Skip to main content

CWE archive

CWE-74 CVEs

Programmatic archive

4,976 CVEs tagged with CWE-74242 Critical, 531 High, 3,009 Medium, 1,193 Low, 1 Unrated.

CVE-2026-8133

Published May 8, 2026

A security vulnerability has been detected in zyx0814 FilePress up to 2.2.0. Affected by this vulnerability is an unknown functionality of the file dzz/shares/admin.php of the com…

CVSS 5.5 · Medium
evidence mentions
8
Buzz score
28.5

CVE-2026-8132

Published May 8, 2026

A weakness has been identified in CodeAstro Leave Management System 1.0. Affected is an unknown function of the file /login.php. This manipulation of the argument txt_username cau…

CVSS 5.5 · Medium
evidence mentions
5
Buzz score
29.4

CVE-2026-8131

Published May 8, 2026

A security flaw has been discovered in SourceCodester SUP Online Shopping 1.0. This impacts an unknown function of the file /admin/replymsg.php. The manipulation of the argument m…

CVSS 5.5 · Medium
evidence mentions
5
Buzz score
29.4

CVE-2026-8130

Published May 8, 2026

A vulnerability was identified in SourceCodester SUP Online Shopping 1.0. This affects an unknown function of the file /admin/message.php. The manipulation of the argument seenid…

CVSS 5.5 · Medium
evidence mentions
5
Buzz score
29.4

CVE-2026-8129

Published May 8, 2026

A vulnerability was determined in SourceCodester SUP Online Shopping 1.0. The impacted element is an unknown function of the file wishlist.php. Executing a manipulation of the arg…

CVSS 5.5 · Medium
evidence mentions
5
Buzz score
29.4

CVE-2026-8128

Published May 8, 2026

A vulnerability was found in SourceCodester SUP Online Shopping 1.0. The affected element is an unknown function of the file /admin/viewmsg.php. Performing a manipulation of the a…

CVSS 5.5 · Medium
evidence mentions
5
Buzz score
29.4

CVE-2026-8126

Published May 8, 2026

A flaw has been found in SourceCodester Comment System 1.0. This issue affects some unknown processing of the file post_comment.php. This manipulation of the argument Name causes…

CVSS 5.5 · Medium
evidence mentions
5
Buzz score
29.4

CVE-2026-8125

Published May 8, 2026

A vulnerability was detected in code-projects Simple Chat System 1.0. This vulnerability affects unknown code of the file sendMessage.php. The manipulation of the argument type/le…

CVSS 2.1 · Low
evidence mentions
5
Buzz score
29.4

CVE-2026-8114

Published May 7, 2026

A vulnerability was identified in JeecgBoot up to 3.9.1. Affected by this issue is some unknown functionality of the file /sys/dict/loadTreeData of the component JSON Object Handl…

CVSS 2.1 · Low
evidence mentions
5
Buzz score
24.4

CVE-2026-26164

Published May 7, 2026

Improper neutralization of special elements used in a command ('command injection') in M365 Copilot allows an unauthorized attacker to disclose information over a network.

CVSS 7.5 · High
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2026-8098

Published May 7, 2026

A security vulnerability has been detected in code-projects Feedback System 1.0. Impacted is an unknown function of the file /admin/checklogin.php. Such manipulation of the argume…

CVSS 5.5 · Medium
evidence mentions
5
Buzz score
29.4

CVE-2026-8097

Published May 7, 2026

A security flaw has been discovered in CodeAstro Online Classroom 1.0. This vulnerability affects unknown code of the file /askquery.php. The manipulation of the argument squeryx…

CVSS 2.1 · Low
evidence mentions
5
Buzz score
29.4

CVE-2026-41691

Published May 7, 2026

Copilot said: i18nextify is a JavaScript library that adds i18nextify is a JavaScript library that adds website internationalization via a script tag, without source code changes.…

CVSS 6.5 · Medium
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2026-8083

Published May 7, 2026

A vulnerability was found in SourceCodester Pharmacy Sales and Inventory System 1.0. This affects an unknown part of the file /ajax.php?action=save_user. The manipulation of the a…

CVSS 5.5 · Medium
evidence mentions
5
Buzz score
29.4

CVE-2026-7833

Published May 5, 2026

A weakness has been identified in EFM ipTIME C200 up to 1.092. This vulnerability affects the function sub_408F90 of the file /cgi/iux_set.cgi of the component ApplyRestore Endpoi…

CVSS 7.3 · High
evidence mentions
4
Buzz score
22.6

CVE-2026-7822

Published May 5, 2026

A vulnerability was identified in itsourcecode Courier Management System 1.0. This impacts an unknown function of the file /print_pdets.php. The manipulation of the argument ids l…

CVSS 2.1 · Low
evidence mentions
5
Buzz score
29.4

CVE-2026-7812

Published May 5, 2026

A vulnerability was found in 54yyyu code-mcp up to 4cfc4643541a110c906d93635b391bf7e357f4a8. The impacted element is the function git_operation of the file src/code_mcp/server.py…

CVSS 5.5 · Medium
evidence mentions
5
Buzz score
24.4

CVE-2026-7783

Published May 5, 2026

A flaw has been found in CodeCanyon Perfex CRM up to 3.4.1. This vulnerability affects the function AbstractKanban::applySortQuery of the file application/services/AbstractKanban.…

CVSS 2.1 · Low
evidence mentions
4
Buzz score
26.1

CVE-2026-7746

Published May 4, 2026

A vulnerability was identified in SourceCodester Web-based Pharmacy Product Management System 1.0. Affected is an unknown function of the file /product_expiry/edit-admin.php. Such…

CVSS 2.1 · Low
evidence mentions
5
Buzz score
29.4

CVE-2026-7745

Published May 4, 2026

A vulnerability was determined in CodeAstro Online Classroom 1.0. This impacts an unknown function of the file /OnlineClassroom/facultydetails. This manipulation of the argument d…

CVSS 2.1 · Low
evidence mentions
5
Buzz score
29.4

CVE-2026-7744

Published May 4, 2026

A vulnerability was found in CodeAstro Online Classroom 1.0. This affects an unknown function of the file /OnlineClassroom/addnewstudent. The manipulation of the argument fname re…

CVSS 2.1 · Low
evidence mentions
5
Buzz score
29.4

CVE-2026-7743

Published May 4, 2026

A vulnerability has been found in CodeAstro Online Classroom 1.0. The impacted element is an unknown function of the file /OnlineClassroom/studentdetails. The manipulation of the…

CVSS 2.1 · Low
evidence mentions
5
Buzz score
29.4

CVE-2026-7742

Published May 4, 2026

A flaw has been found in CodeAstro Online Classroom 1.0. The affected element is an unknown function of the file /OnlineClassroom/facultylogin. Executing a manipulation of the arg…

CVSS 2.1 · Low
evidence mentions
5
Buzz score
29.4

CVE-2026-7741

Published May 4, 2026

A vulnerability was detected in CodeAstro Online Classroom 1.0. Impacted is an unknown function of the file /OnlineClassroom/studentlogin. Performing a manipulation of the argumen…

CVSS 2.1 · Low
evidence mentions
5
Buzz score
29.4

CVE-2026-7731

Published May 4, 2026

A security vulnerability has been detected in code-projects BloodBank Managing System 1.0. The affected element is an unknown function of the file get_state.php. The manipulation…

CVSS 2.1 · Low
evidence mentions
5
Buzz score
29.4
Showing 401-425 of 4,976 CVEsPage 17 of 200