Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2987▼ 96 respecto a la semana anterior
Críticas / altas1458▲ 101 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
16 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Baja (2.1) | 0.32% | — | Code-projects Social Networking SiteAI | 27/3/2026 | 17/6/2026 | A security flaw has been discovered in code-projects Social Networking Site 1.0. This affects an unknown function of the file delete_photos.php of the component Endpoint. The manipulation of the argument ID results in sql injection. The attack can be executed remotely. The exploit has been released to the public and… | |
| Aplazada | Baja (2) | 0.33% | — | Code-projects Social Networking SiteAI | 27/3/2026 | 17/6/2026 | A vulnerability was identified in code-projects Social Networking Site 1.0. The impacted element is an unknown function of the file /home.php of the component Alert Handler. The manipulation of the argument content leads to cross site scripting. Remote exploitation of the attack is possible. The exploit is publicly… | |
| Analizada | Media (5.5) | 0.38% | — | Code-projects Social Networking Site | 7/2/2026 | 17/6/2026 | A security flaw has been discovered in code-projects Social Networking Site 1.0. This affects an unknown function of the file /delete_post.php. Performing a manipulation of the argument ID results in sql injection. It is possible to initiate the attack remotely. The exploit has been released to the public and may be… | |
| Analizada | Baja (2.1) | 0.35% | — | Fabian Nero Social Networking Site | 17/11/2025 | 17/6/2026 | A vulnerability was found in code-projects Nero Social Networking Site 1.0. The affected element is an unknown function of the file /profilefriends.php. Performing manipulation of the argument ID results in sql injection. The attack may be initiated remotely. The exploit has been made public and could be used. | |
| Analizada | Media (5.5) | 0.44% | — | Fabian Nero Social Networking Site | 17/11/2025 | 17/6/2026 | A flaw has been found in code-projects Nero Social Networking Site 1.0. This issue affects some unknown processing of the file /friendsphoto.php. This manipulation of the argument ID causes sql injection. The attack can be initiated remotely. The exploit has been published and may be used. | |
| Analizada | Media (5.5) | 0.48% | — | Fabian Nero Social Networking Site | 27/10/2025 | 17/6/2026 | A weakness has been identified in code-projects Nero Social Networking Site 1.0. This affects an unknown part of the file /friendprofile.php. Executing manipulation of the argument ID can lead to sql injection. It is possible to launch the attack remotely. The exploit has been made available to the public and could be… | |
| Analizada | Media (5.5) | 0.48% | — | Fabian Nero Social Networking Site | 27/10/2025 | 17/6/2026 | A security flaw has been discovered in code-projects Nero Social Networking Site 1.0. Affected by this issue is some unknown functionality of the file /deletemessage.php. Performing manipulation of the argument message_id results in sql injection. It is possible to initiate the attack remotely. The exploit has been… | |
| Analizada | Media (5.5) | 0.48% | — | Fabian Nero Social Networking Site | 27/10/2025 | 17/6/2026 | A vulnerability was identified in code-projects Nero Social Networking Site 1.0. Affected by this vulnerability is an unknown functionality of the file /addfriend.php. Such manipulation of the argument ID leads to sql injection. The attack may be performed from remote. The exploit is publicly available and might be… | |
| Analizada | Media (5.5) | 0.48% | — | Fabian Nero Social Networking Site | 27/10/2025 | 17/6/2026 | A vulnerability was determined in code-projects Nero Social Networking Site 1.0. Affected is an unknown function of the file /acceptoffres.php. This manipulation of the argument ID causes sql injection. The attack is possible to be carried out remotely. The exploit has been publicly disclosed and may be utilized. | |
| Analizada | Media (6.9) | 0.63% | — | Fabian Nero Social Networking Site | 4/5/2025 | 17/6/2026 | A vulnerability was found in code-projects Nero Social Networking Site 1.0. It has been classified as critical. This affects an unknown part of the file /index.php. The manipulation of the argument fname/lname/login/password2/cpassword/address/cnumber/email/gender/propic/month leads to sql injection. It is possible to… | |
| Modificada | Media (5.4) | 0.45% | — | Code-projects Social Networking Site | 19/1/2024 | 17/6/2026 | A vulnerability was found in code-projects Social Networking Site 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file message.php of the component Message Page. The manipulation of the argument Story leads to cross site scripting. The attack may be launched remotely. The… | |
| Modificada | Media (5.4) | 0.50% | — | Simple Social Networking Site Project Simple Social Networking Site | 24/5/2022 | 17/6/2026 | Simple Social Networking Site v1.0 is vulnerable to Cross Site Scripting (XSS) via /sns/classes/Users.php?f=save, firstname. | |
| Modificada | Alta (7.2) | 0.97% | — | Simple Social Networking Site Project Simple Social Networking Site | 13/5/2022 | 17/6/2026 | Sourcecodester Simple Social Networking Site v1.0 is vulnerable to SQL Injection via /sns/admin/?page=user/manage_user&id=. | |
| Modificada | Alta (7.2) | 0.97% | — | Simple Social Networking Site Project Simple Social Networking Site | 13/5/2022 | 17/6/2026 | Sourcecodester Simple Social Networking Site v1.0 is vulnerable to SQL Injection via /sns/admin/?page=posts/view_post&id=. | |
| Modificada | Alta (7.2) | 0.97% | — | Simple Social Networking Site Project Simple Social Networking Site | 13/5/2022 | 17/6/2026 | Sourcecodester Simple Social Networking Site v1.0 is vulnerable to SQL Injection via /sns/admin/members/view_member.php?id=. | |
| Modificada | Media (6.5) | 0.87% | — | Simple Social Networking Site Project Simple Social Networking Site | 13/5/2022 | 17/6/2026 | Sourcecodester Simple Social Networking Site v1.0 is vulnerable to file deletion via /sns/classes/Master.php?f=delete_img. |