Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2980▼ 83 respecto a la semana anterior
Críticas / altas1452▲ 101 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)353▼ 157 respecto a la semana anterior
210 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (5.5) | 0.49% | — | Code-projects Inventory Management System | 28/6/2025 | 17/6/2026 | A vulnerability was found in code-projects Inventory Management System 1.0. It has been classified as critical. This affects an unknown part of the file /php_action/createOrder.php. The manipulation leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and… | |
| Analizada | Media (5.5) | 0.51% | — | Code-projects Inventory Management System | 28/6/2025 | 17/6/2026 | A vulnerability was found in code-projects Inventory Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /php_action/createProduct.php. The manipulation of the argument productName leads to sql injection. The attack may be launched remotely. The exploit… | |
| Analizada | Media (5.5) | 0.51% | — | Code-projects Inventory Management System | 28/6/2025 | 17/6/2026 | A vulnerability has been found in code-projects Inventory Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /php_action/removeBrand.php. The manipulation of the argument brandId leads to sql injection. The attack can be launched remotely. The… | |
| Analizada | Media (5.5) | 0.48% | — | Code-projects Inventory Management System | 25/6/2025 | 17/6/2026 | A vulnerability was found in code-projects Inventory Management System 1.0. It has been classified as critical. This affects an unknown part of the file /php_action/fetchSelectedBrand.php. The manipulation of the argument brandId leads to sql injection. It is possible to initiate the attack remotely. The exploit has… | |
| Analizada | Media (5.5) | 0.48% | — | Code-projects Inventory Management System | 25/6/2025 | 17/6/2026 | A vulnerability has been found in code-projects Inventory Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /php_action/editBrand.php. The manipulation of the argument editBrandStatus leads to sql injection. The attack can be launched remotely. The… | |
| Analizada | Media (5.5) | 0.48% | — | Code-projects Inventory Management System | 25/6/2025 | 17/6/2026 | A vulnerability was found in code-projects Inventory Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /php_action/removeCategories.php. The manipulation of the argument categoriesId leads to sql injection. The attack may be initiated remotely. The exploit has… | |
| Analizada | Media (5.5) | 0.48% | — | Code-projects Inventory Management System | 25/6/2025 | 17/6/2026 | A vulnerability was found in code-projects Inventory Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /php_action/createBrand.php. The manipulation of the argument brandStatus leads to sql injection. The attack can be initiated remotely. The exploit has been… | |
| Analizada | Media (5.5) | 0.50% | — | Code-projects Inventory Management System | 23/6/2025 | 17/6/2026 | A vulnerability was found in code-projects Inventory Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /php_action/fetchSelectedCategories.php. The manipulation of the argument categoriesId leads to sql injection. The attack may be initiated remotely. The exploit… | |
| Analizada | Media (5.5) | 0.50% | — | Code-projects Inventory Management System | 23/6/2025 | 17/6/2026 | A vulnerability has been found in code-projects Inventory Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file /php_action/changePassword.php. The manipulation of the argument user_id leads to sql injection. The attack can be initiated remotely. The exploit has been… | |
| Analizada | Media (5.5) | 0.49% | — | Code-projects Inventory Management System | 23/6/2025 | 17/6/2026 | A vulnerability, which was classified as critical, was found in code-projects Inventory Management System 1.0. This affects an unknown part of the file /php_action/createCategories.php. The manipulation of the argument categoriesStatus leads to sql injection. It is possible to initiate the attack remotely. The exploit… | |
| Analizada | Media (5.5) | 0.49% | — | Code-projects Inventory Management System | 23/6/2025 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in code-projects Inventory Management System 1.0. Affected by this issue is some unknown functionality of the file /php_action/editCategories.php. The manipulation of the argument editCategoriesName leads to sql injection. The attack may be launched… | |
| Analizada | Media (5.5) | 0.48% | — | Code-projects Inventory Management System | 22/6/2025 | 17/6/2026 | A vulnerability has been found in code-projects Inventory Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file /changeUsername.php. The manipulation of the argument user_id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to… | |
| Analizada | Media (5.3) | 0.43% | — | Code-projects Point OF Sales AND Inventory Management System | 4/1/2025 | 17/6/2026 | A vulnerability was found in code-projects Point of Sales and Inventory Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /user/update_account.php. The manipulation of the argument username leads to sql injection. The attack may be launched remotely. The… | |
| Analizada | Media (5.3) | 0.52% | — | Code-projects Point OF Sales AND Inventory Management System | 4/1/2025 | 17/6/2026 | A vulnerability has been found in code-projects Point of Sales and Inventory Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /user/search_num.php. The manipulation of the argument search leads to sql injection. The attack can be launched… | |
| Analizada | Media (5.3) | 0.43% | — | Code-projects Point OF Sales AND Inventory Management System | 3/1/2025 | 17/6/2026 | A vulnerability, which was classified as critical, was found in code-projects Point of Sales and Inventory Management System 1.0. Affected is an unknown function of the file /user/minus_cart.php. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has… | |
| Analizada | Media (5.3) | 0.43% | — | Code-projects Point OF Sales AND Inventory Management System | 3/1/2025 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in code-projects Point of Sales and Inventory Management System 1.0. This issue affects some unknown processing of the file /user/search_result.php. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The… | |
| Analizada | Media (5.3) | 0.43% | — | Code-projects Point OF Sales AND Inventory Management System | 3/1/2025 | 17/6/2026 | A vulnerability classified as critical was found in code-projects Point of Sales and Inventory Management System 1.0. This vulnerability affects unknown code of the file /user/search.php. The manipulation of the argument name leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed… | |
| Analizada | Media (5.3) | 0.43% | — | Code-projects Point OF Sales AND Inventory Management System | 3/1/2025 | 17/6/2026 | A vulnerability classified as critical has been found in code-projects Point of Sales and Inventory Management System 1.0. This affects an unknown part of the file /user/plist.php. The manipulation of the argument cat leads to sql injection. It is possible to initiate the attack remotely. The exploit has been… | |
| Analizada | Media (5.3) | 0.43% | — | Code-projects Point OF Sales AND Inventory Management System | 3/1/2025 | 17/6/2026 | A vulnerability was found in code-projects Point of Sales and Inventory Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /user/del_product.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The… | |
| Analizada | Media (5.3) | 0.45% | — | Code-projects Point OF Sales AND Inventory Management System | 3/1/2025 | 17/6/2026 | A vulnerability was found in code-projects Point of Sales and Inventory Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /user/add_cart.php. The manipulation of the argument id/qty leads to sql injection. The attack may be initiated remotely. The exploit has… | |
| Analizada | Media (5.3) | 0.43% | — | Code-projects Point OF Sales AND Inventory Management System | 3/1/2025 | 17/6/2026 | A vulnerability was found in code-projects Point of Sales and Inventory Management System 1.0. It has been classified as critical. This affects an unknown part of the file /user/search_result2.php of the component Parameter Handler. The manipulation of the argument search leads to sql injection. It is possible to… | |
| Analizada | Media (5.3) | 0.72% | — | Code-projects Inventory Management | 15/11/2024 | 17/6/2026 | A vulnerability was found in code-projects Inventory Management up to 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /model/editProduct.php. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to… | |
| Analizada | Media (5.3) | 0.41% | — | Mayurik Free AND Open Source Inventory Management System | 29/9/2024 | 17/6/2026 | A vulnerability was found in SourceCodester Inventory Management System 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /app/action/add_staff.php. The manipulation leads to cross site scripting. The attack can be launched remotely. The exploit has been… | |
| Analizada | Media (5.3) | 0.58% | — | Code-projects Inventory Management | 12/9/2024 | 17/6/2026 | A vulnerability classified as critical was found in code-projects Inventory Management 1.0. Affected by this vulnerability is an unknown functionality of the file /model/viewProduct.php of the component Products Table Page. The manipulation of the argument id leads to sql injection. The attack can be launched… | |
| Analizada | Media (6.9) | 0.56% | — | Code-projects Inventory Management | 9/9/2024 | 17/6/2026 | A vulnerability classified as problematic was found in code-projects Inventory Management 1.0. This vulnerability affects unknown code of the file /view/registration.php of the component Registration Form. The manipulation with the input <script>alert(1)</script> leads to cross site scripting. The attack can be… |