Web Servers Family for Nessus

IDNameSeverity
305204OpenSSL 1.1.1 < 1.1.1zg Multiple Vulnerabilities
critical
305203OpenSSL 1.0.2 < 1.0.2zp Multiple Vulnerabilities
high
305202OpenSSL 3.0.0 < 3.0.20 Multiple Vulnerabilities
critical
305201OpenSSL 3.4.0 < 3.4.5 Multiple Vulnerabilities
critical
305200OpenSSL 3.3.0 < 3.3.7 Multiple Vulnerabilities
critical
304689Grafana 8.1.0 < 11.6.14 / 12.0.0 < 12.1.10 / 12.2.0 < 12.2.8 / 12.3.0 < 12.3.6 / 12.4.0 < 12.4.2 DoS (CVE-2026-28375)
medium
304688Grafana 8.0.0 < 11.6.14 / 12.0.0 < 12.1.10 / 12.2.0 < 12.2.8 / 12.3.0 < 12.3.6 / 12.4.0 < 12.4.2 DoS (CVE-2026-27879)
medium
304687Grafana 9.3.0 < 11.6.14 / 12.0.0 < 12.1.10 / 12.2.0 < 12.2.8 / 12.3.0 < 12.3.6 / 12.4.0 < 12.4.2 Information Disclosure (CVE-2026-27877)
high
304686Grafana 12.1.0 < 12.1.10 / 12.2.0 < 12.2.8 / 12.3.0 < 12.3.6 / 12.4.0 < 12.4.2 DoS (CVE-2026-27880)
high
304671nginx 1.3.0 < 1.28.2 / 1.29.x < 1.29.5 SSL Upstream Injection
high
303926IBM WebSphere eXtreme Scale 8.6.1.0 < 8.6.1.6 (7267689)
medium
303560IBM WebSphere Application Server Liberty 17.0.0.3 < 26.0.0.4 Privilege Escalation (7267345)
high
303559IBM WebSphere Application Server Liberty 17.0.0.3 < 26.0.0.4 (7267351)
high
303510IBM WebSphere Application Server Liberty 17.0.0.3 < 26.0.0.4 (7267347)
medium
303509IBM WebSphere Application Server Liberty 17.0.0.3 < 26.0.0.4 (7267362)
critical
303225Pac4J JWT < 4.5.9 / 5.x < 5.7.9 / 6.x < 6.3.3 Authentication Bypass (CVE-2026-29000) (Direct Check)
critical
302501OpenSSL 3.6.0 < 3.6.2 Multiple Vulnerabilities
high
302500OpenSSL 3.5.0 < 3.5.6 Multiple Vulnerabilities
high
302165SAP NetWeaver AS ABAP Missing Authorization Check (3703856)
medium
302164SAP NetWeaver AS ABAP SSRF (3689080)
medium
302163SAP NetWeaver AS ABAP Missing Authorization Check (3704740)
medium
302162SAP NetWeaver AS ABAP Missing Authorization Check (3694383)
low
302113SAP NetWeaver AS Java Multiple Vulnerabilities (3700960)
high
301975SAP Netweaver Visual Composer Unrestricted File Upload (3084487)
high
300293IBM WebSphere Application Server Liberty 17.0.0.3 < 26.0.0.3 (7261761)
critical
300110IBM WebSphere Application Server 8.5.5.3 < 8.5.5.30 / 9.x < 9.0.5.27 / Liberty 21.0.0.3 < 26.0.0.3 DoS (7261794)
high
299410Apache Tomcat 10.1.0.M7 < 10.1.52
high
299403Apache Tomcat 11.0.0.M1 < 11.0.15 multiple vulnerabilities
critical
299402Apache Tomcat 9.0.83 < 9.0.115
high
299401Apache Tomcat 10.1.0.M1 < 10.1.50 multiple vulnerabilities
critical
299398Apache Tomcat 11.0.0.M1 < 11.0.18
high
299397Apache Tomcat 9.0.0.M1 < 9.0.113 multiple vulnerabilities
critical
298967SAP NetWeaver AS ABAP Missing Authorization Check (3674774)
critical
298966SAP NetWeaver AS ABAP XML Signature Wrapping (3697567)
high
298965SAP NetWeaver AS Java CRLF Injection (3673213)
low
298964SAP NetWeaver AS ABAP and S/4HANA Missing Authorization Check (3672622)
medium
298596IBM WebSphere Application Server 8.5.5.28 < 8.5.5.30 / 9.0.5.24 < 9.0.5.27 (7260217)
medium
297279IBM WebSphere Application Server Liberty 17.0.0.3 < 26.0.0.2 RCE (7258224)
high
297229Oracle APEX Sample Applications (Brookstrut) (CVE-2026-21931)
medium
297228Oracle Application Express (Apex) Web Detection
info
297198Grafana Labs 3.0.0 < 11.6.9+security-01 / 12.0.0 < 12.0.8+security-01 / 12.1.0 < 12.1.5+security-01 / 12.2.0 < 12.2.3+security-01 / 12.3.0 < 12.3.1+security-01 DoS (CVE-2026-21720)
high
297197Grafana Labs 10.2.0 < 11.6.9+security-01 / 12.0.0 < 12.0.8+security-01 / 12.1.0 < 12.1.5+security-01 / 12.2.0 < 12.2.3+security-01 / 12.3.0 < 12.3.1+security-01 Privilege Escalation (CVE-2026-21721)
high
296784OpenSSL 3.3.0 < 3.3.6 Multiple Vulnerabilities
high
296770OpenSSL 3.6.0 < 3.6.1 Multiple Vulnerabilities
high
296769OpenSSL 1.1.1 < 1.1.1ze Multiple Vulnerabilities
high
296768OpenSSL 3.5.0 < 3.5.5 Multiple Vulnerabilities
high
296767OpenSSL 1.0.2 < 1.0.2zn Multiple Vulnerabilities
high
296766OpenSSL 3.4.0 < 3.4.4 Multiple Vulnerabilities
high
296765OpenSSL 3.0.0 < 3.0.19 Multiple Vulnerabilities
high
296604Oracle HTTP Server (January 2026 CPU)
medium