Vulnerabilities
8 total findings
| Severity | Title | Asset | CVSS | Status | Found | |
|---|---|---|---|---|---|---|
| critical | SQL Injection in User Authentication Endpoint CVE-2024-1234 | api.example.com/auth/login | 9.8 | Open | 2 days ago | |
| critical | Remote Code Execution via Deserialization CVE-2024-5678 | app.example.com/api/parse | 9.0 | Remediating | 5 days ago | |
| high | Cross-Site Scripting (Reflected) in Search | www.example.com/search | 7.4 | Open | 1 day ago | |
| high | SSRF via Image Upload Feature | upload.example.com/avatar | 8.1 | Open | about 12 hours ago | |
| high | Exposed Admin Panel Without Authentication | admin.example.com | 8.6 | Open | about 4 hours ago | |
| medium | Weak SSL/TLS Configuration (TLS 1.0 Enabled) | mail.example.com:443 | 5.3 | Open | 10 days ago | |
| critical | MongoDB Exposed Without Authentication | 10.0.0.45:27017 | 9.8 | Open | about 2 hours ago | |
| low | Missing HTTP Security Headers | www.example.com | 3.1 | Open | 15 days ago |
Showing 1–8 of 8