentials Weak Crypto XFS XSS XXE Xpath Injection Vulnerability Name CVE CWE CWE Severity XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-29516) CVE-2023-29516 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-29518) CVE-2023-29518 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-29519) CVE-2023-29519 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-29521) CVE-2023-29521 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-29522) CVE-2023-29522 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-29523) CVE-2023-29523 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-29524) CVE-2023-29524 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-29525) CVE-2023-29525 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-29526) CVE-2023-29526 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-29527) CVE-2023-29527 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-36469) CVE-2023-36469 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-36470) CVE-2023-36470 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2010-4641) CVE-2010-4641 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2021-21380) CVE-2021-21380 CWE-138 CWE-138 High XWiki Improper Privilege Management Vulnerability (CVE-2023-26475) CVE-2023-26475 CWE-269 CWE-269 High XWiki Improper Privilege Management Vulnerability (CVE-2023-34465) CVE-2023-34465 CWE-269 CWE-269 High XWiki Improper Restriction of Excessive Authentication Attempts Vulnerability (CVE-2023-26476) CVE-2023-26476 CWE-307 CWE-307 High XWiki Improper Restriction of XML External Entity Reference Vulnerability (CVE-2023-27480) CVE-2023-27480 CWE-611 CWE-611 High XWiki Incomplete Cleanup Vulnerability (CVE-2023-36468) CVE-2023-36468 CWE-459 CWE-459 High XWiki Incorrect Authorization Vulnerability (CVE-2023-32069) CVE-2023-32069 CWE-863 CWE-863 High XWiki Incorrect Authorization Vulnerability (CVE-2023-46244) CVE-2023-46244 CWE-863 CWE-863 High XWiki Incorrect Use of Privileged APIs Vulnerability (CVE-2022-24821) CVE-2022-24821 CWE-648 CWE-648 High XWiki Missing Authorization Vulnerability (CVE-2022-36091) CVE-2022-36091 CWE-862 CWE-862 High XWiki Missing Authorization Vulnerability (CVE-2022-41930) CVE-2022-41930 CWE-862 CWE-862 High XWiki Missing Authorization Vulnerability (CVE-2022-41937) CVE-2022-41937 CWE-862 CWE-862 High XWiki Missing Authorization Vulnerability (CVE-2023-37910) CVE-2023-37910 CWE-862 CWE-862 High XWiki Missing Authorization Vulnerability (CVE-2024-43401) CVE-2024-43401 CWE-862 CWE-862 High XWiki Other Vulnerability (CVE-2022-36090) CVE-2022-36090 High XWiki Other Vulnerability (CVE-2023-26478) CVE-2023-26478 High XWiki Other Vulnerability (CVE-2023-29507) CVE-2023-29507 High XWiki Out-of-bounds Write Vulnerability (CVE-2023-26470) CVE-2023-26470 CWE-787 CWE-787 High XWikiplatform Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2024-31986) CVE-2024-31986 CWE-352 CWE-352 High XWikiplatform Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2024-31988) CVE-2024-31988 CWE-352 CWE-352 High XWikiplatform Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2024-31465) CVE-2024-31465 CWE-94 CWE-94 High XWikiplatform Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2024-31984) CVE-2024-31984 CWE-94 CWE-94 High XWikiplatform Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2024-37899) CVE-2024-37899 CWE-94 CWE-94 High XWikiplatform Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2024-37901) CVE-2024-37901 CWE-94 CWE-94 High XWikiplatform Missing Authorization Vulnerability (CVE-2024-31981) CVE-2024-31981 CWE-862 CWE-862 High XWikiplatform Missing Authorization Vulnerability (CVE-2024-31983) CVE-2024-31983 CWE-862 CWE-862 High XWikiplatform Missing Authorization Vulnerability (CVE-2024-31987) CVE-2024-31987 CWE-862 CWE-862 High XWikiplatform Missing Authorization Vulnerability (CVE-2024-31997) CVE-2024-31997 CWE-862 CWE-862 High XWiki Platform RCE (CVE-2023-37462) CVE-2023-37462 CWE-74 CWE-74 High XWiki Server-Side Request Forgery (SSRF) Vulnerability (CVE-2023-48240) CVE-2023-48240 CWE-918 CWE-918 High XWiki Weak Password Recovery Mechanism for Forgotten Password Vulnerability (CVE-2022-23619) CVE-2022-23619 CWE-640 CWE-640 High YetiForce CRM Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2022-0269) CVE-2022-0269 CWE-352 CWE-352 High YOURLS Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2022-0088) CVE-2022-0088 CWE-352 CWE-352 High YOURLS Improper Restriction of Rendered UI Layers or Frames Vulnerability (CVE-2021-3734) CVE-2021-3734 CWE-1021 CWE-1021 High Zabbix 1.8.x-2.2.x Local File Inclusion via XXE Attack CWE-611 CWE-611 High Zabbix 2.0.8 SQL injection CVE-2013-5743 CWE-89 CWE-89 High ZenCart Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2017-11675) CVE-2017-11675 CWE-94 CWE-94 High ZenCart Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2021-3291) CVE-2021-3291 CWE-138 CWE-138 High ZenCart Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2009-2254) CVE-2009-2254 CWE-138 CWE-138 High ZenCart Inclusion of Functionality from Untrusted Control Sphere Vulnerability (CVE-2024-5762) CVE-2024-5762 CWE-829 CWE-829 High ZenCart Other Vulnerability (CVE-2009-4323) CVE-2009-4323 High Zend framework configuration file information disclosure CWE-538 CWE-538 High Zend Framework local file disclosure via XXE injection CVE-2012-3363 CVE-2015-5161 CWE-611 CWE-611 High Zenphoto Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2020-5593) CVE-2020-5593 CWE-138 CWE-138 High Zenphoto Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2007-6666) CVE-2007-6666 CWE-138 CWE-138 High Zenphoto Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2009-4566) CVE-2009-4566 CWE-138 CWE-138 High Zenphoto Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2010-4906) CVE-2010-4906 CWE-138 CWE-138 High Zenphoto Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2015-5591) CVE-2015-5591 CWE-138 CWE-138 High Zenphoto Improper Privilege Management Vulnerability (CVE-2018-0610) CVE-2018-0610 CWE-269 CWE-269 High Zenphoto Other Vulnerability (CVE-2007-0616) CVE-2007-0616 High Zenphoto Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2020-36079) CVE-2020-36079 CWE-434 CWE-434 High Zimbra Collaboration Suite SSRF (CVE-2020-7796) CVE-2020-7796 CWE-918 CWE-918 High ZK Framework AuUploader Information Disclosure (CVE-2022-36537) CVE-2022-36537 CWE-200 CWE-200 High Zope Web Application Server CVE-2011-2528 Vulnerability (CVE-2011-2528) CVE-2011-2528 High Zope Web Application Server Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2023-41050) CVE-2023-41050 CWE-200 CWE-200 High Zope Web Application Server Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2021-32633) CVE-2021-32633 CWE-22 CWE-22 High Zope Web Application Server Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2021-32674) CVE-2021-32674 CWE-22 CWE-22 High Zope Web Application Server Improperly Controlled Modification of Dynamically-Determined Object Attributes Vulnerability (CVE-2021-32811) CVE-2021-32811 CWE-915 CWE-915 High Zope Web Application Server Other Vulnerability (CVE-2000-0483) CVE-2000-0483 High Zope Web Application Server Other Vulnerability (CVE-2000-0725) CVE-2000-0725 High Zope Web Application Server Other Vulnerability (CVE-2000-1211) CVE-2000-1211 High Zope Web Application Server Other Vulnerability (CVE-2001-1227) CVE-2001-1227 High 1...167168169 168 / 169