Newest Plugins

IDNameProductFamilyPublishedSeverity
98117Blind SQL Injection (differential analysis)Web App ScanningInjection3/31/2017
high
98116NoSQL InjectionWeb App ScanningInjection3/31/2017
high
98115SQL InjectionWeb App ScanningInjection3/31/2017
high
98114XPath InjectionWeb App ScanningInjection3/31/2017
high
98113XML External EntityWeb App ScanningInjection3/31/2017
critical
98112Cross-Site Request ForgeryWeb App ScanningCross Site Request Forgery3/31/2017
medium
98110DOM-based Cross-Site Scripting (XSS) in attribute contextWeb App ScanningCross Site Scripting3/31/2017
medium
98109DOM-based Cross-Site Scripting (XSS)Web App ScanningCross Site Scripting3/31/2017
medium
98108Cross-Site Scripting (XSS) in event tag of HTML elementWeb App ScanningCross Site Scripting3/31/2017
medium
98107Cross-Site Scripting (XSS) in pathWeb App ScanningCross Site Scripting3/31/2017
medium
98106Cross-Site Scripting (XSS) in attribute contextWeb App ScanningCross Site Scripting3/31/2017
medium
98105Cross-Site Scripting (XSS) in HTML tagWeb App ScanningCross Site Scripting3/31/2017
medium
98104Cross-Site Scripting (XSS)Web App ScanningCross Site Scripting3/31/2017
medium
98103Unvalidated DOM redirectWeb App ScanningWeb Applications3/31/2017
medium
98102Session FixationWeb App ScanningAuthentication & Session3/31/2017
medium
98101Response SplittingWeb App ScanningWeb Applications3/31/2017
medium
98100Path TraversalWeb App ScanningWeb Applications3/31/2017
high
98099Publicly writable directoryWeb App ScanningWeb Servers3/31/2017
high
98098Source Code DisclosureWeb App ScanningData Exposure3/31/2017
medium
98097Backdoor DetectionWeb App ScanningWeb Servers3/31/2017
critical
98096Access Restriction Bypass Via Origin SpoofWeb App ScanningAuthentication & Session3/31/2017
medium
98095Misconfiguration in LIMIT directive of .htaccess fileWeb App ScanningWeb Servers3/31/2017
medium
98092HTML ObjectWeb App ScanningWeb Servers3/31/2017
info
98091Mixed Resource DetectionWeb App ScanningWeb Applications3/31/2017
medium
98088Exposed Localstart.asp PageWeb App ScanningWeb Applications3/31/2017
medium
98087WebDAVWeb App ScanningWeb Servers3/31/2017
info
98083CAPTCHA DetectionWeb App ScanningWeb Applications3/31/2017
info
98082Unencrypted Password FormWeb App ScanningAuthentication & Session3/31/2017
medium
98081Password Field With Auto-CompleteWeb App ScanningAuthentication & Session3/31/2017
low
98080Form-based File UploadWeb App ScanningWeb Applications3/31/2017
info
98079CVS/SVN User DisclosureWeb App ScanningData Exposure3/31/2017
medium
98078E-mail Address DisclosureWeb App ScanningData Exposure3/31/2017
info
98077Private IP Address DisclosureWeb App ScanningData Exposure3/31/2017
info
98074Backup FileWeb App ScanningData Exposure3/31/2017
medium
98073Backup DirectoryWeb App ScanningData Exposure3/31/2017
medium
98072Common Directories DetectionWeb App ScanningWeb Servers3/31/2017
info
98071Common Files DetectionWeb App ScanningWeb Servers3/31/2017
info
98070Common Administration Interfaces DetectionWeb App ScanningWeb Applications3/31/2017
info
98068Insecure Cross-Domain Policy (allow-http-request-headers-from)Web App ScanningWeb Applications3/31/2017
low
98067Insecure Cross-Domain Policy (allow-access-from)Web App ScanningWeb Applications3/31/2017
low
98065Insecure Client-Access PolicyWeb App ScanningWeb Applications3/31/2017
low
98064Cookie Without Secure Flag DetectedWeb App ScanningHTTP Security Header3/31/2017
low
98063Cookie Without HttpOnly Flag DetectedWeb App ScanningHTTP Security Header3/31/2017
low
98062Cookie Set For Parent DomainWeb App ScanningHTTP Security Header3/31/2017
info
98060Missing 'X-Frame-Options' HeaderWeb App ScanningHTTP Security Header3/31/2017
low
98057Insecure 'Access-Control-Allow-Origin' HeaderWeb App ScanningHTTP Security Header3/31/2017
low
98056Missing HTTP Strict Transport Security PolicyWeb App ScanningHTTP Security Header3/31/2017
medium
98054Unvalidated RedirectionWeb App ScanningWeb Applications3/31/2017
medium
98050Interesting ResponseWeb App ScanningWeb Applications3/31/2017
info
98048HTTP TRACE AllowedWeb App ScanningWeb Servers3/31/2017
low