Invicti maintains Acunetix, a web application security scanner that automates vulnerability discovery across client applications and services. The vendor's disclosed vulnerability footprint centers on improper neutralization of formula elements in CSV exports, reflecting a narrow scope tied to the tool's reporting and data-handling mechanisms. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Invicti over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-29315HIGH Invicti Acunetix before 14 allows CSV injection via the Description field on the Add Targets page, if the Export CSV feature is used. | Apr 19, 2022 | 8.8 | 27 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Invicti.
Media articles that mention a CVE ID that affects a product developed by Invicti — matched by CVE ID, not by vendor name.