Products: 1
    Vulnerabilities: 4
    Known Exploited: 0
    0
    Critical Level Threats
    0
    High Level Threats
    3
    Medium Level Threats
    1
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2025-63709

    A Cross-Site Scripting (XSS) vulnerability exists in SourceCodester Simple To-Do List System 1.0 in the "Add Tasks" text input. An authenticated user can submit HTML/JavaScript that is not correctly sanitized or encoded on output. The injected script is stored and later rendered in the browser of any user who views the task, allowing execution of arbitrary script in the context of the victim's browser.

    Last Modified: Dec 01, 2025
    Published: Nov 10, 2025

    CVE-2025-10117

    SourceCodester Simple To-Do List System Add New Task fetch_tasks.php cross site scripting

    Last Modified: Sep 10, 2025
    Published: Sep 09, 2025

    CVE-2025-4248

    SourceCodester Simple To-Do List System complete_task.php sql injection

    Last Modified: May 13, 2025
    Published: May 04, 2025

    CVE-2025-4247

    SourceCodester Simple To-Do List System delete_task.php sql injection

    Last Modified: May 13, 2025
    Published: May 04, 2025
    Items Per Page