Known Vulnerabilities for Web Application Firewall by Miniorange
Listed below are 10 of the newest known vulnerabilities associated with "Web Application Firewall" by "Miniorange".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-61718 json | bunkerweb is an Open-source and next-generation Web Application Firewall (WAF). From 1.6.2 until 1.6.12, the BunkerWeb web UI... | Not Provided | 2026-07-16 | 2026-07-17 |
| CVE-2026-54728 json | bunkerweb is an Open-source and next-generation Web Application Firewall (WAF). Prior to BunkerWeb 1.6.12 and BunkerWeb PRO 0... | Not Provided | 2026-07-16 | 2026-07-17 |
| CVE-2026-52761 json | ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and Nginx. From 3.0.0 thr... | Not Provided | 2026-07-10 | 2026-07-13 |
| CVE-2026-52747 json | ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and Nginx. Prior to 3.0.1... | Not Provided | 2026-07-10 | 2026-07-13 |
| CVE-2026-42268 json | ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and Nginx. From 3.0.0 to ... | Not Provided | 2026-05-12 | 2026-05-14 |
| CVE-2026-30923 json | ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and Nginx. Libmodsecurity... | Not Provided | 2026-05-05 | 2026-05-05 |
| CVE-2026-25621 json | A Reports application infrastructure vulnerability exists in Arista Edge Threat Management - Arista Next Generation Firewall ... | Not Provided | 2026-06-05 | 2026-06-05 |
| CVE-2026-25620 json | An encrypted password command injection vulnerability exists in the Captive Portal application framework of Arista Edge Threa... | Not Provided | 2026-06-05 | 2026-06-05 |
| CVE-2026-4770 json | Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in TR7 Cyber Defense... | Not Provided | 2026-07-02 | 2026-07-02 |
| CVE-2025-2418 json | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in TR7 Cyber Defense Inc. Web Application Firewall al... | Not Provided | 2026-02-16 | 2026-05-07 |