Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2855▼ 333 respecto a la semana anterior
Críticas / altas1381▼ 36 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)296▼ 213 respecto a la semana anterior
7 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Crítica (9.8) | 0.52% | — | Jon-remus-sevellejo Personnel Property Equipment System | 2/3/2026 | 17/6/2026 | sourcecodester Personnel Property Equipment System v1.0 is vulnerable to SQL Injection in /ppes/admin/edit_employee.php. | |
| Modificada | Crítica (9.8) | 0.52% | — | Jon-remus-sevellejo Personnel Property Equipment System | 2/3/2026 | 17/6/2026 | sourcecodester Personnel Property Equipment System v1.0 is vulnerable to SQL Injection in /ppes/admin/edit_tecnical_user.php. | |
| Modificada | Alta (7.2) | 0.74% | — | Jon-remus-sevellejo Personnel Property Equipment System | 2/3/2026 | 17/6/2026 | sourcecodester Personnel Property Equipment System v1.0 is vulnerable to arbitrary code execution in ip/ppes/admin/admin_change_picture.php. | |
| Modificada | Crítica (9.8) | 0.52% | — | Jon-remus-sevellejo Personnel Property Equipment System | 2/3/2026 | 17/6/2026 | sourcecodester Personnel Property Equipment System v1.0 is vulnerable to SQL Injection in /ppes/admin/advance_search.php. | |
| Modificada | Crítica (9.8) | 0.52% | — | Jon-remus-sevellejo Personnel Property Equipment System | 2/3/2026 | 17/6/2026 | sourcecodester Personnel Property Equipment System v1.0 is vulnerable to SQL Injection in /ppes/admin/myitem_reuse.php. | |
| Modificada | Media (5.4) | 0.64% | — | Personnel Property Equipment System Project Personnel Property Equipment System | 14/5/2023 | 17/6/2026 | A vulnerability, which was classified as problematic, was found in SourceCodester Personnel Property Equipment System 1.0. Affected is an unknown function of the file admin/add_item.php of the component POST Parameter Handler. The manipulation of the argument item_name leads to cross site scripting. It is possible to… | |
| Modificada | Alta (8.8) | 0.82% | — | Personnel Property Equipment System Project Personnel Property Equipment System | 14/5/2023 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in SourceCodester Personnel Property Equipment System 1.0. This issue affects some unknown processing of the file admin/returned_reuse_form.php of the component GET Parameter Handler. The manipulation of the argument client_id leads to sql injection.… |