114232 | PHP Development Server < 7.4.22 源泄露 | Web App Scanning | Web Applications | 2025/8/11 | medium |
114699 | Moodle 4.3.x < 4.3.10 多个漏洞 | Web App Scanning | Component Vulnerability | 2025/7/31 | critical |
114129 | 机密数据泄露 | Web App Scanning | Data Exposure | 2025/7/28 | high |
113258 | OpenAPI 宽松输入验证 | Web App Scanning | Web Applications | 2025/7/28 | medium |
114902 | 不支持的 Bootstrap 版本 | Web App Scanning | Component Vulnerability | 2025/7/24 | critical |
114901 | Bootstrap 3.2.x <= 3.4.1 跨站脚本 | Web App Scanning | Component Vulnerability | 2025/7/24 | medium |
114900 | Bootstrap < 4.0.0 多个跨站脚本 | Web App Scanning | Component Vulnerability | 2025/7/24 | medium |
113310 | XPath 盲注(差异分析) | Web App Scanning | Injection | 2025/7/24 | high |
114790 | 已检测到 MCP 服务器 | Web App Scanning | Artificial Intelligence | 2025/7/22 | info |
114276 | 数据库连接字符串泄露 | Web App Scanning | Data Exposure | 2025/7/22 | high |
114029 | 检测到广为人知的 URI | Web App Scanning | Web Applications | 2025/7/18 | info |
98109 | 基于 DOM 的跨站脚本 (XSS) | Web App Scanning | Cross Site Scripting | 2025/7/10 | medium |
114885 | MCP 服务器 SSE DNS 重新绑定 | Web App Scanning | Artificial Intelligence | 2025/7/3 | medium |
114655 | 检测到 SimpleHelp | Web App Scanning | Component Vulnerability | 2025/7/3 | info |
114116 | XML 注入 | Web App Scanning | Injection | 2025/7/3 | high |
113369 | BackupBuddy Plugin for WordPress < 8.7.5 任意文件读取 | Web App Scanning | Component Vulnerability | 2025/7/3 | high |
112439 | 服务器端请求伪造 | Web App Scanning | Web Applications | 2025/7/3 | high |
114313 | 检测到 Flowise Chatflow | Web App Scanning | Artificial Intelligence | 2025/6/26 | info |
113057 | Microsoft Exchange Server 自动发现跨站脚本 | Web App Scanning | Component Vulnerability | 2025/6/24 | medium |
113900 | 跨站请求伪造标记验证绕过 | Web App Scanning | Cross Site Request Forgery | 2025/6/20 | medium |
114791 | MCP 服务器未经认证的访问 | Web App Scanning | Artificial Intelligence | 2025/6/18 | info |
98074 | 备份文件 | Web App Scanning | Data Exposure | 2025/6/17 | medium |
113195 | 检测到 Spring Boot 执行器 | Web App Scanning | Component Vulnerability | 2025/6/17 | info |
112290 | Apache Tomcat 9.0.0.M1 < 9.0.10 多个漏洞 | Web App Scanning | Component Vulnerability | 2025/6/17 | critical |
114784 | Citrix Netscaler 14.1.x < 14.1-25.53 信息泄露 | Web App Scanning | Component Vulnerability | 2025/6/6 | critical |
98008 | 检测到 Web 应用程序防火墙 | Web App Scanning | General | 2025/6/4 | info |
113908 | Advanced Custom Fields Pro for WordPress 6.0.x < 6.1.6 跨站脚本 | Web App Scanning | Component Vulnerability | 2025/6/4 | medium |
113906 | Advanced Custom Fields for WordPress 6.0.x < 6.1.6 跨站脚本 | Web App Scanning | Component Vulnerability | 2025/6/4 | medium |
112907 | 检测到 GraphQL 界面 | Web App Scanning | Web Applications | 2025/6/4 | info |
114795 | FortiOS 7.0.x < 7.0.13 / 7.2.x < 7.2.6 / 7.4.x < 7.4.2 远程代码执行 | Web App Scanning | Component Vulnerability | 2025/5/27 | critical |
98080 | 基于表单的文件上传 | Web App Scanning | Web Applications | 2025/5/22 | info |
114434 | Flask 弱密钥 | Web App Scanning | Web Applications | 2025/5/22 | high |
114006 | Web 缓存中毒拒绝服务 | Web App Scanning | Web Applications | 2025/5/22 | high |
98779 | 源代码被动泄露 | Web App Scanning | Data Exposure | 2025/5/16 | medium |
98648 | 缺少“Content-Type”标头 | Web App Scanning | HTTP Security Header | 2025/5/16 | low |
98623 | 主机标头注入 | Web App Scanning | Injection | 2025/5/16 | medium |
98056 | 缺少 HTTP 严格传输安全策略 | Web App Scanning | HTTP Security Header | 2025/5/16 | medium |
114166 | 检测到 SOAP API | Web App Scanning | Web Applications | 2025/5/16 | info |
113973 | 检测到 Web Services Description Language (WSDL) 文件 | Web App Scanning | Web Applications | 2025/5/16 | info |
113943 | 泄露的中国香港地区身份号码 | Web App Scanning | Data Exposure | 2025/5/16 | medium |
113373 | Atlassian Bitbucket 远程代码执行 | Web App Scanning | Component Vulnerability | 2025/5/16 | high |
113217 | Spring Framework < 5.2.20/5.3.x < 5.3.18 远程代码执行漏洞 (Spring4Shell) | Web App Scanning | Component Vulnerability | 2025/5/16 | critical |
114615 | 用户名泄露 | Web App Scanning | Data Exposure | 2025/4/29 | low |
114357 | 检测到 Polyfill | Web App Scanning | Component Vulnerability | 2025/4/29 | medium |
98125 | 本地文件包含 | Web App Scanning | File Inclusion | 2025/4/17 | high |
98123 | 操作系统命令注入 | Web App Scanning | Code Execution | 2025/4/17 | critical |
98100 | 路径遍历 | Web App Scanning | Web Applications | 2025/4/17 | high |
114168 | Jenkins < 2.442/ < LTS 2.426.3 任意文件读取 | Web App Scanning | Component Vulnerability | 2025/4/17 | critical |
113634 | 服务器端包含注入 | Web App Scanning | Injection | 2025/4/17 | high |
112720 | Rails < 4.2.11.3/5.x < 5.0.1 远程代码执行 | Web App Scanning | Component Vulnerability | 2025/4/17 | high |