Vulnerabilities

Summary — last 7 days

New vulnerabilities2,635▼ 214 vs. last week
Critical / high1,385▲ 153 vs. last week
New active exploitation (KEV)7▼ 3 vs. last week
Unscored (no CVSS)56▼ 473 vs. last week
–

5 results, sorted by published date (most recent first)

CVEStatusSeverityEPSS Active exploitationAffected technologiesPublished ▼Modified Description
DeferredLow (2.1)0.28%—Vishalmathur Cloudclassroom-php-projectAI9/27/20269/30/2026
A vulnerability was found in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. Affected is an unknown function of the file loginlinkstudent.php. Performing a manipulation of the argument umail results in missing authentication. Remote exploitation of the attack is possible. The…
DeferredLow (2.1)0.42%—Vishalmathur Cloudclassroom-php-projectAI9/26/20269/28/2026
A weakness has been identified in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. This affects an unknown function of the file updatequery.php. Executing a manipulation of the argument queryx can lead to cross site scripting. It is possible to launch the attack remotely. The…
DeferredLow (2.1)0.19%—Vishalmathur Cloudclassroom-php-projectAI9/26/20269/30/2026
A security flaw has been discovered in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. The impacted element is an unknown function of the file /updateguest.php. Performing a manipulation of the argument gname/editassid results in sql injection. It is possible to initiate the…
AnalyzedMedium (5.5)0.50%—Vishalmathur Cloudclassroom-php-project2/6/20266/17/2026
A flaw has been found in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. This impacts an unknown function of the file /postquerypublic.php of the component Post Query Details Page. This manipulation of the argument gnamex causes sql injection. The attack is possible to be…
DeferredMedium (6.5)0.24%—Vishalmathur Cloudclassroom-php-projectAI8/1/20256/17/2026
A SQL Injection vulnerability exists in the takeassessment2.php file of CloudClassroom-PHP-Project 1.0. The Q4 POST parameter is not properly sanitized before being used in SQL queries.