Vulnerabilidades en itsourcecode

658 resultados
Análisis Vexday

Com 539 CVEs catalogadas e 58 surgidas nos últimos 90 dias, o volume de vulnerabilidades associadas a produtos do itsourcecode apresenta uma cadência de descoberta elevada e recente que merece acompanhamento contínuo. Nenhuma entrada consta no catálogo KEV da CISA — taxa abaixo da média geral —, e os scores EPSS registrados permanecem baixos, incluindo o da CVE-2025-0944, apontada como a mais crítica no momento, com EPSS de 0,0096. Apesar da ausência de exploração ativa confirmada, a presença de 59 CVEs com PoC pública amplia a superfície de risco potencial, já que provas de conceito facilitam a conversão de vulnerabilidades teóricas em ataques reais. O predomínio de CWE-89 (SQL Injection) como tipo de falha mais recorrente indica deficiências sistemáticas na camada de acesso a dados, sugerindo que revisões de código centradas em sanitização de entrada e uso de consultas parametrizadas devem ser priorizadas.

CVE-2026-3134MEDIUMitsourcecode News Portal Project edit-category.php sql injectionEPSS 0.3%CVE-2026-3261MEDIUMitsourcecode School Management System Setting index.php sql injectionEPSS 0.3%CVE-2025-13234MEDIUMitsourcecode Inventory Management System index.php sql injectionEPSS 0.3%CVE-2025-13236MEDIUMitsourcecode Inventory Management System index.php sql injectionEPSS 0.3%CVE-2026-3765MEDIUMitsourcecode University Management System att_single_view.php sql injectionEPSS 0.3%CVE-2024-8208MEDIUMnafisulbari/itsourcecode Insurance Management System editClient.php cross site scriptingEPSS 0.3%CVE-2026-4473MEDIUMitsourcecode Online Doctor Appointment System appointment_action.php sql injectionEPSS 0.3%CVE-2026-9526MEDIUMitsourcecode Electronic Judging System edit_team.php sql injectionEPSS 0.3%CVE-2026-19071MEDIUMitsourcecode Hospital Management System viewappointment.php sql injectionEPSS 0.3%CVE-2026-9525MEDIUMitsourcecode Electronic Judging System edit_judge.php sql injectionEPSS 0.3%CVE-2026-19070MEDIUMitsourcecode Hospital Management System viewadmin.php sql injectionEPSS 0.3%CVE-2026-90574MEDIUMitsourcecode Sales and Inventory System emp_transac.php add sql injectionEPSS 0.3%CVE-2026-19069MEDIUMitsourcecode Hospital Management System treatmentrecord.php sql injectionEPSS 0.3%CVE-2026-9528MEDIUMitsourcecode Electronic Judging System delete_judge.php sql injectionEPSS 0.3%CVE-2026-92364MEDIUMitsourcecode Leave Management System index.php sql injectionEPSS 0.3%CVE-2026-4842MEDIUMitsourcecode Online Enrollment System Parameter index.php sql injectionEPSS 0.3%CVE-2026-3486MEDIUMitsourcecode College Management System student-fee.php sql injectionEPSS 0.3%CVE-2026-0582MEDIUMitsourcecode Society Management System edit_activity_query.php sql injectionEPSS 0.3%CVE-2026-4472MEDIUMitsourcecode Online Frozen Foods Ordering System admin_edit_supplier.php sql injectionEPSS 0.3%CVE-2025-13568MEDIUMitsourcecode COVID Tracking System page sql injectionEPSS 0.3%