112554 | Permissive Content Security Policy Detected | Web App Scanning | HTTP Security Header | 4/22/2024 | low |
112552 | Deprecated Content Security Policy | Web App Scanning | HTTP Security Header | 4/22/2024 | low |
98142 | Selenium Authentication Failed | Web App Scanning | Authentication & Session | 4/9/2024 | info |
98141 | Selenium Authentication Succeeded | Web App Scanning | Authentication & Session | 4/9/2024 | info |
98140 | Cookie Authentication Failed | Web App Scanning | Authentication & Session | 4/9/2024 | info |
98139 | Cookie Authentication Succeeded | Web App Scanning | Authentication & Session | 4/9/2024 | info |
98035 | Login Form Authentication Succeeded | Web App Scanning | Authentication & Session | 4/9/2024 | info |
98034 | Login Form Authentication Failed | Web App Scanning | Authentication & Session | 4/9/2024 | info |
113013 | Bearer Token Authentication Failed | Web App Scanning | Authentication & Session | 4/9/2024 | info |
113012 | Bearer Token Authentication Succeeded | Web App Scanning | Authentication & Session | 4/9/2024 | info |
113011 | API Key Authentication Failed | Web App Scanning | Authentication & Session | 4/9/2024 | info |
113010 | API Key Authentication Succeeded | Web App Scanning | Authentication & Session | 4/9/2024 | info |
114134 | HTML/CSS Injection | Web App Scanning | Injection | 4/3/2024 | medium |
98642 | Magento Administration Panel Login Form Detected | Web App Scanning | Web Applications | 4/2/2024 | medium |
114043 | Adobe ColdFusion Improper Access Control | Web App Scanning | Component Vulnerability | 4/2/2024 | high |
98648 | Missing 'Content-Type' Header | Web App Scanning | HTTP Security Header | 3/25/2024 | low |
98618 | HTTP Header Information Disclosure | Web App Scanning | HTTP Security Header | 3/25/2024 | low |
98527 | Missing Referrer Policy | Web App Scanning | HTTP Security Header | 3/25/2024 | info |
98526 | Missing Permissions Policy | Web App Scanning | HTTP Security Header | 3/25/2024 | info |
98060 | Missing 'X-Frame-Options' Header | Web App Scanning | HTTP Security Header | 3/25/2024 | low |
98057 | Insecure 'Access-Control-Allow-Origin' Header | Web App Scanning | HTTP Security Header | 3/25/2024 | low |
114224 | Serialized Data Detected | Web App Scanning | Web Applications | 3/25/2024 | info |
114042 | Adobe ColdFusion Remote Code Execution | Web App Scanning | Component Vulnerability | 3/25/2024 | critical |
113333 | Duplicate HTTP Headers Detected | Web App Scanning | HTTP Security Header | 3/25/2024 | info |
112555 | Report Only Content Security Policy Detected | Web App Scanning | HTTP Security Header | 3/25/2024 | info |
112553 | Missing 'Cache-Control' Header | Web App Scanning | HTTP Security Header | 3/25/2024 | low |
112551 | Missing Content Security Policy | Web App Scanning | HTTP Security Header | 3/25/2024 | low |
112535 | HTTP Strict Transport Security Policy Detected | Web App Scanning | HTTP Security Header | 3/25/2024 | info |
112529 | Missing 'X-Content-Type-Options' Header | Web App Scanning | HTTP Security Header | 3/25/2024 | low |
112527 | Disabled 'X-XSS-Protection' Header (deprecated) | Web App Scanning | HTTP Security Header | 3/25/2024 | info |
98056 | Missing HTTP Strict Transport Security Policy | Web App Scanning | HTTP Security Header | 3/18/2024 | medium |
112543 | HTTPS Not Detected | Web App Scanning | SSL/TLS | 3/13/2024 | high |
112295 | Apache Tomcat 9.0.0.M1 < 9.0.0.M22 Multiple Vulnerabilities | Web App Scanning | Component Vulnerability | 3/13/2024 | high |
98607 | Ultimate Member Plugin for WordPress < 2.0.46 Multiple Vulnerabilities | Web App Scanning | Component Vulnerability | 3/6/2024 | medium |
113075 | Apache Log4j Remote Code Execution (Log4Shell) | Web App Scanning | Component Vulnerability | 3/6/2024 | critical |
98047 | Allowed HTTP Methods | Web App Scanning | Web Applications | 2/27/2024 | info |
114214 | ConnectWise ScreenConnect < 23.9.8 Authentication Bypass | Web App Scanning | Component Vulnerability | 2/27/2024 | critical |
114145 | Apache OFBiz Authentication Bypass | Web App Scanning | Component Vulnerability | 2/21/2024 | critical |
113580 | Web Cache Deception | Web App Scanning | Web Applications | 2/21/2024 | high |
112705 | Oracle WebLogic 10.3.6.0.0 / 12.1.3.0.0 / 12.2.1.4.0 / 14.1.1.0.0 Authentication Bypass | Web App Scanning | Component Vulnerability | 2/21/2024 | critical |
114203 | Ivanti Connect Secure 9.x / 22.x XML External Entity | Web App Scanning | Component Vulnerability | 2/19/2024 | medium |
114164 | Stripe Payment Plugin for WooCommerce Plugin for WordPress < 3.8.0 SQL Injection | Web App Scanning | Component Vulnerability | 2/15/2024 | high |
114122 | Appwrite Server-Side Request Forgery | Web App Scanning | Component Vulnerability | 2/15/2024 | high |
114027 | WP Fastest Cache Plugin for WordPress < 1.1.3 Multiple Vulnerabilities | Web App Scanning | Component Vulnerability | 2/15/2024 | medium |
113237 | PHP Object Deserialization | Web App Scanning | Web Applications | 2/8/2024 | critical |
112614 | Server-Side Template Injection | Web App Scanning | Injection | 2/8/2024 | high |
98200 | Drupal Administration Panel Login Form Detected | Web App Scanning | Web Applications | 2/2/2024 | medium |
98145 | Selenium Crawl Failed | Web App Scanning | General | 2/2/2024 | info |
98143 | Selenium Crawl Succeeded | Web App Scanning | General | 2/2/2024 | info |
98097 | Backdoor Detection | Web App Scanning | Web Servers | 2/2/2024 | critical |