Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2778▼ 418 respecto a la semana anterior
Críticas / altas1332▼ 108 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)265▼ 243 respecto a la semana anterior
–

390 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaMedia (6.5)0.32%—Gloriafood Restaurant Menu Food Ordering System Table ReservationAI18/4/202417/6/2026
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in GloriaFood Restaurant Menu – Food Ordering System – Table Reservation allows Stored XSS.This issue affects Restaurant Menu – Food Ordering System – Table Reservation: from n/a through 2.4.1.
AplazadaMedia (4.3)0.20%—Redi Restaurant ReservationAI15/4/202417/6/2026
Cross-Site Request Forgery (CSRF) vulnerability in Reservation Diary ReDi Restaurant Reservation.This issue affects ReDi Restaurant Reservation: from n/a through 24.0128.
AplazadaAlta (7.1)0.27%—Redi Restaurant ReservationAI10/4/202417/6/2026
Cross-Site Request Forgery (CSRF) vulnerability in Reservation Diary ReDi Restaurant Reservation allows Cross-Site Scripting (XSS).This issue affects ReDi Restaurant Reservation: from n/a through 24.0128.
AnalizadaMedia (6.1)0.62%—Janobe Aplaya Beach Resort Online Reservation System6/4/202417/6/2026
A vulnerability classified as problematic was found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0. This vulnerability affects unknown code of the file /index.php. The manipulation of the argument to leads to cross site scripting. The attack can be initiated remotely. The exploit has been…
AnalizadaMedia (5.4)0.55%—Janobe Aplaya Beach Resort Online Reservation System5/4/202417/6/2026
A vulnerability classified as problematic has been found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0. This affects an unknown part of the file admin/mod_reports/index.php. The manipulation of the argument end leads to cross site scripting. It is possible to initiate the attack remotely. The…
AnalizadaCrítica (9.8)0.90%—Janobe Aplaya Beach Resort Online Reservation System5/4/202417/6/2026
A vulnerability was found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file admin/mod_settings/controller.php?action=add. The manipulation of the argument type leads to sql injection. The attack may be…
AnalizadaCrítica (9.8)0.90%—Janobe Aplaya Beach Resort Online Reservation System5/4/202417/6/2026
A vulnerability was found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file admin/mod_users/controller.php?action=add. The manipulation of the argument name leads to sql injection. The attack can…
AnalizadaCrítica (9.8)0.90%—Janobe Aplaya Beach Resort Online Reservation System5/4/202417/6/2026
A vulnerability was found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0. It has been classified as critical. Affected is an unknown function of the file admin/mod_users/index.php. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit…
AnalizadaAlta (7.3)0.80%—Janobe Aplaya Beach Resort Online Reservation System5/4/202417/6/2026
A vulnerability was found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0 and classified as critical. This issue affects some unknown processing of the file admin/mod_reports/index.php. The manipulation of the argument categ/end leads to sql injection. The attack may be initiated remotely. The…
AnalizadaCrítica (9.8)0.90%—Janobe Aplaya Beach Resort Online Reservation System5/4/202417/6/2026
A vulnerability has been found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0 and classified as critical. This vulnerability affects unknown code of the file admin/mod_comments/index.php. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The exploit…
AnalizadaCrítica (9.8)0.90%—Janobe Aplaya Beach Resort Online Reservation System5/4/202417/6/2026
A vulnerability, which was classified as critical, was found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0. This affects an unknown part of the file admin/mod_roomtype/index.php. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The…
AnalizadaCrítica (9.8)0.90%—Janobe Aplaya Beach Resort Online Reservation System5/4/202417/6/2026
A vulnerability, which was classified as critical, has been found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0. Affected by this issue is some unknown functionality of the file admin/mod_room/index.php. The manipulation of the argument id leads to sql injection. The attack may be launched…
AnalizadaCrítica (9.8)0.85%—Janobe Aplaya Beach Resort Online Reservation System5/4/202417/6/2026
A vulnerability classified as critical was found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0. Affected by this vulnerability is an unknown functionality of the file admin/login.php. The manipulation of the argument email leads to sql injection. The attack can be launched remotely. The exploit…
AnalizadaCrítica (9.8)0.85%—Janobe Aplaya Beach Resort Online Reservation System5/4/202417/6/2026
A vulnerability classified as critical has been found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0. Affected is an unknown function of the file booking/index.php. The manipulation of the argument log_email/log_pword leads to sql injection. It is possible to launch the attack remotely. The…
AnalizadaCrítica (9.8)0.86%—Sanchitkmr Airline Ticket Reservation System5/4/202417/6/2026
A vulnerability was found in SourceCodester Airline Ticket Reservation System 1.0. It has been rated as critical. This issue affects some unknown processing of the file activate_jet_details_form_handler.php. The manipulation of the argument jet_id leads to sql injection. The attack may be initiated remotely. The…
ModificadaMedia (6.1)0.37%—Reservationdiary Redi Restaurant Reservation27/3/202417/6/2026
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Reservation Diary ReDi Restaurant Reservation allows Reflected XSS.This issue affects ReDi Restaurant Reservation: from n/a through 24.0128.
AnalizadaMedia (6.1)0.42%—Magesh-k21 Online-college-event-hall-reservation-system17/3/202417/6/2026
A vulnerability has been found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0 and classified as problematic. This vulnerability affects unknown code of the file /admin/users.php. The manipulation of the argument id leads to cross site scripting. The attack can be initiated remotely. The exploit has…
AnalizadaCrítica (9.8)0.55%—Magesh-k21 Online-college-event-hall-reservation-system17/3/202417/6/2026
A vulnerability, which was classified as critical, was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. This affects an unknown part of the file /admin/users.php. The manipulation of the argument user_id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been…
AnalizadaMedia (6.1)0.45%—Magesh-k21 Online-college-event-hall-reservation-system16/3/202417/6/2026
A vulnerability, which was classified as problematic, has been found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. Affected by this issue is some unknown functionality of the file /admin/update-users.php. The manipulation of the argument id leads to cross site scripting. The attack may be launched…
AnalizadaAlta (8.8)0.51%—Magesh-k21 Online-college-event-hall-reservation-system16/3/202417/6/2026
A vulnerability classified as critical was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/update-users.php. The manipulation of the argument id leads to sql injection. The attack can be launched remotely. The exploit…
AnalizadaAlta (8.8)0.69%—Magesh-k21 Online-college-event-hall-reservation-system16/3/202417/6/2026
A vulnerability classified as critical has been found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. Affected is an unknown function of the file /admin/update-rooms.php. The manipulation leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been disclosed to the…
AnalizadaMedia (6.1)0.46%—Magesh-k21 Online-college-event-hall-reservation-system16/3/202417/6/2026
A vulnerability was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. It has been rated as problematic. This issue affects some unknown processing of the file /admin/update-rooms.php. The manipulation of the argument id leads to cross site scripting. The attack may be initiated remotely. The…
AnalizadaAlta (8.8)0.61%—Magesh-k21 Online-college-event-hall-reservation-system16/3/202417/6/2026
A vulnerability was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /admin/rooms.php. The manipulation leads to unrestricted upload. The attack can be initiated remotely. The exploit has been disclosed to the…
AnalizadaAlta (8.8)0.51%—Magesh-k21 Online-college-event-hall-reservation-system16/3/202417/6/2026
A vulnerability was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. It has been classified as critical. This affects an unknown part of the file /admin/update-rooms.php. The manipulation of the argument room_id leads to sql injection. It is possible to initiate the attack remotely. The exploit…
AnalizadaAlta (8.8)0.63%—Magesh-k21 Online-college-event-hall-reservation-system16/3/202417/6/2026
A vulnerability was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/rooms.php. The manipulation of the argument room_id leads to sql injection. The attack may be launched remotely. The exploit has…