Severity Critical High Medium Low Informational Vulnerability Categories Abuse Of Functionality Acumonitor Api Bfla Api Bola Api Broken Auth Api Broken Object Prop Auth Api Dos Api Improper Inventory Management Api Misconfiguration Api Ssrf Arbitrary File Creation Arbitrary File Read Arbitrary File Write Authentication Bypass BOLA Bruteforce Possible Buffer Overflow CSRF CSTI Code Execution Configuration Crlf Injection Deepscan Default Credentials Denial-of-service Dev Files Directory Listing Directory Traversal Eli Injection Error Handling File Inclusion Http Parameter Pollution Http Response Splitting Information Disclosure Insecure Admin Access Insecure Deserialization Internal Ip Disclosure Known Vulnerabilitie Known Vulnerabilities LLM Ldap Injection Llm Excessive Agency Llm Insecure Output Handling Llm Prompt Injection Llm Sensitive Information Disclosure Malware Missing Update Path Traversal Privilege Escalation Remote Code Execution SSRF SSTI Sensitive Data Not Over Ssl Server Side Template Injection Session Fixation Source Code Disclosure Sql Injection Test Files Unauthenticated File Upload Url Redirection Weak Credentials Weak Crypto XFS XSS XXE Xpath Injection Vulnerability Name CVE CWE CWE Severity XWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-35153) CVE-2023-35153 CWE-707 CWE-707 Medium XWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-35155) CVE-2023-35155 CWE-707 CWE-707 Medium XWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-35156) CVE-2023-35156 CWE-707 CWE-707 Medium XWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-35157) CVE-2023-35157 CWE-707 CWE-707 Medium XWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-35159) CVE-2023-35159 CWE-707 CWE-707 Medium XWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-35160) CVE-2023-35160 CWE-707 CWE-707 Medium XWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-35161) CVE-2023-35161 CWE-707 CWE-707 Medium XWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-35162) CVE-2023-35162 CWE-707 CWE-707 Medium XWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-36477) CVE-2023-36477 CWE-707 CWE-707 Medium XWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-40176) CVE-2023-40176 CWE-707 CWE-707 Medium XWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-45134) CVE-2023-45134 CWE-707 CWE-707 Critical XWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-45136) CVE-2023-45136 CWE-707 CWE-707 Critical XWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-45137) CVE-2023-45137 CWE-707 CWE-707 Medium XWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-46732) CVE-2023-46732 CWE-707 CWE-707 Medium XWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-50722) CVE-2023-50722 CWE-707 CWE-707 High XWiki Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-43400) CVE-2024-43400 CWE-707 CWE-707 Medium XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2020-15171) CVE-2020-15171 CWE-138 CWE-138 Medium XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2020-15252) CVE-2020-15252 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2022-23616) CVE-2022-23616 CWE-138 CWE-138 Medium XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-27479) CVE-2023-27479 CWE-138 CWE-138 Critical XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-29510) CVE-2023-29510 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-29512) CVE-2023-29512 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-29514) CVE-2023-29514 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-29516) CVE-2023-29516 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-29518) CVE-2023-29518 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-29519) CVE-2023-29519 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-29521) CVE-2023-29521 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-29522) CVE-2023-29522 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-29523) CVE-2023-29523 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-29524) CVE-2023-29524 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-29525) CVE-2023-29525 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-29526) CVE-2023-29526 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-29527) CVE-2023-29527 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-36469) CVE-2023-36469 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2023-36470) CVE-2023-36470 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2010-4641) CVE-2010-4641 CWE-138 CWE-138 High XWiki Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2021-21380) CVE-2021-21380 CWE-138 CWE-138 High XWiki Improper Preservation of Permissions Vulnerability (CVE-2021-21379) CVE-2021-21379 CWE-281 CWE-281 Medium XWiki Improper Privilege Management Vulnerability (CVE-2023-26475) CVE-2023-26475 CWE-269 CWE-269 High XWiki Improper Privilege Management Vulnerability (CVE-2023-34465) CVE-2023-34465 CWE-269 CWE-269 High XWiki Improper Restriction of Excessive Authentication Attempts Vulnerability (CVE-2023-26476) CVE-2023-26476 CWE-307 CWE-307 High XWiki Improper Restriction of XML External Entity Reference Vulnerability (CVE-2023-27480) CVE-2023-27480 CWE-611 CWE-611 High XWiki Inadequate Encryption Strength Vulnerability (CVE-2022-29161) CVE-2022-29161 CWE-326 CWE-326 Critical XWiki Incomplete Cleanup Vulnerability (CVE-2023-36468) CVE-2023-36468 CWE-459 CWE-459 High XWiki Incorrect Authorization Vulnerability (CVE-2021-32620) CVE-2021-32620 CWE-863 CWE-863 Medium XWiki Incorrect Authorization Vulnerability (CVE-2022-23615) CVE-2022-23615 CWE-863 CWE-863 Medium XWiki Incorrect Authorization Vulnerability (CVE-2023-26056) CVE-2023-26056 CWE-863 CWE-863 Medium XWiki Incorrect Authorization Vulnerability (CVE-2023-32069) CVE-2023-32069 CWE-863 CWE-863 High XWiki Incorrect Authorization Vulnerability (CVE-2023-46244) CVE-2023-46244 CWE-863 CWE-863 High XWiki Incorrect Authorization Vulnerability (CVE-2023-50732) CVE-2023-50732 CWE-863 CWE-863 Medium XWiki Incorrect Authorization Vulnerability (CVE-2024-38369) CVE-2024-38369 CWE-863 CWE-863 Medium XWiki Incorrect Permission Assignment for Critical Resource Vulnerability (CVE-2021-32729) CVE-2021-32729 CWE-732 CWE-732 Medium XWiki Incorrect Use of Privileged APIs Vulnerability (CVE-2022-24821) CVE-2022-24821 CWE-648 CWE-648 High XWiki Insufficiently Protected Credentials Vulnerability (CVE-2022-41933) CVE-2022-41933 CWE-522 CWE-522 Medium XWiki Missing Authentication for Critical Function Vulnerability (CVE-2022-24820) CVE-2022-24820 CWE-306 CWE-306 Medium XWiki Missing Authorization Vulnerability (CVE-2022-23617) CVE-2022-23617 CWE-862 CWE-862 Medium XWiki Missing Authorization Vulnerability (CVE-2022-31167) CVE-2022-31167 CWE-862 CWE-862 Medium XWiki Missing Authorization Vulnerability (CVE-2022-36091) CVE-2022-36091 CWE-862 CWE-862 High XWiki Missing Authorization Vulnerability (CVE-2022-41929) CVE-2022-41929 CWE-862 CWE-862 Medium XWiki Missing Authorization Vulnerability (CVE-2022-41930) CVE-2022-41930 CWE-862 CWE-862 High XWiki Missing Authorization Vulnerability (CVE-2022-41937) CVE-2022-41937 CWE-862 CWE-862 High XWiki Missing Authorization Vulnerability (CVE-2023-37910) CVE-2023-37910 CWE-862 CWE-862 High XWiki Missing Authorization Vulnerability (CVE-2023-41046) CVE-2023-41046 CWE-862 CWE-862 Medium XWiki Missing Authorization Vulnerability (CVE-2024-43401) CVE-2024-43401 CWE-862 CWE-862 High XWiki Other Vulnerability (CVE-2022-36090) CVE-2022-36090 High XWiki Other Vulnerability (CVE-2022-41935) CVE-2022-41935 Medium XWiki Other Vulnerability (CVE-2023-26478) CVE-2023-26478 High XWiki Other Vulnerability (CVE-2023-29507) CVE-2023-29507 High XWiki Out-of-bounds Write Vulnerability (CVE-2023-26470) CVE-2023-26470 CWE-787 CWE-787 High XWiki Permissions, Privileges, and Access Controls Vulnerability (CVE-2006-7223) CVE-2006-7223 CWE-264 CWE-264 Medium XWikiplatform Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2024-31985) CVE-2024-31985 CWE-352 CWE-352 Medium XWikiplatform Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2024-31986) CVE-2024-31986 CWE-352 CWE-352 High XWikiplatform Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2024-31988) CVE-2024-31988 CWE-352 CWE-352 High XWikiplatform CVE-2025-32972 Vulnerability (CVE-2025-32972) CVE-2025-32972 Medium XWikiplatform CVE-2025-48063 Vulnerability (CVE-2025-48063) CVE-2025-48063 High 1...304305306307308 305 / 308