Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3023▼ 71 respecto a la semana anterior
Críticas / altas1419▲ 54 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
15 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Baja (2.1) | 0.16% | — | Sourcecodester Drug Recommendation SystemAI | 6/10/2026 | 6/10/2026 | A weakness has been identified in SourceCodester Drug Recommendation System 1.0. Affected is an unknown function. Executing a manipulation can lead to cross-site request forgery. The attack may be performed from remote. The exploit has been made available to the public and could be used for attacks. | |
| Aplazada | Baja (2.1) | 0.27% | — | Sourcecodester Drug Recommendation SystemAI | 6/10/2026 | 6/10/2026 | A security flaw has been discovered in SourceCodester Drug Recommendation System 1.0. This impacts an unknown function of the file Admin/add_drug.php. Performing a manipulation results in cross site scripting. The attack is possible to be carried out remotely. The exploit has been released to the public and may be… | |
| Aplazada | Media (5.5) | 0.40% | — | Sourcecodester Drug Recommendation SystemAI | 6/10/2026 | 6/10/2026 | A vulnerability was identified in SourceCodester Drug Recommendation System 1.0. This affects an unknown function of the component Auth Guard. Such manipulation of the argument user_id leads to improper authentication. The attack can be executed remotely. The exploit is publicly available and might be used. | |
| Aplazada | Baja (2) | 0.15% | — | Sourcecodester Drug Recommendation SystemAI | 5/10/2026 | 6/10/2026 | A weakness has been identified in SourceCodester Drug Recommendation System 1.0. This affects an unknown function of the file Admin/add_user.php of the component Password Handler. Executing a manipulation of the argument Password can lead to missing encryption of sensitive data. It is possible to launch the attack… | |
| Aplazada | Baja (2) | 0.32% | — | Sourcecodester Drug Recommendation SystemAI | 5/10/2026 | 6/10/2026 | A security flaw has been discovered in SourceCodester Drug Recommendation System 1.0. The impacted element is the function mysqli_real_escape_string of the file /Admin/add_symptom.php of the component Symptom Creation. Performing a manipulation of the argument txtname results in sql injection. It is possible to… | |
| Aplazada | Baja (2) | 0.32% | — | Sourcecodester Drug Recommendation SystemAI | 5/10/2026 | 6/10/2026 | A vulnerability was identified in SourceCodester Drug Recommendation System 1.0. The affected element is an unknown function of the file /Admin/add_drug.php of the component Drug Creation. Such manipulation of the argument txtname/cmdtype/txtusage/txtsideeffect/cmdcontraindication leads to sql injection. The attack… | |
| Aplazada | Baja (2) | 0.32% | — | Sourcecodester Drug Recommendation SystemAI | 5/10/2026 | 6/10/2026 | A vulnerability was determined in SourceCodester Drug Recommendation System 1.0. Impacted is an unknown function of the file /Admin/edit_class.php. This manipulation of the argument ID causes sql injection. The attack is possible to be carried out remotely. The exploit has been publicly disclosed and may be utilized. | |
| Aplazada | Media (5.5) | 0.25% | — | Sourcecodester Drug Recommendation SystemAI | 4/10/2026 | 6/10/2026 | A vulnerability was found in SourceCodester Drug Recommendation System 1.0. This issue affects some unknown processing of the file /Auth/add_student.php of the component Student Registration. The manipulation of the argument cmdschool results in sql injection. The attack can be executed remotely. The exploit has been… | |
| Aplazada | Baja (2.1) | 0.47% | — | Sourcecodester Drug Recommendation SystemAI | 20/9/2026 | 24/9/2026 | A vulnerability was determined in SourceCodester Drug Recommendation System 1.0. Impacted is an unknown function of the file /drug_recommender/index.php. Executing a manipulation of the argument full name can lead to cross site scripting. The attack can be launched remotely. The exploit has been publicly disclosed and… | |
| Aplazada | Baja (2) | 0.35% | — | Sourcecodester Drug Recommendation SystemAI | 20/9/2026 | 21/9/2026 | A vulnerability was found in SourceCodester Drug Recommendation System 1.0. This issue affects some unknown processing of the file /drug_recommender/Admin/change_password of the component Password Change. Performing a manipulation of the argument txtoldpassword/txtnewpassword results in cross site scripting. The… | |
| Aplazada | Baja (2) | 0.35% | — | Sourcecodester Drug Recommendation SystemAI | 20/9/2026 | 21/9/2026 | A vulnerability has been found in SourceCodester Drug Recommendation System 1.0. This vulnerability affects unknown code of the file /drug_recommender/Admin/add_user of the component User Management. Such manipulation of the argument txtname/txtemail/txtpassword leads to cross site scripting. It is possible to launch… | |
| Aplazada | Baja (1.9) | 0.37% | — | Sourcecodester Drug Recommendation SystemAI | 20/9/2026 | 22/9/2026 | A security flaw has been discovered in SourceCodester Drug Recommendation System 1.0. This impacts an unknown function of the file /drug_recommender/Admin/add_symptom. Performing a manipulation of the argument txtname results in cross site scripting. Remote exploitation of the attack is possible. The exploit has been… | |
| Aplazada | Media (5.5) | 0.43% | — | Sourcecodester Drug Recommendation SystemAI | 20/9/2026 | 22/9/2026 | A vulnerability was identified in SourceCodester Drug Recommendation System 1.0. This affects an unknown function of the file /drug_recommender/Admin/edit_user.php. Such manipulation of the argument ID leads to sql injection. The attack may be launched remotely. The exploit is publicly available and might be used. | |
| Aplazada | Media (5.5) | 0.43% | — | Sourcecodester Drug Recommendation SystemAI | 20/9/2026 | 21/9/2026 | A weakness has been identified in SourceCodester Drug Recommendation System 1.0. Affected by this issue is some unknown functionality of the file /Admin/edit_symptom.php. This manipulation of the argument ID causes sql injection. The attack is possible to be carried out remotely. The exploit has been made available to… | |
| Aplazada | Media (5.5) | 0.53% | — | Sourcecodester Drug Recommendation SystemAI | 17/9/2026 | 21/9/2026 | A vulnerability was found in SourceCodester Drug Recommendation System 1.0. This issue affects some unknown processing of the file /db/drug_recommendor.sql. Performing a manipulation results in information disclosure. The attack is possible to be carried out remotely. The exploit has been made public and could be used. |