113168 | Docker Compose Configuration Detected | Web App Scanning | Data Exposure | 3/28/2025 | medium |
113123 | Dockerfile Detected | Web App Scanning | Data Exposure | 3/28/2025 | medium |
112541 | SSL/TLS Certificate Common Name Mismatch | Web App Scanning | SSL/TLS | 3/28/2025 | medium |
114386 | External Broken Resources Detected | Web App Scanning | Web Applications | 3/24/2025 | low |
98117 | Blind SQL Injection (differential analysis) | Web App Scanning | Injection | 3/18/2025 | high |
114621 | Docker Public Registry Detected | Web App Scanning | Web Applications | 3/18/2025 | info |
114400 | Apache OFBiz < 18.12.11 Server-Side Request Forgery | Web App Scanning | Component Vulnerability | 3/18/2025 | high |
98538 | Environment Configuration File Detected | Web App Scanning | Web Applications | 3/11/2025 | high |
98104 | Cross-Site Scripting (XSS) | Web App Scanning | Cross Site Scripting | 3/11/2025 | medium |
114614 | CraftCMS < 4.13.2 / 5.x < 5.5.2 Remote Code Execution | Web App Scanning | Component Vulnerability | 3/11/2025 | critical |
98228 | Drupal Unsupported Version | Web App Scanning | Component Vulnerability | 2/25/2025 | critical |
98113 | XML External Entity | Web App Scanning | Injection | 2/25/2025 | critical |
98083 | CAPTCHA Detection | Web App Scanning | Web Applications | 2/25/2025 | info |
113078 | AngularJS Unsupported Version | Web App Scanning | Component Vulnerability | 2/24/2025 | high |
113034 | Out-of-Date MediaElement.Js Detected | Web App Scanning | Component Vulnerability | 2/12/2025 | info |
113031 | Out-of-Date JQuery UI Detected | Web App Scanning | Component Vulnerability | 2/12/2025 | info |
98611 | Error Message | Web App Scanning | Data Exposure | 2/3/2025 | info |
114590 | Microsoft Exchange Autodiscover V2 User Enumeration | Web App Scanning | Web Applications | 2/3/2025 | medium |
113337 | NoSQL Injection Authentication Bypass | Web App Scanning | Injection | 1/29/2025 | high |
113162 | MySQLjs SQL Injection Authentication Bypass | Web App Scanning | Injection | 1/29/2025 | high |
114146 | Subdomain Takeover | Web App Scanning | Web Applications | 1/28/2025 | medium |
113158 | Package Dependencies Detected | Web App Scanning | Data Exposure | 1/28/2025 | medium |
98119 | Blind NoSQL Injection (differential analysis) | Web App Scanning | Injection | 1/20/2025 | high |
113310 | Blind XPath Injection (differential analysis) | Web App Scanning | Injection | 1/20/2025 | high |
98070 | Common Administration Interfaces Detection | Web App Scanning | Web Applications | 1/17/2025 | info |
114258 | LayerSlider Plugin for WordPress 7.9.11 < 7.10.1 SQL Injection | Web App Scanning | Component Vulnerability | 1/17/2025 | high |
114029 | Well-Known URIs Detected | Web App Scanning | Web Applications | 1/17/2025 | info |
112526 | Missing 'X-XSS-Protection' Header (deprecated) | Web App Scanning | HTTP Security Header | 1/17/2025 | info |
98071 | Common Files Detection | Web App Scanning | Web Servers | 1/9/2025 | info |
98115 | SQL Injection | Web App Scanning | Injection | 1/7/2025 | high |
114549 | Apache Struts < 6.4.0 Unrestricted File Upload (S2-067) | Web App Scanning | Component Vulnerability | 1/7/2025 | critical |
113059 | OPcache UI Detected | Web App Scanning | Web Applications | 1/7/2025 | medium |
98110 | DOM-based Cross-Site Scripting (XSS) in attribute context | Web App Scanning | Cross Site Scripting | 12/23/2024 | medium |
98107 | Cross-Site Scripting (XSS) in path | Web App Scanning | Cross Site Scripting | 12/23/2024 | medium |
112763 | Apache Struts 2.1.6 < 2.3.34 / 2.5 < 2.5.13 Remote Code Execution (S2-052) | Web App Scanning | Component Vulnerability | 12/19/2024 | high |
112762 | Apache Struts 2 < 2.3.33 Remote Code Execution (S2-048) | Web App Scanning | Component Vulnerability | 12/19/2024 | critical |
112760 | Apache Struts 2 Demo Application Detected | Web App Scanning | Component Vulnerability | 12/19/2024 | low |
112742 | Apache Struts 2 < 2.3.29 DevMode Remote Code Execution | Web App Scanning | Component Vulnerability | 12/19/2024 | critical |
112741 | Apache Struts 2.x < 2.3.15.1 Remote Code Execution (S2-016) | Web App Scanning | Component Vulnerability | 12/19/2024 | critical |
112727 | Apache Struts 2.0.4 < 2.3.35 / 2.5.x < 2.5.17 Remote Code Execution (S2-057) | Web App Scanning | Component Vulnerability | 12/19/2024 | high |
112726 | Apache Struts 2.3.5 < 2.3.32 / 2.5.x < 2.5.10.1 Remote Code Execution (S2-045 / S2-046) | Web App Scanning | Component Vulnerability | 12/19/2024 | critical |
112719 | Client-Side Prototype Pollution | Web App Scanning | Web Applications | 12/19/2024 | high |
114469 | CyberPanel < 2.3.8 Remote Command Execution | Web App Scanning | Component Vulnerability | 12/10/2024 | critical |
98077 | Private IP Address Disclosure | Web App Scanning | Data Exposure | 12/3/2024 | info |
114223 | HTTP Request Smuggling | Web App Scanning | Web Applications | 12/3/2024 | high |
98068 | Insecure Cross-Domain Policy (allow-http-request-headers-from) | Web App Scanning | Web Applications | 11/26/2024 | low |
98067 | Insecure Cross-Domain Policy (allow-access-from) | Web App Scanning | Web Applications | 11/26/2024 | low |
114503 | Virtual Hosts Detected | Web App Scanning | Web Applications | 11/26/2024 | info |
114497 | Symfony < 5.4.46 / 6.x < 6.4.14 / 7.x < 7.1.7 Improper Input Handling | Web App Scanning | Component Vulnerability | 11/20/2024 | high |
114143 | Node-config Configuration File Detected | Web App Scanning | Data Exposure | 11/20/2024 | medium |