Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2715▼ 529 respecto a la semana anterior
Críticas / altas1290▼ 220 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 276 respecto a la semana anterior
74 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Baja (2.1) | 0.32% | — | Montodel House-rental-managementAI | 21/6/2026 | 22/6/2026 | A flaw has been found in Montodel House-Rental-Management up to 90010017b81265eb1ef3810268909f7719a33863. This affects an unknown part of the file /index.php?page=houses. This manipulation of the argument ID causes sql injection. The attack is possible to be carried out remotely. The exploit has been published and may… | |
| Aplazada | Media (5.5) | 0.41% | — | Montodel House-rental-managementAI | 21/6/2026 | 23/6/2026 | A vulnerability was detected in Montodel House-Rental-Management up to 90010017b81265eb1ef3810268909f7719a33863. Affected by this issue is some unknown functionality of the file /login.php. The manipulation of the argument Username results in sql injection. The attack can be executed remotely. The exploit is now… | |
| Aplazada | Media (5.5) | 0.26% | — | Itsourcecode Online House Rental SystemAI | 1/6/2026 | 22/7/2026 | A vulnerability was detected in itsourcecode Online House Rental System 1.0. This impacts an unknown function of the file /manage_payment.php. The manipulation of the argument ID results in sql injection. It is possible to launch the attack remotely. The exploit is now public and may be used. | |
| Aplazada | Media (5.5) | 0.26% | — | Itsourcecode Online House Rental SystemAI | 1/6/2026 | 22/7/2026 | A security vulnerability has been detected in itsourcecode Online House Rental System 1.0. This affects an unknown function of the file /manage_tenant.php. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed publicly and may be used. | |
| Aplazada | Media (5.5) | 0.26% | — | Itsourcecode Online House Rental SystemAI | 1/6/2026 | 22/7/2026 | A weakness has been identified in itsourcecode Online House Rental System 1.0. The impacted element is an unknown function of the file /ajax.php?action=login. Executing a manipulation of the argument Username can lead to sql injection. The attack may be performed from remote. The exploit has been made available to the… | |
| Analizada | Baja (2) | 0.26% | — | Projectworlds House Rental AND Property Listing Project | 30/1/2026 | 17/6/2026 | A weakness has been identified in projectworlds House Rental and Property Listing 1.0. This vulnerability affects unknown code of the file /app/sms.php. This manipulation of the argument Message causes cross site scripting. It is possible to initiate the attack remotely. The exploit has been made available to the… | |
| Analizada | Media (5.5) | 0.42% | — | Projectworlds House Rental AND Property Listing Project | 7/1/2026 | 17/6/2026 | A flaw has been found in projectworlds House Rental and Property Listing 1.0. Impacted is an unknown function of the file /app/register.php?action=reg of the component Signup. This manipulation of the argument image causes unrestricted upload. Remote exploitation of the attack is possible. The exploit has been… | |
| Modificada | Baja (1.9) | 0.25% | — | Projectworlds House Rental AND Property Listing Project | 7/1/2026 | 17/6/2026 | A vulnerability was detected in projectworlds House Rental and Property Listing 1.0. This issue affects some unknown processing of the file /app/complaint.php. The manipulation of the argument Name results in cross site scripting. The attack may be launched remotely. The exploit is now public and may be used. | |
| Analizada | Baja (2) | 0.34% | — | Mayurik Best House Rental Management System | 7/11/2025 | 7/10/2026 | A vulnerability was determined in SourceCodester Best House Rental Management System 1.0. This affects the function delete_house of the file /admin_class.php. Executing manipulation of the argument ID can lead to sql injection. The attack may be performed from remote. The exploit has been publicly disclosed and may be… | |
| Analizada | Baja (2) | 0.41% | — | Mayurik Best House Rental Management System | 3/11/2025 | 17/6/2026 | A weakness has been identified in SourceCodester Best House Rental Management System 1.0. Impacted is the function delete_payment of the file /admin_class.php. This manipulation of the argument ID causes sql injection. The attack is possible to be carried out remotely. The exploit has been made available to the public… | |
| Analizada | Baja (2) | 0.41% | — | Mayurik Best House Rental Management System | 2/11/2025 | 17/6/2026 | A flaw has been found in SourceCodester Best House Rental Management System 1.0. Affected by this issue is the function save_tenant of the file /admin_class.php. Executing manipulation of the argument firstname can lead to sql injection. The attack can be launched remotely. The exploit has been published and may be… | |
| Analizada | Baja (2) | 0.41% | — | Mayurik Best House Rental Management System | 2/11/2025 | 17/6/2026 | A vulnerability was detected in SourceCodester Best House Rental Management System 1.0. Affected by this vulnerability is the function save_category of the file /admin_class.php. Performing manipulation of the argument Name results in sql injection. The attack can be initiated remotely. The exploit is now public and… | |
| Analizada | Baja (2) | 0.41% | — | Mayurik Best House Rental Management System | 27/10/2025 | 17/6/2026 | A vulnerability was found in SourceCodester Best House Rental Management System 1.0. Impacted is the function save_house of the file /admin_class.php. Performing manipulation of the argument house_no results in sql injection. Remote exploitation of the attack is possible. The exploit has been made public and could be… | |
| Analizada | Media (5.5) | 0.48% | — | Mayurik Best House Rental Management System | 27/10/2025 | 17/6/2026 | A vulnerability was found in SourceCodester Best House Rental Management System 1.0. This impacts the function login2 of the file /admin_class.php. Performing manipulation of the argument Username results in sql injection. The attack is possible to be carried out remotely. The exploit has been made public and could be… | |
| Analizada | Media (5.4) | 0.29% | — | Mayurik House Rental Management System | 14/1/2025 | 17/6/2026 | Sourcecodester House Rental Management system v1.0 is vulnerable to Cross Site Scripting (XSS) in rental/manage_categories.php. | |
| Analizada | Media (6.9) | 0.68% | — | Codeastro House Rental Management System | 26/12/2024 | 17/6/2026 | A vulnerability was found in CodeAstro House Rental Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /signin.php. The manipulation of the argument u/p leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the… | |
| Analizada | Media (6.9) | 0.68% | — | Codeastro House Rental Management System | 26/12/2024 | 17/6/2026 | A vulnerability was found in CodeAstro House Rental Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /ownersignup.php. The manipulation of the argument f/e/p/m/o/n/c/s/ci/a leads to sql injection. The attack can be launched remotely. The… | |
| Analizada | Media (6.9) | 0.44% | — | Mayurik Best House Rental Management System | 9/12/2024 | 17/6/2026 | A vulnerability was found in SourceCodester Best House Rental Management System 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /index.php. The manipulation of the argument page leads to file inclusion. The attack may be launched remotely. The exploit has been… | |
| Analizada | Media (6.9) | 0.86% | — | Mayurik Best House Rental Management System | 27/11/2024 | 17/6/2026 | A vulnerability classified as critical has been found in SourceCodester Best House Rental Management System 1.0. This affects an unknown part of the file /rental/ajax.php?action=delete_tenant of the component POST Request Handler. The manipulation of the argument id leads to improper authorization. It is possible to… | |
| Analizada | Media (6.9) | 0.34% | — | Mayurik Best House Rental Management System | 26/11/2024 | 17/6/2026 | A vulnerability, which was classified as problematic, was found in SourceCodester Best House Rental Management System 1.0. Affected is an unknown function of the file /rental/ajax.php?action=delete_user of the component POST Request Handler. The manipulation leads to cross-site request forgery. It is possible to… | |
| Analizada | Media (5.3) | 0.53% | — | Mayurik Best House Rental Management System | 26/11/2024 | 17/6/2026 | A vulnerability, which was classified as problematic, has been found in SourceCodester Best House Rental Management System 1.0. This issue affects some unknown processing of the file /rental/ajax.php?action=save_tenant. The manipulation of the argument lastname/firstname/middlename leads to cross site scripting. The… | |
| Analizada | Crítica (9.8) | 0.89% | — | Mayurik Best House Rental Management System | 25/10/2024 | 17/6/2026 | SQL Injection vulnerability in Best House rental management system project in php v.1.0 allows a remote attacker to execute arbitrary code via the username parameter of the login request. | |
| Analizada | Media (5.3) | 0.57% | — | Mayurik Best House Rental Management System | 24/10/2024 | 17/6/2026 | A vulnerability was found in SourceCodester Best House Rental Management System 1.0 and classified as critical. Affected by this issue is the function delete_tenant of the file /ajax.php?action=delete_tenant. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The exploit… | |
| Analizada | Media (5.3) | 0.46% | — | Mayurik Best House Rental Management System | 24/10/2024 | 17/6/2026 | A vulnerability was found in SourceCodester Best House Rental Management System 1.0. It has been classified as problematic. This affects an unknown part of the file /index.php?page=tenants of the component Manage Tenant Details. The manipulation of the argument Last Name/First Name/Middle Name leads to cross site… | |
| Analizada | Media (5.3) | 0.61% | — | Mayurik Best House Rental Management System | 20/9/2024 | 17/6/2026 | A vulnerability has been found in SourceCodester Best House Rental Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file /ajax.php?action=update_account. The manipulation of the argument firstname/lastname/email leads to sql injection. The attack can be initiated… |