Severity Critical High Medium Low Informational Vulnerability Categories Abuse Of Functionality Acumonitor Arbitrary File Creation Arbitrary File Read Arbitrary File Write Authentication Bypass Bruteforce Possible Buffer Overflow CSRF CSTI Code Execution Configuration Crlf Injection Deepscan Default Credentials Denial-of-service Dev Files Directory Listing Directory Traversal Eli Injection Error Handling File Inclusion Http Parameter Pollution Http Response Splitting Information Disclosure Insecure Admin Access Insecure Deserialization Internal Ip Disclosure Known Vulnerabilitie Known Vulnerabilities Ldap Injection Malware Missing Update Path Traversal Privilege Escalation Remote Code Execution SSRF SSTI Sensitive Data Not Over Ssl Server Side Template Injection Session Fixation Source Code Disclosure Sql Injection Test Files Unauthenticated File Upload Url Redirection Weak Credentials Weak Crypto XFS XSS XXE Xpath Injection Vulnerability Name CVE CWE CWE Severity GraphQL Array-based Query Batching Allowed: Potential Batching Attack Vulnerability CWE-770 CWE-770 Medium GraphQL Circular-Query via Introspection Allowed: Potential DoS Vulnerability CWE-400 CWE-400 Medium GraphQL Field Suggestions Enabled CWE-200 CWE-200 Medium GraphQL Introspection Query Enabled CWE-200 CWE-200 Medium GraphQL Non-JSON Mutations over GET: Potential CSRF Vulnerability CWE-352 CWE-352 Medium GraphQL Non-JSON Queries over GET: Potential CSRF Vulnerability CWE-352 CWE-352 Medium GraphQL Non-JSON Queries over POST: Potential CSRF Vulnerability CWE-352 CWE-352 Medium GraphQL Unauthenticated Mutation Detected CWE-306 CWE-306 Medium GraphQL Unhandled Error Leakage CWE-209 CWE-209 Medium Hadoop cluster web interface CWE-200 CWE-200 Medium Handlebars Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-8861) CVE-2015-8861 CWE-707 CWE-707 Medium Hashicorp Consul API is accessible without authentication CWE-200 CWE-200 Medium Hasura GraphQL API without authentication CWE-200 CWE-200 Medium Hesk Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2011-3743) CVE-2011-3743 CWE-200 CWE-200 Medium Hesk Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2011-5287) CVE-2011-5287 CWE-707 CWE-707 Medium Hesk Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-13897) CVE-2020-13897 CWE-707 CWE-707 Medium Highcharts JS Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2021-29489) CVE-2021-29489 CWE-707 CWE-707 Medium Host header attack CWE-20 CWE-20 Medium Hostile subdomain takeover CWE-16 CWE-16 Medium HTML form susceptible to spam CWE-20 CWE-20 Medium HTML Injection CWE-80 CWE-80 Medium HTTP Header Injection CWE-113 CWE-113 Medium HTTP header reflected in cached response CWE-16 CWE-16 Medium Httpoxy vulnerability CWE-16 CWE-16 Medium HTTP parameter pollution CWE-88 CWE-88 Medium HTTP response splitting with cloud storage CWE-113 CWE-113 Medium HTTPS connection uses outdated TLS version CWE-310 CWE-310 Medium HTTPS connection with weak key length CWE-310 CWE-310 Medium HTTP Strict Transport Security (HSTS) Policy Not Enabled CWE-16 CWE-16 Medium IBMHttpServer Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2011-1360) CVE-2011-1360 CWE-707 CWE-707 Medium IBMHttpServer Other Vulnerability (CVE-2000-0505) CVE-2000-0505 Medium IBMHttpServer Other Vulnerability (CVE-2001-0122) CVE-2001-0122 Medium IBMHttpServer Other Vulnerability (CVE-2002-1822) CVE-2002-1822 Medium IBMHttpServer Other Vulnerability (CVE-2004-0263) CVE-2004-0263 Medium IBMHttpServer Other Vulnerability (CVE-2004-0493) CVE-2004-0493 Medium IBMHttpServer Other Vulnerability (CVE-2006-3918) CVE-2006-3918 Medium IBM RTC Cleartext Storage of Sensitive Information Vulnerability (CVE-2021-29786) CVE-2021-29786 CWE-312 CWE-312 Medium IBM RTC Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2012-0748) CVE-2012-0748 CWE-352 CWE-352 Medium IBM RTC Cross-site Scripting (XSS) Vulnerability (CVE-2020-4691) CVE-2020-4691 Medium IBM RTC Cross-site Scripting (XSS) Vulnerability (CVE-2020-4697) CVE-2020-4697 Medium IBM RTC Cross-site Scripting (XSS) Vulnerability (CVE-2020-4733) CVE-2020-4733 Medium IBM RTC CVE-2015-1971 Vulnerability (CVE-2015-1971) CVE-2015-1971 Medium IBM RTC CVE-2017-1191 Vulnerability (CVE-2017-1191) CVE-2017-1191 Medium IBM RTC CVE-2018-1694 Vulnerability (CVE-2018-1694) CVE-2018-1694 Medium IBM RTC CVE-2019-4084 Vulnerability (CVE-2019-4084) CVE-2019-4084 Medium IBM RTC CVE-2020-4964 Vulnerability (CVE-2020-4964) CVE-2020-4964 Medium IBM RTC Exposure of Resource to Wrong Sphere Vulnerability (CVE-2020-4989) CVE-2020-4989 CWE-668 CWE-668 Medium IBM RTC Exposure of Resource to Wrong Sphere Vulnerability (CVE-2021-29701) CVE-2021-29701 CWE-668 CWE-668 Medium IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2014-3092) CVE-2014-3092 CWE-200 CWE-200 Medium IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2014-6131) CVE-2014-6131 CWE-200 CWE-200 Medium IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-0113) CVE-2015-0113 CWE-200 CWE-200 Medium IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-2865) CVE-2016-2865 CWE-200 CWE-200 Medium IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-2987) CVE-2016-2987 CWE-200 CWE-200 Medium IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-6024) CVE-2016-6024 CWE-200 CWE-200 Medium IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-9700) CVE-2016-9700 CWE-200 CWE-200 Medium IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-9735) CVE-2016-9735 CWE-200 CWE-200 Medium IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-1099) CVE-2017-1099 CWE-200 CWE-200 Medium IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-1240) CVE-2017-1240 CWE-200 CWE-200 Medium IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-1251) CVE-2017-1251 CWE-200 CWE-200 Medium IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-1488) CVE-2017-1488 CWE-200 CWE-200 Medium IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-1507) CVE-2017-1507 CWE-200 CWE-200 Medium IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-1509) CVE-2017-1509 CWE-200 CWE-200 Medium IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-1524) CVE-2017-1524 CWE-200 CWE-200 Medium IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-1559) CVE-2017-1559 CWE-200 CWE-200 Medium IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-1570) CVE-2017-1570 CWE-200 CWE-200 Medium IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-1725) CVE-2017-1725 CWE-200 CWE-200 Medium IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-1734) CVE-2017-1734 CWE-200 CWE-200 Medium IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2018-1423) CVE-2018-1423 CWE-200 CWE-200 Medium IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2018-1606) CVE-2018-1606 CWE-200 CWE-200 Medium IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2018-1734) CVE-2018-1734 CWE-200 CWE-200 Medium IBM RTC Files or Directories Accessible to External Parties Vulnerability (CVE-2017-1602) CVE-2017-1602 CWE-552 CWE-552 Medium IBM RTC Generation of Error Message Containing Sensitive Information (CVE-2020-4487) CVE-2020-4487 CWE-209 CWE-209 Medium IBM RTC Generation of Error Message Containing Sensitive Information Vulnerability (CVE-2020-4544) CVE-2020-4544 CWE-209 CWE-209 Medium IBM RTC Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2017-1753) CVE-2017-1753 CWE-94 CWE-94 Medium IBM RTC Improper Input Validation Vulnerability (CVE-2015-1928) CVE-2015-1928 CWE-20 CWE-20 Medium 1...19202122...106 20 / 106