Cybersecurity & Regolamentazione UE

News & Sicurezza

Aggiornamenti da ENISA, NVD e le principali fonti di cybersecurity europee. Tutto quello che un Responsabile Tecnico deve sapere.

12133 risultati

VulnerabilitàAlta
CVE-2026-5650 - code-projects Online Application System for Admission oas.sql sensitive information

CVE ID :CVE-2026-5650 Published : April 6, 2026, 12:16 p.m. | 1 hour, 39 minutes ago Description :A vulnerability was found in code-projects Online Application System for Admission 1.0. Impacted is an unknown function of the file /enrollment/database/oas.sql. Performing a manipulation results in insecure storage of sensitive information. The attack is possible to be carried out remotely. The exploit has been made public and could be used. Severity: 5.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE06 apr 2026
News
Whitespace Flaw Re-Opens Critical JWT “Algorithm Confusion” Bypass

Whitespace Flaw Re-Opens Critical JWT “Algorithm Confusion” Bypass Security researchers have disclosed two major vulnerabilities within fast-jwt, a high-performance library used to implement JSON Web Tokens (JWT). The flaws reveal that even minor oversights in code l ... Read more Published Date: Apr 06, 2026 (1 day, 2 hours ago) Vulnerabilities has been mentioned in this article.

CVEfeed Newsroom06 apr 2026
News
Apache Traffic Server Vulnerabilities Let Attackers Trigger DoS Attack

Apache Traffic Server Vulnerabilities Let Attackers Trigger DoS Attack The Apache Software Foundation has released emergency security updates to address two severe vulnerabilities in the Apache Traffic Server (ATS). ATS operates as a high-performance web proxy cache that ... Read more Published Date: Apr 06, 2026 (1 day, 1 hour ago) Vulnerabilities has been mentioned in this article. CVE-2025-65114 CVE-2025-58136

CVEfeed Newsroom06 apr 2026
VulnerabilitàAlta
CVE-2026-5648 (CVSS 7.3)

A flaw has been found in code-projects Simple Laundry System 1.0. This vulnerability affects unknown code of the file /userfinishregister.php of the component Parameter Handler. This manipulation of the argument firstName causes sql injection. Remote exploitation of the attack is possible. The exploit has been published and may be used.

NVD (NIST)06 apr 2026
VulnerabilitàAlta
CVE-2026-5646 (CVSS 7.3)

A security vulnerability has been detected in code-projects Easy Blog Site 1.0. Affected by this issue is some unknown functionality of the file login.php. The manipulation of the argument username/password leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used.

NVD (NIST)06 apr 2026
VulnerabilitàAlta
CVE-2026-5645 (CVSS 7.3)

A weakness has been identified in projectworlds Car Rental System 1.0. Affected by this vulnerability is an unknown functionality of the file /pay.php of the component Parameter Handler. Executing a manipulation of the argument mpesa can lead to sql injection. The attack can be launched remotely. The exploit has been made available to the public and could be used for attacks.

NVD (NIST)06 apr 2026
VulnerabilitàAlta
CVE-2026-5645 - projectworlds Car Rental System Parameter pay.php sql injection

CVE ID :CVE-2026-5645 Published : April 6, 2026, 11:17 a.m. | 2 hours, 38 minutes ago Description :A weakness has been identified in projectworlds Car Rental System 1.0. Affected by this vulnerability is an unknown functionality of the file /pay.php of the component Parameter Handler. Executing a manipulation of the argument mpesa can lead to sql injection. The attack can be launched remotely. The exploit has been made available to the public and could be used for attacks. Severity: 7.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE06 apr 2026
VulnerabilitàAlta
CVE-2026-5647 - code-projects Online Shoe Store Add Product admin_feature.php cross site scripting

CVE ID :CVE-2026-5647 Published : April 6, 2026, 11:17 a.m. | 2 hours, 38 minutes ago Description :A vulnerability was detected in code-projects Online Shoe Store 1.0. This affects an unknown part of the file /admin/admin_feature.php of the component Add Product Page. The manipulation of the argument product_name results in cross site scripting. The attack may be launched remotely. The exploit is now public and may be used. Severity: 4.8 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE06 apr 2026
VulnerabilitàAlta
CVE-2026-5648 - code-projects Simple Laundry System Parameter userfinishregister.php sql injection

CVE ID :CVE-2026-5648 Published : April 6, 2026, 11:17 a.m. | 2 hours, 38 minutes ago Description :A flaw has been found in code-projects Simple Laundry System 1.0. This vulnerability affects unknown code of the file /userfinishregister.php of the component Parameter Handler. This manipulation of the argument firstName causes sql injection. Remote exploitation of the attack is possible. The exploit has been published and may be used. Severity: 7.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE06 apr 2026
VulnerabilitàAlta
CVE-2026-5646 - code-projects Easy Blog Site login.php sql injection

CVE ID :CVE-2026-5646 Published : April 6, 2026, 11:17 a.m. | 2 hours, 38 minutes ago Description :A security vulnerability has been detected in code-projects Easy Blog Site 1.0. Affected by this issue is some unknown functionality of the file login.php. The manipulation of the argument username/password leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used. Severity: 7.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE06 apr 2026
News
Critical Dgraph Database Vulnerability Let Attackers Bypass Authentication

Critical Dgraph Database Vulnerability Let Attackers Bypass Authentication A maximum-severity vulnerability in Dgraph, a popular open-source graph database. Tracked as CVE-2026-34976, this critical flaw carries a perfect CVSS score of 10.0. It allows unauthenticated remote a ... Read more Published Date: Apr 06, 2026 (1 day, 1 hour ago) Vulnerabilities has been mentioned in this article.

CVEfeed Newsroom06 apr 2026
VulnerabilitàAlta
CVE-2026-5649 - code-projects Online Application System for Admission Endpoint admsnform.php sql injection

CVE ID :CVE-2026-5649 Published : April 6, 2026, 12:16 p.m. | 1 hour, 39 minutes ago Description :A vulnerability has been found in code-projects Online Application System for Admission 1.0. This issue affects some unknown processing of the file /enrollment/admsnform.php of the component Endpoint. Such manipulation leads to sql injection. The attack can be executed remotely. The exploit has been disclosed to the public and may be used. Severity: 6.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE06 apr 2026

Pagina 202 di 1012

Resta aggiornato sulla cybersecurity

Iscriviti a CodersRegistry per ricevere gli aggiornamenti più importanti su regolamentazione EU e vulnerabilità critiche.