Vulnerabilidades en code-projects

1282 resultados
Análisis Vexday

O portfólio de vulnerabilidades do vendor code-projects acumula 1.281 CVEs catalogadas, com volume expressivo de entradas recentes — 136 apenas nos últimos 90 dias —, o que indica ritmo elevado de descobertas e atenção crescente da comunidade de pesquisa. A falha mais frequente é CWE-89 (injeção de SQL), padrão que tende a ser explorado de forma sistemática, e 146 CVEs já possuem prova de conceito pública disponível, reduzindo a barreira técnica para possíveis atacantes. A CVE mais perigosa ativa no momento é CVE-2023-7137, com score EPSS de 0,1703, o maior registrado no conjunto — embora nenhuma CVE desse vendor figure no catálogo KEV da CISA, taxa abaixo da média geral do catálogo. A combinação de PoCs públicas numerosas, falhas de injeção recorrentes e cadência alta de novas vulnerabilidades recomenda atenção prioritária a revisões de código e controles de entrada em projetos que utilizem componentes desse vendor.

CVE-2025-7830MEDIUMcode-projects Church Donation System reg.php sql injectionEPSS 0.4%CVE-2025-7515MEDIUMcode-projects Online Appointment Booking System ulocateus.php sql injectionEPSS 0.4%CVE-2025-6450MEDIUMcode-projects Simple Online Hotel Reservation System confirm_reserve.php sql injectionEPSS 0.4%CVE-2025-6451MEDIUMcode-projects Simple Online Hotel Reservation System delete_pending.php sql injectionEPSS 0.4%CVE-2025-7833MEDIUMcode-projects Church Donation System giving.php sql injectionEPSS 0.4%CVE-2025-7861MEDIUMcode-projects Church Donation System search.php sql injectionEPSS 0.4%CVE-2025-6668MEDIUMcode-projects Inventory Management System fetchSelectedBrand.php sql injectionEPSS 0.4%CVE-2025-6447MEDIUMcode-projects Simple Online Hotel Reservation System index.php sql injectionEPSS 0.4%CVE-2025-7829MEDIUMcode-projects Church Donation System login.php sql injectionEPSS 0.4%CVE-2025-7517MEDIUMcode-projects Online Appointment Booking System getDay.php sql injectionEPSS 0.4%CVE-2025-6457MEDIUMcode-projects Online Hotel Reservation System demo.php sql injectionEPSS 0.4%CVE-2025-6611MEDIUMcode-projects Inventory Management System createBrand.php sql injectionEPSS 0.4%CVE-2025-8164MEDIUMcode-projects Public Chat Room send_message.php sql injectionEPSS 0.4%CVE-2024-13035MEDIUMcode-projects Chat System update_user.php sql injectionEPSS 0.4%CVE-2025-1374MEDIUMcode-projects Real Estate Property Management System search.php sql injectionEPSS 0.4%CVE-2025-5704MEDIUMcode-projects Real Estate Property Management System User.php sql injectionEPSS 0.4%CVE-2025-15196MEDIUMcode-projects Assessment Management login.php sql injectionEPSS 0.4%CVE-2026-4908MEDIUMcode-projects Simple Laundry System Parameter modstaffinfo.php sql injectionEPSS 0.4%CVE-2025-1197MEDIUMcode-projects Real Estate Property Management System load_user-profile.php sql injectionEPSS 0.4%CVE-2024-10448MEDIUMcode-projects Blood Bank Management System delete.php cross-site request forgeryEPSS 0.4%