Severity Critical High Medium Low Informational Vulnerability Categories Abuse Of Functionality Acumonitor Api Bfla Api Bola Api Broken Auth Api Broken Object Prop Auth Api Dos Api Improper Inventory Management Api Misconfiguration Api Ssrf Arbitrary File Creation Arbitrary File Read Authentication Bypass BOLA Bruteforce Possible Buffer Overflow CSRF CSTI Code Execution Configuration Crlf Injection Deepscan Default Credentials Denial Of Service Dev Files Directory Listing Directory Traversal Eli Injection Error Handling File Inclusion Http Parameter Pollution Http Response Splitting Information Disclosure Insecure Admin Access Insecure Deserialization Internal Ip Disclosure Known Vulnerabilities LLM Ldap Injection Llm Excessive Agency Llm Insecure Output Handling Llm Prompt Injection Llm Prompt Leakage Llm Sensitive Information Disclosure Malware Missing Update Privilege Escalation SSRF Sensitive Data Not Over Ssl Server Side Template Injection Session Fixation Source Code Disclosure Sql Injection Test Files Unauthenticated File Upload Url Redirection Weak Credentials Weak Crypto XFS XSS XXE Xpath Injection Vulnerability Name CVE CWE CWE Severity XWiki Improper Privilege Management Vulnerability (CVE-2023-26475) CVE-2023-26475 CWE-269 CWE-269 High XWiki Improper Privilege Management Vulnerability (CVE-2023-34465) CVE-2023-34465 CWE-269 CWE-269 High XWiki Improper Restriction of Excessive Authentication Attempts Vulnerability (CVE-2023-26476) CVE-2023-26476 CWE-307 CWE-307 High XWiki Improper Restriction of XML External Entity Reference Vulnerability (CVE-2023-27480) CVE-2023-27480 CWE-611 CWE-611 High XWiki Incomplete Cleanup Vulnerability (CVE-2023-36468) CVE-2023-36468 CWE-459 CWE-459 High XWiki Incorrect Authorization Vulnerability (CVE-2023-32069) CVE-2023-32069 CWE-863 CWE-863 High XWiki Incorrect Authorization Vulnerability (CVE-2023-46244) CVE-2023-46244 CWE-863 CWE-863 High XWiki Incorrect Use of Privileged APIs Vulnerability (CVE-2022-24821) CVE-2022-24821 CWE-648 CWE-648 High XWiki Missing Authorization Vulnerability (CVE-2022-36091) CVE-2022-36091 CWE-862 CWE-862 High XWiki Missing Authorization Vulnerability (CVE-2022-41930) CVE-2022-41930 CWE-862 CWE-862 High XWiki Missing Authorization Vulnerability (CVE-2022-41937) CVE-2022-41937 CWE-862 CWE-862 High XWiki Missing Authorization Vulnerability (CVE-2023-37910) CVE-2023-37910 CWE-862 CWE-862 High XWiki Missing Authorization Vulnerability (CVE-2024-43401) CVE-2024-43401 CWE-862 CWE-862 High XWiki Other Vulnerability (CVE-2022-36090) CVE-2022-36090 High XWiki Other Vulnerability (CVE-2023-26478) CVE-2023-26478 High XWiki Other Vulnerability (CVE-2023-29507) CVE-2023-29507 High XWiki Out-of-bounds Write Vulnerability (CVE-2023-26470) CVE-2023-26470 CWE-787 CWE-787 High XWikiplatform Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2025-66473) CVE-2025-66473 CWE-770 CWE-770 High XWikiplatform Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2026-40104) CVE-2026-40104 CWE-770 CWE-770 High XWikiplatform Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2024-31986) CVE-2024-31986 CWE-352 CWE-352 High XWikiplatform Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2024-31988) CVE-2024-31988 CWE-352 CWE-352 High XWikiplatform CVE-2025-48063 Vulnerability (CVE-2025-48063) CVE-2025-48063 High XWikiplatform CVE-2025-55749 Vulnerability (CVE-2025-55749) CVE-2025-55749 High XWikiplatform Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2024-31465) CVE-2024-31465 CWE-94 CWE-94 High XWikiplatform Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2024-31984) CVE-2024-31984 CWE-94 CWE-94 High XWikiplatform Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2024-37899) CVE-2024-37899 CWE-94 CWE-94 High XWikiplatform Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2024-37901) CVE-2024-37901 CWE-94 CWE-94 High XWikiplatform Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2024-55877) CVE-2024-55877 CWE-94 CWE-94 High XWikiplatform Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2025-49581) CVE-2025-49581 CWE-94 CWE-94 High XWikiplatform Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2025-51991) CVE-2025-51991 CWE-94 CWE-94 High XWikiplatform Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2025-32968) CVE-2025-32968 CWE-138 CWE-138 High XWikiplatform Improper Removal of Sensitive Information Before Storage or Transfer Vulnerability (CVE-2025-58049) CVE-2025-58049 CWE-212 CWE-212 High XWikiplatform Incorrect Authorization Vulnerability (CVE-2024-55662) CVE-2024-55662 CWE-863 CWE-863 High XWikiplatform Incorrect Authorization Vulnerability (CVE-2025-29924) CVE-2025-29924 CWE-863 CWE-863 High XWikiplatform Incorrect Authorization Vulnerability (CVE-2025-49586) CVE-2025-49586 CWE-863 CWE-863 High XWikiplatform Incorrect Authorization Vulnerability (CVE-2025-53836) CVE-2025-53836 CWE-863 CWE-863 High XWikiplatform Incorrect Privilege Assignment Vulnerability (CVE-2025-49580) CVE-2025-49580 CWE-266 CWE-266 High XWikiplatform Insertion of Sensitive Information Into Sent Data Vulnerability (CVE-2025-49584) CVE-2025-49584 CWE-201 CWE-201 High XWikiplatform Insufficient UI Warning of Dangerous Operations Vulnerability (CVE-2025-49582) CVE-2025-49582 CWE-357 CWE-357 High XWikiplatform Insufficient UI Warning of Dangerous Operations Vulnerability (CVE-2025-49585) CVE-2025-49585 CWE-357 CWE-357 High XWikiplatform Insufficient UI Warning of Dangerous Operations Vulnerability (CVE-2025-49587) CVE-2025-49587 CWE-357 CWE-357 High XWikiplatform Missing Authorization Vulnerability (CVE-2024-31981) CVE-2024-31981 CWE-862 CWE-862 High XWikiplatform Missing Authorization Vulnerability (CVE-2024-31983) CVE-2024-31983 CWE-862 CWE-862 High XWikiplatform Missing Authorization Vulnerability (CVE-2024-31987) CVE-2024-31987 CWE-862 CWE-862 High XWikiplatform Missing Authorization Vulnerability (CVE-2024-31997) CVE-2024-31997 CWE-862 CWE-862 High XWikiplatform Missing Authorization Vulnerability (CVE-2024-55879) CVE-2024-55879 CWE-862 CWE-862 High XWikiplatform Missing Authorization Vulnerability (CVE-2025-23025) CVE-2025-23025 CWE-862 CWE-862 High XWiki Platform RCE (CVE-2023-37462) CVE-2023-37462 CWE-95 CWE-95 High XWikiplatform Relative Path Traversal Vulnerability (CVE-2025-55748) CVE-2025-55748 CWE-23 CWE-23 High XWiki Server-Side Request Forgery (SSRF) Vulnerability (CVE-2023-48240) CVE-2023-48240 CWE-918 CWE-918 High XWiki Weak Password Recovery Mechanism for Forgotten Password Vulnerability (CVE-2022-23619) CVE-2022-23619 CWE-640 CWE-640 High YetiForce CRM Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2022-0269) CVE-2022-0269 CWE-352 CWE-352 High YOURLS Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2022-0088) CVE-2022-0088 CWE-352 CWE-352 High YOURLS Improper Restriction of Rendered UI Layers or Frames Vulnerability (CVE-2021-3734) CVE-2021-3734 CWE-1021 CWE-1021 High Zabbix 1.8.x-2.2.x Local File Inclusion via XXE Attack CWE-611 CWE-611 High Zabbix 2.0.8 SQL injection CVE-2013-5743 CWE-89 CWE-89 High ZenCart Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2017-11675) CVE-2017-11675 CWE-94 CWE-94 High ZenCart Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2021-3291) CVE-2021-3291 CWE-138 CWE-138 High ZenCart Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2009-2254) CVE-2009-2254 CWE-138 CWE-138 High ZenCart Inclusion of Functionality from Untrusted Control Sphere Vulnerability (CVE-2024-5762) CVE-2024-5762 CWE-829 CWE-829 High ZenCart Other Vulnerability (CVE-2009-4323) CVE-2009-4323 High Zend framework configuration file information disclosure CWE-538 CWE-538 High Zend Framework local file disclosure via XXE injection CVE-2012-3363 CVE-2015-5161 CWE-611 CWE-611 High Zenphoto Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2020-5593) CVE-2020-5593 CWE-138 CWE-138 High Zenphoto Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2007-6666) CVE-2007-6666 CWE-138 CWE-138 High Zenphoto Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2009-4566) CVE-2009-4566 CWE-138 CWE-138 High Zenphoto Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2010-4906) CVE-2010-4906 CWE-138 CWE-138 High Zenphoto Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2015-5591) CVE-2015-5591 CWE-138 CWE-138 High Zenphoto Improper Privilege Management Vulnerability (CVE-2018-0610) CVE-2018-0610 CWE-269 CWE-269 High Zenphoto Other Vulnerability (CVE-2007-0616) CVE-2007-0616 High Zenphoto Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2020-36079) CVE-2020-36079 CWE-434 CWE-434 High Zimbra Collaboration LFI (CVE-2025-68645) CVE-2025-68645 CWE-22 CWE-22 High Zimbra Collaboration Suite SSRF (CVE-2020-7796) CVE-2020-7796 CWE-918 CWE-918 High ZK Framework AuUploader Information Disclosure (CVE-2022-36537) CVE-2022-36537 CWE-200 CWE-200 High Zope Web Application Server CVE-2011-2528 Vulnerability (CVE-2011-2528) CVE-2011-2528 High 1...174175176 175 / 176