98091 | 混合资源检测 | Web App Scanning | Web Applications | 2025/9/19 | medium |
98008 | 检测到 Web 应用程序防火墙 | Web App Scanning | General | 2025/9/19 | info |
114947 | 用户枚举 | Web App Scanning | Data Exposure | 2025/9/19 | medium |
114502 | 跨站 WebSocket 劫持 | Web App Scanning | Web Applications | 2025/9/19 | high |
114923 | Microsoft SharePoint 远程代码执行 | Web App Scanning | Component Vulnerability | 2025/9/12 | critical |
113219 | 不安全的重定向链 | Web App Scanning | SSL/TLS | 2025/9/12 | medium |
98779 | 源代码被动泄露 | Web App Scanning | Data Exposure | 2025/9/3 | medium |
98101 | 响应拆分 | Web App Scanning | Web Applications | 2025/9/3 | medium |
98054 | 未经验证的重定向 | Web App Scanning | Web Applications | 2025/9/3 | medium |
114867 | 未限制 GraphQL 查询长度 | Web App Scanning | Web Applications | 2025/9/3 | medium |
114796 | 内容安全策略缺少“report-to” | Web App Scanning | HTTP Security Header | 2025/9/3 | low |
114232 | PHP Development Server < 7.4.22 源泄露 | Web App Scanning | Web Applications | 2025/9/3 | medium |
114129 | 机密数据泄露 | Web App Scanning | Data Exposure | 2025/9/3 | high |
113943 | 泄露的中国香港地区身份号码 | Web App Scanning | Data Exposure | 2025/9/3 | medium |
113059 | 检测到 OPcache UI | Web App Scanning | Web Applications | 2025/9/3 | medium |
114247 | 在未经身份验证的浏览器中发现身份验证检查模式 | Web App Scanning | Authentication & Session | 2025/8/29 | info |
114699 | Moodle 4.3.x < 4.3.10 多个漏洞 | Web App Scanning | Component Vulnerability | 2025/7/31 | critical |
113258 | OpenAPI 宽松输入验证 | Web App Scanning | Web Applications | 2025/7/28 | medium |
114902 | 不支持的 Bootstrap 版本 | Web App Scanning | Component Vulnerability | 2025/7/24 | critical |
114901 | Bootstrap 3.2.x <= 3.4.1 跨站脚本 | Web App Scanning | Component Vulnerability | 2025/7/24 | medium |
114900 | Bootstrap < 4.0.0 多个跨站脚本 | Web App Scanning | Component Vulnerability | 2025/7/24 | medium |
113310 | XPath 盲注(差异分析) | Web App Scanning | Injection | 2025/7/24 | high |
114790 | 已检测到 MCP 服务器 | Web App Scanning | Artificial Intelligence | 2025/7/22 | info |
114276 | 数据库连接字符串泄露 | Web App Scanning | Data Exposure | 2025/7/22 | high |
114029 | 检测到广为人知的 URI | Web App Scanning | Web Applications | 2025/7/18 | info |
98109 | 基于 DOM 的跨站脚本 (XSS) | Web App Scanning | Cross Site Scripting | 2025/7/10 | medium |
114885 | MCP 服务器 SSE DNS 重新绑定 | Web App Scanning | Artificial Intelligence | 2025/7/3 | medium |
114655 | 检测到 SimpleHelp | Web App Scanning | Component Vulnerability | 2025/7/3 | info |
114116 | XML 注入 | Web App Scanning | Injection | 2025/7/3 | high |
113369 | BackupBuddy Plugin for WordPress < 8.7.5 任意文件读取 | Web App Scanning | Component Vulnerability | 2025/7/3 | high |
112439 | 服务器端请求伪造 | Web App Scanning | Web Applications | 2025/7/3 | high |
114313 | 检测到 Flowise Chatflow | Web App Scanning | Artificial Intelligence | 2025/6/26 | info |
113057 | Microsoft Exchange Server 自动发现跨站脚本 | Web App Scanning | Component Vulnerability | 2025/6/24 | medium |
113900 | 跨站请求伪造标记验证绕过 | Web App Scanning | Cross Site Request Forgery | 2025/6/20 | medium |
114791 | MCP 服务器未经认证的访问 | Web App Scanning | Artificial Intelligence | 2025/6/18 | info |
98074 | 备份文件 | Web App Scanning | Data Exposure | 2025/6/17 | medium |
113195 | 检测到 Spring Boot 执行器 | Web App Scanning | Component Vulnerability | 2025/6/17 | info |
112290 | Apache Tomcat 9.0.0.M1 < 9.0.10 多个漏洞 | Web App Scanning | Component Vulnerability | 2025/6/17 | critical |
114784 | Citrix Netscaler 14.1.x < 14.1-25.53 信息泄露 | Web App Scanning | Component Vulnerability | 2025/6/6 | critical |
113908 | Advanced Custom Fields Pro for WordPress 6.0.x < 6.1.6 跨站脚本 | Web App Scanning | Component Vulnerability | 2025/6/4 | medium |
113906 | Advanced Custom Fields for WordPress 6.0.x < 6.1.6 跨站脚本 | Web App Scanning | Component Vulnerability | 2025/6/4 | medium |
112907 | 检测到 GraphQL 界面 | Web App Scanning | Web Applications | 2025/6/4 | info |
114795 | FortiOS 7.0.x < 7.0.13 / 7.2.x < 7.2.6 / 7.4.x < 7.4.2 远程代码执行 | Web App Scanning | Component Vulnerability | 2025/5/27 | critical |
98080 | 基于表单的文件上传 | Web App Scanning | Web Applications | 2025/5/22 | info |
114434 | Flask 弱密钥 | Web App Scanning | Web Applications | 2025/5/22 | high |
114006 | Web 缓存中毒拒绝服务 | Web App Scanning | Web Applications | 2025/5/22 | high |
98648 | 缺少“Content-Type”标头 | Web App Scanning | HTTP Security Header | 2025/5/16 | low |
98623 | 主机标头注入 | Web App Scanning | Injection | 2025/5/16 | medium |
98056 | 缺少 HTTP 严格传输安全策略 | Web App Scanning | HTTP Security Header | 2025/5/16 | medium |
114166 | 检测到 SOAP API | Web App Scanning | Web Applications | 2025/5/16 | info |