Products: 1
Vulnerabilities: 18
Known Exploited: 0
2
Critical Level Threats
8
High Level Threats
8
Medium Level Threats
0
Low Level Threats
Vulnerabilities
100806040200
JanFebMarAprMayJunJulAugSepOctNovDec
Critical Level Threats
High Level Threats
Medium Level Threats
Low Level Threats
Products Security index
Actions
Items Per Page
Vulnerabilities
CVE-2019-25669
qdPM 9.1 SQL Injection via search_by_extrafields Parameter
Last Modified: Apr 10, 2026
Published: Apr 05, 2026
CVE-2018-25208
qdPM 9.1 SQL Injection via filter_by Parameters
Last Modified: Apr 20, 2026
Published: Mar 26, 2026
CVE-2023-45855
qdPM 9.2 allows Directory Traversal to list files and directories by navigating to the /uploads URI.
Last Modified: Nov 21, 2024
Published: Oct 14, 2023
CVE-2023-45856
qdPM 9.2 allows remote code execution by using the Add Attachments feature of Edit Project to upload a .php file to the /uploads URI.
Last Modified: Nov 21, 2024
Published: Oct 14, 2023
CVE-2022-26180
qdPM 9.2 allows Cross-Site Request Forgery (CSRF) via the index.php/myAccount/update URI.
Last Modified: Nov 21, 2024
Published: Apr 08, 2022
Items Per Page
