Severity Critical High Medium Low Informational Vulnerability Categories Abuse Of Functionality Acumonitor Arbitrary File Creation Arbitrary File Read Arbitrary File Write Authentication Bypass BOLA Bruteforce Possible Buffer Overflow CSRF CSTI Code Execution Configuration Crlf Injection Deepscan Default Credentials Denial-of-service Dev Files Directory Listing Directory Traversal Eli Injection Error Handling File Inclusion Http Parameter Pollution Http Response Splitting Information Disclosure Insecure Admin Access Insecure Deserialization Internal Ip Disclosure Known Vulnerabilitie Known Vulnerabilities Ldap Injection Malware Missing Update Path Traversal Privilege Escalation Remote Code Execution SSRF SSTI Sensitive Data Not Over Ssl Server Side Template Injection Session Fixation Source Code Disclosure Sql Injection Test Files Unauthenticated File Upload Url Redirection Weak Credentials Weak Crypto XFS XSS XXE Xpath Injection Vulnerability Name CVE CWE CWE Severity XWikiplatform Missing Authorization Vulnerability (CVE-2025-23025) CVE-2025-23025 CWE-862 CWE-862 High XWiki Platform RCE (CVE-2023-37462) CVE-2023-37462 CWE-74 CWE-74 High XWiki Server-Side Request Forgery (SSRF) Vulnerability (CVE-2023-48240) CVE-2023-48240 CWE-918 CWE-918 High XWiki Weak Password Recovery Mechanism for Forgotten Password Vulnerability (CVE-2022-23619) CVE-2022-23619 CWE-640 CWE-640 High YetiForce CRM Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2022-0269) CVE-2022-0269 CWE-352 CWE-352 High YOURLS Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2022-0088) CVE-2022-0088 CWE-352 CWE-352 High YOURLS Improper Restriction of Rendered UI Layers or Frames Vulnerability (CVE-2021-3734) CVE-2021-3734 CWE-1021 CWE-1021 High Zabbix 1.8.x-2.2.x Local File Inclusion via XXE Attack CWE-611 CWE-611 High Zabbix 2.0.8 SQL injection CVE-2013-5743 CWE-89 CWE-89 High ZenCart Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2017-11675) CVE-2017-11675 CWE-94 CWE-94 High ZenCart Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2021-3291) CVE-2021-3291 CWE-138 CWE-138 High ZenCart Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2009-2254) CVE-2009-2254 CWE-138 CWE-138 High ZenCart Inclusion of Functionality from Untrusted Control Sphere Vulnerability (CVE-2024-5762) CVE-2024-5762 CWE-829 CWE-829 High ZenCart Other Vulnerability (CVE-2009-4323) CVE-2009-4323 High Zend framework configuration file information disclosure CWE-538 CWE-538 High Zend Framework local file disclosure via XXE injection CVE-2012-3363 CVE-2015-5161 CWE-611 CWE-611 High Zenphoto Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2020-5593) CVE-2020-5593 CWE-138 CWE-138 High Zenphoto Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2007-6666) CVE-2007-6666 CWE-138 CWE-138 High Zenphoto Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2009-4566) CVE-2009-4566 CWE-138 CWE-138 High Zenphoto Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2010-4906) CVE-2010-4906 CWE-138 CWE-138 High Zenphoto Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2015-5591) CVE-2015-5591 CWE-138 CWE-138 High Zenphoto Improper Privilege Management Vulnerability (CVE-2018-0610) CVE-2018-0610 CWE-269 CWE-269 High Zenphoto Other Vulnerability (CVE-2007-0616) CVE-2007-0616 High Zenphoto Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2020-36079) CVE-2020-36079 CWE-434 CWE-434 High Zimbra Collaboration Suite SSRF (CVE-2020-7796) CVE-2020-7796 CWE-918 CWE-918 High ZK Framework AuUploader Information Disclosure (CVE-2022-36537) CVE-2022-36537 CWE-200 CWE-200 High Zope Web Application Server CVE-2011-2528 Vulnerability (CVE-2011-2528) CVE-2011-2528 High Zope Web Application Server Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2023-41050) CVE-2023-41050 CWE-200 CWE-200 High Zope Web Application Server Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2021-32633) CVE-2021-32633 CWE-22 CWE-22 High Zope Web Application Server Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2021-32674) CVE-2021-32674 CWE-22 CWE-22 High Zope Web Application Server Improperly Controlled Modification of Dynamically-Determined Object Attributes Vulnerability (CVE-2021-32811) CVE-2021-32811 CWE-915 CWE-915 High Zope Web Application Server Other Vulnerability (CVE-2000-0483) CVE-2000-0483 High Zope Web Application Server Other Vulnerability (CVE-2000-0725) CVE-2000-0725 High Zope Web Application Server Other Vulnerability (CVE-2000-1211) CVE-2000-1211 High Zope Web Application Server Other Vulnerability (CVE-2001-1227) CVE-2001-1227 High Zope Web Application Server Other Vulnerability (CVE-2001-1278) CVE-2001-1278 High Zope Web Application Server Other Vulnerability (CVE-2002-0170) CVE-2002-0170 High Zope Web Application Server Other Vulnerability (CVE-2002-0688) CVE-2002-0688 High Zope Web Application Server Other Vulnerability (CVE-2005-3323) CVE-2005-3323 High [Possible] Backup Source Code Detected CWE-538 CWE-538 High [Possible] Sublime SFTP Config File Detected CWE-200 CWE-200 High 1...165166167168169 169 / 169