Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
7.5 HIGH
CVE-2026-5564 — code-projects Simple Laundry System Parameter searchguest.php sql injection

A weakness has been identified in code-projects Simple Laundry System 1.0. Affected by this vulnerability is an unknown functionality of the file /searchguest.php of the component Parameter Handler. …

simple_laundry_system | Remote | Injection
Apr 05, 2026 Apr 29, 2026
Apr 05, 2026
Apr 29, 2026
6.5 MEDIUM
CVE-2026-5563 — AutohomeCorp frostmourne Alarm Preview previewData httpTest sql injection

A security flaw has been discovered in AutohomeCorp frostmourne up to 1.0. Affected is the function httpTest of the file /api/monitor-api/alarm/previewData of the component Alarm Preview. The manipul…

Remote | Injection
Apr 05, 2026 Apr 29, 2026
Apr 05, 2026
Apr 29, 2026
9.8 CRITICAL
CVE-2026-5562 — provectus kafka-ui Endpoint testexecutions validateAccess code injection

A vulnerability was identified in provectus kafka-ui up to 0.7.2. This impacts the function validateAccess of the file /api/smartfilters/testexecutions of the component Endpoint. The manipulation lea…

ui | Remote | Injection
Apr 05, 2026 Apr 30, 2026
Apr 05, 2026
Apr 30, 2026
6.5 MEDIUM
CVE-2026-5561 — Campcodes Complete POS Management and Inventory System Environment Variable SettingsContr…

A vulnerability was determined in Campcodes Complete POS Management and Inventory System up to 4.0.6. This affects an unknown function of the file app/Http/Controllers/SettingsController.php of the c…

Remote | Injection
Apr 05, 2026 Apr 29, 2026
Apr 05, 2026
Apr 29, 2026
6.5 MEDIUM
CVE-2026-5560 — PHPGurukul Online Shopping Portal Project Parameter payment-method.php sql injection

A vulnerability was found in PHPGurukul Online Shopping Portal Project 2.1. The impacted element is an unknown function of the file /payment-method.php of the component Parameter Handler. Performing …

online_shopping_portal_project | Remote | Injection
Apr 05, 2026 Apr 29, 2026
Apr 05, 2026
Apr 29, 2026
6.5 MEDIUM
CVE-2026-5559 — AntaresMugisho PyBlade AST Validation sandbox.py _is_safe_ast special elements used in a …

A vulnerability has been found in AntaresMugisho PyBlade 0.1.8-alpha/0.1.9-alpha. The affected element is the function _is_safe_ast of the file sandbox.py of the component AST Validation. Such manipu…

Remote | Injection
Apr 05, 2026 Apr 29, 2026
Apr 05, 2026
Apr 29, 2026
Showing 20 of 5626 Results