Skip to main content

CWE archive

CWE-74 CVEs

Programmatic archive

4,976 CVEs tagged with CWE-74242 Critical, 531 High, 3,009 Medium, 1,193 Low, 1 Unrated.

CVE-2026-7388

Published Apr 29, 2026

A weakness has been identified in EyouCMS up to 1.7.9. Impacted is the function editFile of the file application/admin/logic/FilemanagerLogic.php of the component Template File Ha…

CVSS 2.0 · Low
evidence mentions
4
Buzz score
22.6

CVE-2026-7316

Published Apr 28, 2026

A vulnerability has been found in eiliyaabedini aider-mcp up to 667b914301aada695aab0e46d1fb3a7d5e32c8af. Affected is an unknown function of the file aider_mcp.py of the component…

CVSS 5.5 · Medium
evidence mentions
5
Buzz score
24.4

CVE-2026-7293

Published Apr 28, 2026

A vulnerability was detected in SourceCodester Pizzafy Ecommerce System 1.0. Affected is the function delete_category of the file /admin/ajax.php?action=delete_category. The manip…

CVSS 2.0 · Low
evidence mentions
5
Buzz score
29.4

CVE-2026-7290

Published Apr 28, 2026

A vulnerability was determined in JeecgBoot up to 3.9.1. Impacted is the function SqlInjectionUtil of the file jeecg-boot/jeecg-boot-base-core/src/main/java/org/jeecg/common/util/…

CVSS 2.1 · Low
evidence mentions
7
Buzz score
27.3

CVE-2026-7283

Published Apr 28, 2026

A security flaw has been discovered in SourceCodester Pharmacy Sales and Inventory System 1.0. This impacts the function save_expired of the file /ajax.php?action=save_expired. Th…

CVSS 2.0 · Low
evidence mentions
5
Buzz score
29.4

CVE-2026-7282

Published Apr 28, 2026

A vulnerability was identified in SourceCodester Pharmacy Sales and Inventory System 1.0. This affects the function delete_expired of the file /ajax.php?action=delete_expired. The…

CVSS 2.0 · Low
evidence mentions
5
Buzz score
29.4

CVE-2026-7268

Published Apr 28, 2026

A vulnerability has been found in SourceCodester Pizzafy Ecommerce System 1.0. This impacts the function save_category of the file /admin/ajax.php?action=save_category. Such manip…

CVSS 2.1 · Low
evidence mentions
6
Buzz score
31.0

CVE-2026-7267

Published Apr 28, 2026

A flaw has been found in SourceCodester Pizzafy Ecommerce System 1.0. This affects an unknown function of the file /view_prod.php. This manipulation of the argument ID causes sql…

CVSS 2.1 · Low
evidence mentions
5
Buzz score
29.4

CVE-2026-7266

Published Apr 28, 2026

A vulnerability was detected in SourceCodester Pizzafy Ecommerce System 1.0. The impacted element is the function save_order of the file /admin/ajax.php?action=save_order. The man…

CVSS 2.1 · Low
evidence mentions
5
Buzz score
29.4

CVE-2026-7265

Published Apr 28, 2026

A security vulnerability has been detected in SourceCodester Pizzafy Ecommerce System 1.0. The affected element is the function Category of the file pizza/index.php?page=category.…

CVSS 2.1 · Low
evidence mentions
5
Buzz score
29.4

CVE-2026-7264

Published Apr 28, 2026

A weakness has been identified in SourceCodester Pizzafy Ecommerce System 1.0. Impacted is the function get_cart_items of the file /admin/ajax.php?action=get_cart_items. Executing…

CVSS 2.1 · Low
evidence mentions
5
Buzz score
29.4

CVE-2026-7229

Published Apr 28, 2026

A vulnerability was found in code-projects Coaching Management System 1.0. This affects an unknown function of the file /cims/modules/admin/reply.php of the component POST Handler…

CVSS 2.1 · Low
evidence mentions
5
Buzz score
29.4

CVE-2026-7228

Published Apr 28, 2026

A flaw has been found in SourceCodester Pizzafy Ecommerce System 1.0. The affected element is the function get_cart_count of the file /admin/ajax.php?action=get_cart_count. This m…

CVSS 5.5 · Medium
evidence mentions
5
Buzz score
29.4

CVE-2026-7227

Published Apr 28, 2026

A vulnerability was detected in SourceCodester Pizzafy Ecommerce System 1.0. Impacted is the function Login of the file /admin/ajax.php?action=login. The manipulation of the argum…

CVSS 5.5 · Medium
evidence mentions
5
Buzz score
29.4

CVE-2026-7226

Published Apr 28, 2026

A security vulnerability has been detected in SourceCodester Pizzafy Ecommerce System 1.0. This issue affects the function login2 of the file /admin/ajax.php?action=login2. The ma…

CVSS 5.5 · Medium
evidence mentions
5
Buzz score
29.4

CVE-2026-7225

Published Apr 28, 2026

A weakness has been identified in SourceCodester Pizzafy Ecommerce System 1.0. This vulnerability affects the function delete_menu of the file /admin/ajax.php?action=delete_menu.…

CVSS 5.5 · Medium
evidence mentions
5
Buzz score
29.4

CVE-2026-7224

Published Apr 28, 2026

A security flaw has been discovered in SourceCodester Pizzafy Ecommerce System 1.0. This affects the function delete_cart of the file /admin/ajax.php?action=delete_cart. Performin…

CVSS 5.5 · Medium
evidence mentions
5
Buzz score
29.4

CVE-2026-7215

Published Apr 28, 2026

A security flaw has been discovered in egtai gmx-vmd-mcp up to 0.1.0. This issue affects the function launch_vmd_gui_tool of the file mcp_server.py of the component VMD Launch Han…

CVSS 5.5 · Medium
evidence mentions
5
Buzz score
24.4

CVE-2026-7211

Published Apr 28, 2026

A weakness has been identified in dvladimirov MCP up to 0.1.0. The impacted element is the function GitSearchRequest of the file mcp_server.py of the component Git Search API. Exe…

CVSS 5.5 · Medium
evidence mentions
5
Buzz score
24.4

CVE-2026-7206

Published Apr 28, 2026

A security flaw has been discovered in dubydu sqlite-mcp up to 0.1.0. The affected element is the function extract_to_json of the file src/entry.py. Performing a manipulation of t…

CVSS 5.5 · Medium
evidence mentions
7
Buzz score
27.3

CVE-2026-7199

Published Apr 28, 2026

A vulnerability was detected in SourceCodester Pharmacy Sales and Inventory System 1.0. Affected by this vulnerability is an unknown functionality of the file /ajax.php?action=del…

CVSS 5.5 · Medium
evidence mentions
5
Buzz score
29.4

CVE-2026-7196

Published Apr 28, 2026

A security vulnerability has been detected in CodeAstro Online Classroom 1.0. Affected is an unknown function of the file /guestdetails. Such manipulation of the argument deleteid…

CVSS 2.1 · Low
evidence mentions
5
Buzz score
29.4

CVE-2026-7194

Published Apr 27, 2026

A weakness has been identified in SourceCodester Pharmacy Sales and Inventory System 1.0. This impacts an unknown function of the file /ajax.php?action=save_product. This manipula…

CVSS 5.5 · Medium
evidence mentions
5
Buzz score
29.4

CVE-2026-7160

Published Apr 27, 2026

A vulnerability was determined in Tenda HG3 2.0. This vulnerability affects the function formTracert of the file /boaform/formTracert. Executing a manipulation of the argument dat…

CVSS 7.4 · High
evidence mentions
5
Buzz score
29.4
Vendor/product tagsBeta · best-effort

CVE-2026-7157

Published Apr 27, 2026

A flaw has been found in disler aider-mcp-server up to b2516fa466d0d851932da92ee6d0e66946db9efc. Affected by this vulnerability is an unknown functionality of the file src/aider_m…

CVSS 5.5 · Medium
evidence mentions
5
Buzz score
24.4
Showing 476-500 of 4,976 CVEsPage 20 of 200