Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2778▼ 418 respecto a la semana anterior
Críticas / altas1332▼ 108 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)265▼ 243 respecto a la semana anterior
390 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Media (6.5) | 0.32% | — | Gloriafood Restaurant Menu Food Ordering System Table ReservationAI | 18/4/2024 | 17/6/2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in GloriaFood Restaurant Menu – Food Ordering System – Table Reservation allows Stored XSS.This issue affects Restaurant Menu – Food Ordering System – Table Reservation: from n/a through 2.4.1. | |
| Aplazada | Media (4.3) | 0.20% | — | Redi Restaurant ReservationAI | 15/4/2024 | 17/6/2026 | Cross-Site Request Forgery (CSRF) vulnerability in Reservation Diary ReDi Restaurant Reservation.This issue affects ReDi Restaurant Reservation: from n/a through 24.0128. | |
| Aplazada | Alta (7.1) | 0.27% | — | Redi Restaurant ReservationAI | 10/4/2024 | 17/6/2026 | Cross-Site Request Forgery (CSRF) vulnerability in Reservation Diary ReDi Restaurant Reservation allows Cross-Site Scripting (XSS).This issue affects ReDi Restaurant Reservation: from n/a through 24.0128. | |
| Analizada | Media (6.1) | 0.62% | — | Janobe Aplaya Beach Resort Online Reservation System | 6/4/2024 | 17/6/2026 | A vulnerability classified as problematic was found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0. This vulnerability affects unknown code of the file /index.php. The manipulation of the argument to leads to cross site scripting. The attack can be initiated remotely. The exploit has been… | |
| Analizada | Media (5.4) | 0.55% | — | Janobe Aplaya Beach Resort Online Reservation System | 5/4/2024 | 17/6/2026 | A vulnerability classified as problematic has been found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0. This affects an unknown part of the file admin/mod_reports/index.php. The manipulation of the argument end leads to cross site scripting. It is possible to initiate the attack remotely. The… | |
| Analizada | Crítica (9.8) | 0.90% | — | Janobe Aplaya Beach Resort Online Reservation System | 5/4/2024 | 17/6/2026 | A vulnerability was found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file admin/mod_settings/controller.php?action=add. The manipulation of the argument type leads to sql injection. The attack may be… | |
| Analizada | Crítica (9.8) | 0.90% | — | Janobe Aplaya Beach Resort Online Reservation System | 5/4/2024 | 17/6/2026 | A vulnerability was found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file admin/mod_users/controller.php?action=add. The manipulation of the argument name leads to sql injection. The attack can… | |
| Analizada | Crítica (9.8) | 0.90% | — | Janobe Aplaya Beach Resort Online Reservation System | 5/4/2024 | 17/6/2026 | A vulnerability was found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0. It has been classified as critical. Affected is an unknown function of the file admin/mod_users/index.php. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit… | |
| Analizada | Alta (7.3) | 0.80% | — | Janobe Aplaya Beach Resort Online Reservation System | 5/4/2024 | 17/6/2026 | A vulnerability was found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0 and classified as critical. This issue affects some unknown processing of the file admin/mod_reports/index.php. The manipulation of the argument categ/end leads to sql injection. The attack may be initiated remotely. The… | |
| Analizada | Crítica (9.8) | 0.90% | — | Janobe Aplaya Beach Resort Online Reservation System | 5/4/2024 | 17/6/2026 | A vulnerability has been found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0 and classified as critical. This vulnerability affects unknown code of the file admin/mod_comments/index.php. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The exploit… | |
| Analizada | Crítica (9.8) | 0.90% | — | Janobe Aplaya Beach Resort Online Reservation System | 5/4/2024 | 17/6/2026 | A vulnerability, which was classified as critical, was found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0. This affects an unknown part of the file admin/mod_roomtype/index.php. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The… | |
| Analizada | Crítica (9.8) | 0.90% | — | Janobe Aplaya Beach Resort Online Reservation System | 5/4/2024 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0. Affected by this issue is some unknown functionality of the file admin/mod_room/index.php. The manipulation of the argument id leads to sql injection. The attack may be launched… | |
| Analizada | Crítica (9.8) | 0.85% | — | Janobe Aplaya Beach Resort Online Reservation System | 5/4/2024 | 17/6/2026 | A vulnerability classified as critical was found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0. Affected by this vulnerability is an unknown functionality of the file admin/login.php. The manipulation of the argument email leads to sql injection. The attack can be launched remotely. The exploit… | |
| Analizada | Crítica (9.8) | 0.85% | — | Janobe Aplaya Beach Resort Online Reservation System | 5/4/2024 | 17/6/2026 | A vulnerability classified as critical has been found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0. Affected is an unknown function of the file booking/index.php. The manipulation of the argument log_email/log_pword leads to sql injection. It is possible to launch the attack remotely. The… | |
| Analizada | Crítica (9.8) | 0.86% | — | Sanchitkmr Airline Ticket Reservation System | 5/4/2024 | 17/6/2026 | A vulnerability was found in SourceCodester Airline Ticket Reservation System 1.0. It has been rated as critical. This issue affects some unknown processing of the file activate_jet_details_form_handler.php. The manipulation of the argument jet_id leads to sql injection. The attack may be initiated remotely. The… | |
| Modificada | Media (6.1) | 0.37% | — | Reservationdiary Redi Restaurant Reservation | 27/3/2024 | 17/6/2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Reservation Diary ReDi Restaurant Reservation allows Reflected XSS.This issue affects ReDi Restaurant Reservation: from n/a through 24.0128. | |
| Analizada | Media (6.1) | 0.42% | — | Magesh-k21 Online-college-event-hall-reservation-system | 17/3/2024 | 17/6/2026 | A vulnerability has been found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0 and classified as problematic. This vulnerability affects unknown code of the file /admin/users.php. The manipulation of the argument id leads to cross site scripting. The attack can be initiated remotely. The exploit has… | |
| Analizada | Crítica (9.8) | 0.55% | — | Magesh-k21 Online-college-event-hall-reservation-system | 17/3/2024 | 17/6/2026 | A vulnerability, which was classified as critical, was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. This affects an unknown part of the file /admin/users.php. The manipulation of the argument user_id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been… | |
| Analizada | Media (6.1) | 0.45% | — | Magesh-k21 Online-college-event-hall-reservation-system | 16/3/2024 | 17/6/2026 | A vulnerability, which was classified as problematic, has been found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. Affected by this issue is some unknown functionality of the file /admin/update-users.php. The manipulation of the argument id leads to cross site scripting. The attack may be launched… | |
| Analizada | Alta (8.8) | 0.51% | — | Magesh-k21 Online-college-event-hall-reservation-system | 16/3/2024 | 17/6/2026 | A vulnerability classified as critical was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/update-users.php. The manipulation of the argument id leads to sql injection. The attack can be launched remotely. The exploit… | |
| Analizada | Alta (8.8) | 0.69% | — | Magesh-k21 Online-college-event-hall-reservation-system | 16/3/2024 | 17/6/2026 | A vulnerability classified as critical has been found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. Affected is an unknown function of the file /admin/update-rooms.php. The manipulation leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been disclosed to the… | |
| Analizada | Media (6.1) | 0.46% | — | Magesh-k21 Online-college-event-hall-reservation-system | 16/3/2024 | 17/6/2026 | A vulnerability was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. It has been rated as problematic. This issue affects some unknown processing of the file /admin/update-rooms.php. The manipulation of the argument id leads to cross site scripting. The attack may be initiated remotely. The… | |
| Analizada | Alta (8.8) | 0.61% | — | Magesh-k21 Online-college-event-hall-reservation-system | 16/3/2024 | 17/6/2026 | A vulnerability was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /admin/rooms.php. The manipulation leads to unrestricted upload. The attack can be initiated remotely. The exploit has been disclosed to the… | |
| Analizada | Alta (8.8) | 0.51% | — | Magesh-k21 Online-college-event-hall-reservation-system | 16/3/2024 | 17/6/2026 | A vulnerability was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. It has been classified as critical. This affects an unknown part of the file /admin/update-rooms.php. The manipulation of the argument room_id leads to sql injection. It is possible to initiate the attack remotely. The exploit… | |
| Analizada | Alta (8.8) | 0.63% | — | Magesh-k21 Online-college-event-hall-reservation-system | 16/3/2024 | 17/6/2026 | A vulnerability was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/rooms.php. The manipulation of the argument room_id leads to sql injection. The attack may be launched remotely. The exploit has… |