A vulnerability was found in CodeAstro Online Leave Application 1.0. It has been rated as critical. Affected is an unknown function of the file /signup.php. Performing manipulation of the argument city results in sql injection.
This vulnerability was named CVE-2025-11113. The attack may be initiated remotely. In addition, an exploit is available.
Other parameters might be affected as well.
A vulnerability categorized as critical has been discovered in CodeAstro Online Leave Application 1.0. Affected by this vulnerability is an unknown functionality of the file /leaveAplicationForm.php. Executing manipulation of the argument absence[] can lead to sql injection.
The identification of this vulnerability is CVE-2025-11114. The attack may be launched remotely. Furthermore, there is an exploit available.
A vulnerability was found in Campcodes Advanced Online Voting Management System 1.0. It has been classified as critical. This affects an unknown function of the file /admin/candidates_edit.php. This manipulation of the argument ID causes sql injection.
This vulnerability is handled as CVE-2025-11111. The attack can be initiated remotely. Additionally, an exploit exists.
A vulnerability was found in PHPGurukul Employee Record Management System 1.3. It has been declared as problematic. This impacts an unknown function of the file /myprofile.php. Such manipulation of the argument First name leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2025-11112. The attack can be launched remotely. Moreover, an exploit is present.
A vulnerability has been found in Campcodes Computer Sales and Inventory System 1.0 and classified as critical. The affected element is an unknown function of the file /pages/us_edit.php?action=edit. The manipulation of the argument ID leads to sql injection.
This vulnerability is traded as CVE-2025-11109. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
A vulnerability was found in Campcodes Online Learning Management System 1.0 and classified as critical. The impacted element is an unknown function of the file /admin/school_year.php. The manipulation of the argument school_year results in sql injection.
This vulnerability is known as CVE-2025-11110. It is possible to launch the attack remotely. Furthermore, an exploit is available.
A vulnerability marked as problematic has been reported in Authlib up to 1.6.3. This affects an unknown function of the component Header Handler. Performing manipulation results in insufficient verification of data authenticity.
This vulnerability is known as CVE-2025-59420. Remote exploitation of the attack is possible. No exploit is available.
It is suggested to upgrade the affected component.
The cyberattack on UK retailer Co-op in April caused empty shelves, customer data theft, and a $275M revenue loss. In May, the cybercrime group behind the April Co-op cyberattack, who go online with the name DragonForce, told the BBC that they had stolen data from the British retail and provided proof of the data breach. […]
A vulnerability, which was classified as critical, has been found in Pixela PIX-RT100. This vulnerability affects unknown code of the component Setting Handler. This manipulation causes os command injection.
This vulnerability is registered as CVE-2023-22304. The attack requires access to the local network. No exploit is available.
A vulnerability identified as problematic has been detected in JHipster generator-jhipster up to 2.22.x. Impacted is the function validateToken. Performing manipulation results in incorrect comparison.
This vulnerability is cataloged as CVE-2015-20110. The attack must originate from the local network. There is no exploit available.
You should upgrade the affected component.
A vulnerability labeled as critical has been found in Digital Arts m-FILTER. This impacts an unknown function. Such manipulation leads to improper authentication.
This vulnerability is referenced as CVE-2023-22278. It is possible to launch the attack remotely. No exploit is available.
The affected component should be upgraded.
A vulnerability identified as problematic has been detected in Yamcs 5.8.6. The affected element is an unknown function. This manipulation causes cross site scripting.
This vulnerability is tracked as CVE-2023-45279. The attack is possible to be carried out remotely. No exploit exists.
You should upgrade the affected component.
A vulnerability was found in WAB-MAT up to 5.0.0.8 and classified as critical. The impacted element is an unknown function. The manipulation results in unquoted search path.
This vulnerability is cataloged as CVE-2023-22282. The attack must be initiated from a local position. There is no exploit available.
A vulnerability described as problematic has been identified in Adobe Experience Manager up to 6.5.15.0. This impacts an unknown function. Executing manipulation can lead to open redirect.
This vulnerability is handled as CVE-2023-22266. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is recommended.
A vulnerability classified as problematic has been found in Adobe Experience Manager up to 6.5.15.0. Affected is an unknown function. The manipulation leads to weak encoding for password.
This vulnerability is uniquely identified as CVE-2023-22271. The attack is possible to be carried out remotely. No exploit exists.
It is recommended to upgrade the affected component.