Conversation
|
🚨 SQL Injection Vulnerability #32 Severity: critical Description: Security vulnerability #32: SQL Injection Vulnerability found in test10.html at line 48. This vulnerability could allow attackers to compromise the application security. Proof of Concept: Finding ID: 9428bcb5-096f-435c-9dad-e96fcaad4ff3 |
|
🟡 Path Traversal #33 Severity: medium Description: Security vulnerability #33: Path Traversal found in index.html, at line 34. This vulnerability could allow attackers to compromise the application security. Proof of Concept: Finding ID: 97c017ba-76c0-4404-82c2-76ee1352357d |
|
🟡 Cross-Site Scripting (XSS) #34 Severity: medium Description: Security vulnerability #34: Cross-Site Scripting (XSS) found in index.html, at line 60. This vulnerability could allow attackers to compromise the application security. Proof of Concept: Finding ID: 618ff6fd-4a2c-472e-b4d8-e155ac55bac3 |
|
🟢 Path Traversal #35 Severity: low Description: Security vulnerability #35: Path Traversal found in test10.html at line 3. This vulnerability could allow attackers to compromise the application security. Proof of Concept: Finding ID: d93d8dba-a01e-4e8f-9b2a-d4920bef17d0 |
|
🚨 Insecure Direct Object Reference #36 Severity: critical Description: Security vulnerability #36: Insecure Direct Object Reference found in index.html, at line 87. This vulnerability could allow attackers to compromise the application security. Proof of Concept: Finding ID: 216120fa-106e-49eb-92e7-8b1d5567a341 |
|
🟡 Insecure Direct Object Reference #37 Severity: medium Description: Security vulnerability #37: Insecure Direct Object Reference found in index.html, at line 27. This vulnerability could allow attackers to compromise the application security. Proof of Concept: Finding ID: 379927d3-0106-4c36-9c1b-445a6f70783d |
|
🟢 Broken Authentication #38 Severity: low Description: Security vulnerability #38: Broken Authentication found in test10.html at line 84. This vulnerability could allow attackers to compromise the application security. Proof of Concept: Finding ID: 98bbd6ea-e6d9-4dfb-9d17-3162adb704ba |
|
🟢 Insecure postMessage without Origin Validation #39 Severity: low Description: Security vulnerability #39: Insecure postMessage without Origin Validation found in test10.html at line 20. This vulnerability could allow attackers to compromise the application security. Proof of Concept: Finding ID: 920cf05b-1383-4374-bd6e-e317dfd10e61 |
|
🟡 Cross-Site Scripting (XSS) #40 Severity: medium Description: Security vulnerability #40: Cross-Site Scripting (XSS) found in index.html, at line 1. This vulnerability could allow attackers to compromise the application security. Proof of Concept: Finding ID: 9ab5b767-721e-45d8-976c-5a0f70082c93 |
|
🟢 Server-Side Request Forgery (SSRF) #41 Severity: low Description: Security vulnerability #41: Server-Side Request Forgery (SSRF) found in test10.html at line 98. This vulnerability could allow attackers to compromise the application security. Proof of Concept: Finding ID: 95372428-ad20-4ba5-85c5-d402ed1f053e |
|
🔴 Insufficient Logging #42 Severity: high Description: Security vulnerability #42: Insufficient Logging found in index.html, at line 9. This vulnerability could allow attackers to compromise the application security. Proof of Concept: Finding ID: 48a6dec6-4f22-4022-a588-3ee4cb399b06 |
|
🟢 Using Components with Known Vulnerabilities #43 Severity: low Description: Security vulnerability #43: Using Components with Known Vulnerabilities found in test10.html at line 44. This vulnerability could allow attackers to compromise the application security. Proof of Concept: Finding ID: 44136142-cee2-45f4-8146-d482b00b2f2a |
|
🚨 Server-Side Request Forgery (SSRF) #44 Severity: critical Description: Security vulnerability #44: Server-Side Request Forgery (SSRF) found in test10.html at line 40. This vulnerability could allow attackers to compromise the application security. Proof of Concept: Finding ID: 6901c7b8-0cf8-449f-80e3-a2ce7f3fd8a4 |
|
🚨 Security Misconfiguration #45 Severity: critical Description: Security vulnerability #45: Security Misconfiguration found in test10.html at line 46. This vulnerability could allow attackers to compromise the application security. Proof of Concept: Finding ID: 483c7c81-f502-4151-b8c7-6c8b184c0b3c |
|
🚨 Cross-Site Request Forgery (CSRF) #46 Severity: critical Description: Security vulnerability #46: Cross-Site Request Forgery (CSRF) found in index.html, at line 57. This vulnerability could allow attackers to compromise the application security. Proof of Concept: Finding ID: 3929a2e3-0062-48a2-b1f2-2cb6f026a598 |
|
🟡 Command Injection #47 Severity: medium Description: Security vulnerability #47: Command Injection found in index.html, at line 12. This vulnerability could allow attackers to compromise the application security. Proof of Concept: Finding ID: c70aaf35-fbc5-4827-b798-be30773cb7d9 |
|
🚨 SQL Injection Vulnerability #48 Severity: critical Description: Security vulnerability #48: SQL Injection Vulnerability found in index.html, at line 88. This vulnerability could allow attackers to compromise the application security. Proof of Concept: Finding ID: 90d98995-9249-4d83-ab15-3a6537492900 |
|
🟡 Insecure Deserialization #49 Severity: medium Description: Security vulnerability #49: Insecure Deserialization found in index.html, at line 51. This vulnerability could allow attackers to compromise the application security. Proof of Concept: Finding ID: 9464e88e-bb43-42ad-ab9a-900c691efc71 |
|
🔴 Using Components with Known Vulnerabilities #50 Severity: high Description: Security vulnerability #50: Using Components with Known Vulnerabilities found in index.html, at line 74. This vulnerability could allow attackers to compromise the application security. Proof of Concept: Finding ID: 19d4e035-31f2-4f9c-9de3-7a8f55ce30e8 |
|
🟡 Insecure postMessage without Origin Validation #51 Severity: medium Description: Security vulnerability #51: Insecure postMessage without Origin Validation found in test10.html at line 19. This vulnerability could allow attackers to compromise the application security. Proof of Concept: Finding ID: 38c00685-1b12-4264-942c-efd78c6296d4 |
No description provided.