Products: 30
    Vulnerabilities: 279
    Known Exploited: 0
    34
    Critical Level Threats
    57
    High Level Threats
    157
    Medium Level Threats
    30
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Items Per Page

    Vulnerabilities

    CVE-2025-67406

    https://www.sourcecodester.com Advocate office management system 1.0 is affected by: SQL Injection. The impact is: execute arbitrary code (remote). The component is: control/activate_case.php,?id=1. The attack vector is: A SQL Injection vulnerability exists in the activate_case.php in parameter id endpoint of Advocate office management system. Unsanitized user input in the specified parameter is interpolated directly into an SQL query, allowing attackers to infer or extract data and, in some cases, execute stacked/time-based payloads. ¶¶ Affected Component & Parameter Affected Endpoint URL: http://localhost/advocate/kortex_lite/control/activate_case.php?id=1 HTTP Method: GET Vulnerable File: activate_case.php Parameter: id Vector Location: GET Injection Techniques (as identified by sqlmap) Type: error-based Title: MySQL >= 5.1 AND error-based - WHERE, HAVING, ORDER BY or GROUP BY clause (EXTRACTVALUE) Payload: id=1 AND EXTRACTVALUE(6268,CONCAT(0x5c,0x71766b6a71,(SELECT (ELT(6268=6268,1))),0x716a7a6b71)) Type: time-based blind Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP) Payload: id=1 AND (SELECT 4464 FROM (SELECT(SLEEP(5)))aHqo) Proof of Concept (Burp Repeater)

    Last Modified: Aug 04, 2026
    Published: Jul 29, 2026

    CVE-2026-3738

    SourceCodester Pet Grooming Management Software Financial Report improper authorization

    Last Modified: Apr 16, 2026
    Published: Mar 08, 2026

    CVE-2026-3737

    SourceCodester Pet Grooming Management Software User Creation add_user.php improper authorization

    Last Modified: Apr 17, 2026
    Published: Mar 08, 2026

    CVE-2026-2009

    SourceCodester Gas Agency Management System createUser.php access control

    Last Modified: Apr 18, 2026
    Published: Feb 06, 2026

    CVE-2026-1702

    SourceCodester Pet Grooming Management Software User Management user.php improper authorization

    Last Modified: Apr 18, 2026
    Published: Jan 30, 2026
    Items Per Page
    Mayurik Vulnerabilities & Security CVEs | CVE-DB