Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2855▼ 166 respecto a la semana anterior
Críticas / altas1379▲ 45 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)266▼ 260 respecto a la semana anterior
7 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.5) | 0.48% | — | Carmelo Simple Stock System | 30/12/2025 | 5/10/2026 | A flaw has been found in code-projects Simple Stock System 1.0. This affects an unknown function of the file /market/login.php. Executing a manipulation of the argument Username can lead to sql injection. The attack can be launched remotely. The exploit has been published and may be used. | |
| Analizada | Media (5.5) | 0.38% | — | Carmelo Simple Stock System | 22/12/2025 | 17/6/2026 | A vulnerability was found in code-projects Simple Stock System 1.0. Impacted is an unknown function of the file /logout.php. The manipulation of the argument uname results in sql injection. The attack can be executed remotely. The exploit has been made public and could be used. | |
| Modificada | Media (5.5) | 0.39% | — | Carmelo Simple Stock System | 19/12/2025 | 17/6/2026 | A security flaw has been discovered in code-projects Simple Stock System 1.0. Affected by this issue is some unknown functionality of the file /market/update.php. The manipulation of the argument email results in sql injection. The attack can be launched remotely. The exploit has been released to the public and may be… | |
| Modificada | Baja (2.1) | 0.33% | — | Carmelo Simple Stock System | 19/12/2025 | 30/9/2026 | A flaw has been found in code-projects Simple Stock System 1.0. The impacted element is an unknown function of the file /market/chatuser.php. This manipulation causes cross site scripting. The attack is possible to be carried out remotely. The exploit has been published and may be used. | |
| Modificada | Media (5.5) | 0.38% | — | Carmelo Simple Stock System | 19/12/2025 | 17/6/2026 | A weakness has been identified in code-projects Simple Stock System 1.0. This issue affects some unknown processing of the file /market/signup.php. Executing a manipulation of the argument Username can lead to sql injection. The attack may be launched remotely. The exploit has been made available to the public and… | |
| Modificada | Baja (2.1) | 0.35% | — | Carmelo Simple Stock System | 17/12/2025 | 17/6/2026 | A weakness has been identified in code-projects Simple Stock System 1.0. This affects an unknown function of the file /checkuser.php. Executing a manipulation of the argument Username can lead to sql injection. The attack can be launched remotely. The exploit has been made available to the public and could be used for… | |
| Analizada | Crítica (9.8) | 0.64% | — | Code-projects Simple Stock System | 27/2/2024 | 17/6/2026 | Code-projects Simple Stock System 1.0 is vulnerable to SQL Injection. |