Vulnerabilities

Summary — last 7 days

New vulnerabilities2,774▲ 9 vs. last week
Critical / high1,289▼ 242 vs. last week
New active exploitation (KEV)6▼ 1 vs. last week
Unscored (no CVSS)230▲ 212 vs. last week
–

119 results, sorted by published date (most recent first)

CVEStatusSeverityEPSS Active exploitationAffected technologiesPublished ▼Modified Description
AnalyzedMedium (6.1)0.38%—Oracle Complex Maintenance Repair AND Overhaul4/16/20246/17/2026
Vulnerability in the Oracle Complex Maintenance, Repair, and Overhaul product of Oracle E-Business Suite (component: LOV). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Complex Maintenance,…
ModifiedHigh (7.1)0.16%—Dell Pair1/24/20246/17/2026
Dell Pair Installer version prior to 1.2.1 contains an elevation of privilege vulnerability. A low privilege user with local access to the system could potentially exploit this vulnerability to delete arbitrary files and result in Denial of Service.
ModifiedMedium (6.1)0.17%—Oracle Complex Maintenance, Repair, AND Overhaul1/16/20246/17/2026
Vulnerability in the Oracle Complex Maintenance, Repair, and Overhaul product of Oracle Supply Chain (component: LOV). Supported versions that are affected are 11.5, 12.1 and 12.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Complex Maintenance,…
ModifiedHigh (8.8)0.26%—Whereyoursolutionis FIX MY Feed RSS Repair12/17/20236/17/2026
Cross-Site Request Forgery (CSRF) vulnerability in Innovative Solutions Fix My Feed RSS Repair.This issue affects Fix My Feed RSS Repair: from n/a through 1.4.
ModifiedMedium (6.1)0.36%—Oretnom23 AC Repair AND Services System9/17/20236/17/2026
A vulnerability, which was classified as problematic, was found in SourceCodester AC Repair and Services System 1.0. Affected is an unknown function of the file admin/?page=system_info/contact_information. The manipulation of the argument telephone/mobile/address leads to cross site scripting. It is possible to launch…
ModifiedCritical (9.8)0.50%—Oretnom23 AC Repair AND Services System7/15/20236/17/2026
A vulnerability was found in SourceCodester AC Repair and Services System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /classes/Master.php?f=delete_inquiry of the component HTTP POST Request Handler. The manipulation of the argument id leads to sql…
ModifiedCritical (9.8)0.54%—Oretnom23 AC Repair AND Services System7/13/20236/17/2026
A vulnerability was found in SourceCodester AC Repair and Services System 1.0. It has been classified as critical. This affects an unknown part of the file /classes/Master.php?f=save_inquiry. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The associated…
ModifiedMedium (6.1)0.39%—Oretnom23 AC Repair AND Services System7/13/20236/17/2026
A vulnerability has been found in SourceCodester AC Repair and Services System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file admin/?page=user/manage_user. The manipulation of the argument firstname/middlename leads to cross site scripting. The attack can be…
ModifiedCritical (9.8)0.54%—Oretnom23 AC Repair AND Services System7/13/20236/17/2026
A vulnerability, which was classified as critical, was found in SourceCodester AC Repair and Services System 1.0. Affected is an unknown function of the file Master.php?f=delete_book of the component HTTP POST Request Handler. The manipulation of the argument id leads to sql injection. It is possible to launch the…
ModifiedCritical (9.8)0.54%—Oretnom23 AC Repair AND Services System7/13/20236/17/2026
A vulnerability, which was classified as critical, has been found in SourceCodester AC Repair and Services System 1.0. This issue affects some unknown processing of the file Master.php?f=save_book of the component HTTP POST Request Handler. The manipulation of the argument id leads to sql injection. The attack may be…
ModifiedCritical (9.8)0.49%—Oretnom23 AC Repair AND Services System7/11/20236/17/2026
A vulnerability was found in SourceCodester AC Repair and Services System 1.0 and classified as critical. This issue affects some unknown processing of the file Master.php?f=save_service of the component HTTP POST Request Handler. The manipulation of the argument id leads to sql injection. The attack may be initiated…
ModifiedHigh (8.8)0.26%—984.ru FOR THE Visually Impaired5/26/20236/17/2026
Cross-Site Request Forgery (CSRF) vulnerability in 984.Ru For the visually impaired plugin <= 0.58 versions.
ModifiedCritical (9.8)0.94%—Oretnom23 AC Repair AND Services System5/11/20236/17/2026
A vulnerability classified as critical has been found in SourceCodester AC Repair and Services System 1.0. Affected is an unknown function of the file /classes/Master.php?f=delete_service. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been…
ModifiedMedium (6.5)0.63%—Oretnom23 AC Repair AND Services System4/29/20236/17/2026
A vulnerability was found in SourceCodester AC Repair and Services System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /admin/bookings/manage_booking.php. The manipulation of the argument id leads to sql injection. The attack can be launched remotely.…
ModifiedMedium (6.5)0.53%—Oretnom23 AC Repair AND Services System4/29/20236/17/2026
A vulnerability was found in SourceCodester AC Repair and Services System 1.0. It has been classified as critical. Affected is an unknown function of the file /admin/user/manage_user.php. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been…
ModifiedMedium (6.5)0.63%—Oretnom23 AC Repair AND Services System4/28/20236/17/2026
A vulnerability was found in SourceCodester AC Repair and Services System 1.0 and classified as critical. This issue affects some unknown processing of the file /admin/inquiries/view_inquiry.php. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The exploit has been…
ModifiedMedium (6.5)0.63%—Oretnom23 AC Repair AND Services System4/28/20236/17/2026
A vulnerability has been found in SourceCodester AC Repair and Services System 1.0 and classified as critical. This vulnerability affects unknown code of the file /admin/bookings/view_booking.php. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The exploit has been…
ModifiedMedium (6.5)0.63%—Oretnom23 AC Repair AND Services System4/28/20236/17/2026
A vulnerability, which was classified as critical, was found in SourceCodester AC Repair and Services System 1.0. This affects an unknown part of the file /admin/services/view_service.php. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been…
ModifiedMedium (6.5)0.63%—Oretnom23 AC Repair AND Services System4/28/20236/17/2026
A vulnerability, which was classified as critical, has been found in SourceCodester AC Repair and Services System 1.0. Affected by this issue is some unknown functionality of the file services/view.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The exploit has…
ModifiedHigh (7.8)0.43%—Wondershare Repairit4/4/20236/17/2026
An issue found in Wondershare Technology Co.,Ltd Repairit v.3.5.4 allows a remote attacker to execute arbitrary commands via the repairit_setup_full5913.exe file.
ModifiedHigh (7.8)0.51%💥 PoCOutbyte PC Repair9/7/20227/29/2026
Outbyte PC Repair Installation File 1.7.112.7856 is vulnerable to Dll Hijacking. iertutil.dll is missing so an attacker can use a malicious dll with same name and can get admin privileges.
ModifiedCritical (9.8)1.6%—Computer AND Mobile Repair Shop Management System Project Computer AND Mobile Repair Shop Management System1/20/20226/17/2026
An SQL Injection vulnerability exists in Sourcecodester Computer and Mobile Repair Shop Management system (RSMS) 1.0 via the code parameter in /rsms/ node app.
ModifiedCritical (9.1)3.1%💥 PoCKeypair Project Keypair10/11/20216/17/2026
keypair is a a RSA PEM key generator written in javascript. keypair implements a lot of cryptographic primitives on its own or by borrowing from other libraries where possible, including node-forge. An issue was discovered where this library was generating identical RSA keys used in SSH. This would mean that the…
ModifiedMedium (6.1)3.9%💥 ExploitSmartdatasoft CAR Repair Services & Auto Mechanic6/1/20216/17/2026
The Car Repair Services & Auto Mechanic WordPress theme before 4.0 did not properly sanitise its serviceestimatekey search parameter before outputting it back in the page, leading to a reflected Cross-Site Scripting issue
ModifiedHigh (8.1)1.0%—Oracle Depot Repair4/22/20216/17/2026
Vulnerability in the Oracle Depot Repair product of Oracle E-Business Suite (component: LOVs). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Depot Repair. Successful attacks of this vulnerability…
Orbitaley — Vulnerabilities