Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2720▼ 598 respecto a la semana anterior
Críticas / altas1299▼ 202 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)299▼ 211 respecto a la semana anterior
4 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Media (5.5) | 0.41% | — | Sourcecodester Online Catering ReservationAI | 24/3/2026 | 17/6/2026 | A vulnerability was identified in SourceCodester Online Catering Reservation 1.0. Impacted is an unknown function of the file /search.php. Such manipulation of the argument rcode leads to sql injection. The attack may be performed from remote. The exploit is publicly available and might be used. | |
| Modificada | Crítica (9.8) | 0.77% | — | Online Catering Reservation System Project Online Catering Reservation System | 28/2/2023 | 17/6/2026 | A vulnerability classified as critical has been found in SourceCodester Online Catering Reservation System 1.0. This affects an unknown part of the file /reservation/add_message.php of the component POST Parameter Handler. The manipulation of the argument fullname leads to sql injection. It is possible to initiate the… | |
| Modificada | Alta (7.5) | 2.3% | — | Online Catering Reservation System Project Online Catering Reservation System | 16/8/2021 | 17/6/2026 | Directory traversal vulnerability in Online Catering Reservation System 1.0 exists due to lack of validation in index.php. | |
| Modificada | Media (5.4) | 0.58% | — | Online Catering Reservation System Project Online Catering Reservation System | 16/8/2021 | 17/6/2026 | A cross-site scripting (XSS) vulnerability in Online Catering Reservation System using PHP on Sourcecodester allows an attacker to arbitrarily inject code in the search bar. |