Severity Critical High Medium Low Informational Vulnerability Categories Abuse Of Functionality Acumonitor Arbitrary File Creation Authentication Bypass Bruteforce Possible Buffer Overflow CSRF CSTI Citrix Gateway Open Redirect And XSS Code Execution Configuration Crlf Injection Deepscan Default Credentials Denial-of-service Dev Files Directory Listing Directory Traversal Eli Injection Error Handling File Inclusion Http Parameter Pollution Http Response Splitting Information Disclosure Insecure Admin Access Insecure Deserialization Internal Ip Disclosure Known Vulnerabilities Ldap Injection Malware Missing Update Privilege Escalation SSRF Sensitive Data Not Over Ssl Server Side Template Injection Session Fixation Source Code Disclosure Sql Injection Test Files Unauthenticated File Upload Url Redirection Weak Credentials Weak Crypto XFS XSS XXE Xpath Injection Vulnerability Name CVE CWE CWE Severity WordPress CVE-2011-3122 Vulnerability (CVE-2011-3122) CVE-2011-3122 Critical WordPress CVE-2011-3125 Vulnerability (CVE-2011-3125) CVE-2011-3125 Critical WordPress CVE-2012-2399 Vulnerability (CVE-2012-2399) CVE-2012-2399 Critical WordPress CVE-2012-2400 Vulnerability (CVE-2012-2400) CVE-2012-2400 Critical WordPress CVE-2020-28039 Vulnerability (CVE-2020-28039) CVE-2020-28039 Critical WordPress Deserialization of Untrusted Data Vulnerability (CVE-2018-20148) CVE-2018-20148 CWE-502 CWE-502 Critical WordPress Deserialization of Untrusted Data Vulnerability (CVE-2020-28032) CVE-2020-28032 CWE-502 CWE-502 Critical WordPress Deserialization of Untrusted Data Vulnerability (CVE-2020-36326) CVE-2020-36326 CWE-502 CWE-502 Critical WordPress Improper Input Validation Vulnerability (CVE-2008-2392) CVE-2008-2392 CWE-20 CWE-20 Critical WordPress Improper Input Validation Vulnerability (CVE-2019-20041) CVE-2019-20041 CWE-20 CWE-20 Critical WordPress Improper Input Validation Vulnerability (CVE-2020-28037) CVE-2020-28037 CWE-20 CWE-20 Critical WordPress Improper Input Validation Vulnerability (CVE-2020-35539) CVE-2020-35539 CWE-20 CWE-20 Critical WordPress Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2008-4769) CVE-2008-4769 CWE-22 CWE-22 Critical WordPress Improper Neutralization of Special Elements used in a Command ('Command Injection') Vulnerability (CVE-2016-10033) CVE-2016-10033 CWE-138 CWE-138 Critical WordPress Improper Neutralization of Special Elements used in a Command ('Command Injection') Vulnerability (CVE-2016-10045) CVE-2016-10045 CWE-138 CWE-138 Critical WordPress Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2008-4796) CVE-2008-4796 CWE-138 CWE-138 Critical WordPress Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-5611) CVE-2017-5611 CWE-138 CWE-138 Critical WordPress Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-14723) CVE-2017-14723 CWE-138 CWE-138 Critical WordPress Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-16510) CVE-2017-16510 CWE-138 CWE-138 Critical WordPress Improper Privilege Management Vulnerability (CVE-2020-28035) CVE-2020-28035 CWE-269 CWE-269 Critical WordPress Improper Privilege Management Vulnerability (CVE-2020-28036) CVE-2020-28036 CWE-269 CWE-269 Critical WordPress Other Vulnerability (CVE-2021-44223) CVE-2021-44223 Critical WordPress Permissions, Privileges, and Access Controls Vulnerability (CVE-2009-2853) CVE-2009-2853 CWE-264 CWE-264 Critical WordPress Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-3129) CVE-2011-3129 CWE-264 CWE-264 Critical WordPress Server-Side Request Forgery (SSRF) Vulnerability (CVE-2019-17669) CVE-2019-17669 CWE-918 CWE-918 Critical WordPress Server-Side Request Forgery (SSRF) Vulnerability (CVE-2019-17670) CVE-2019-17670 CWE-918 CWE-918 Critical WS_FTP AHT Deserialization RCE (CVE-2023-40044) CWE-502 CWE-502 Critical XML entity injection CWE-611 CWE-611 Critical XML external entity injection CWE-611 CWE-611 Critical XML external entity injection (variant) CWE-611 CWE-611 Critical XML external entity injection and XML injection CWE-611 CWE-611 Critical XML External Entity Injection via external file CWE-611 CWE-611 Critical XML external entity injection via File Upload CWE-611 CWE-611 Critical XOOPS Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-36217) CVE-2023-36217 CWE-707 CWE-707 Critical XOOPS Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-11174) CVE-2017-11174 CWE-138 CWE-138 Critical YOURLS Access of Resource Using Incompatible Type ('Type Confusion') Vulnerability (CVE-2019-14537) CVE-2019-14537 CWE-843 CWE-843 Critical ZenCart Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2015-8352) CVE-2015-8352 CWE-22 CWE-22 Critical ZenCart Permissions, Privileges, and Access Controls Vulnerability (CVE-2006-0697) CVE-2006-0697 CWE-264 CWE-264 Critical Zikula Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2014-2293) CVE-2014-2293 CWE-94 CWE-94 Critical Zikula Improper Neutralization of Special Elements used in a Command ('Command Injection') Vulnerability (CVE-2016-9835) CVE-2016-9835 CWE-138 CWE-138 Critical Zope Web Application Server CVE-2011-3587 Vulnerability (CVE-2011-3587) CVE-2011-3587 Critical Zope Web Application Server Other Vulnerability (CVE-2000-0062) CVE-2000-0062 Critical 1...1314151617 17 / 17