Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Security Intel Hub 332+

Curated security advisories, vulnerability analyses, and exploit write-ups — auto-cleaned and translated to English. Updated continuously.

Examples: RCE · SSRF · GHSA · log4j
Filter
Clear filters
CVSS 7.3
Simple Shopping Cart V1.0 SQL Injection in save_order.php
github.com · 2025-07-15

### Key Information #### Affected Product - Simple Shopping Cart #### Vulnerable File - /Customers/save_order.php #### Affected Version - V1.0 #### Vulnerability Type - SQL Injection #### Root Cause -…

Read more
CVSS 7.3
Simple Car Rental System V1.0 SQL Injection Vulnerability in /admin/approve.php
github.com · 2025-07-15

### Key Information #### Affected Product - Simple Car Rental System #### Vulnerable File - /admin/approve.php #### Affected Version - V1.0 #### Vulnerability Type - SQL Injection #### Root Cause - In…

Read more
CVSS 7.3
SQL Injection in Online Appointment Booking System V1.0 (cover.php)
github.com · 2025-07-15

### Key Information Summary #### Affected Product - **Product Name**: Online Appointment Booking System - **Version**: V1.0 #### Vulnerability Details - **Vulnerability Type**: SQL Injection - **Affec…

Read more
CVSS 7.3
SQL Injection in Online Appointment Booking System V1.0 via appointment parameter
github.com · 2025-07-15

### Key Information #### Affected Product - Online Appointment Booking System #### Vulnerable File - /cancelbookingpatient.php #### Version - V1.0 #### Vulnerability Type - SQL Injection #### Root Cau…

Read more
CVSS 6.3
SQL Injection in voters_row.php with POC and Fix
github.com · 2025-07-15

### Key Information #### Vulnerability Description - **Vulnerability Type**: SQL Injection - **Affected File**: `/admin/voters_row.php` - **Issue Description**: User-supplied parameters (such as `id`)…

Read more
CVSS 6.3
SQL Injection in Voting System positions_edit.php with POC
github.com · 2025-07-15

### Key Information #### Vulnerable File - `/admin/positions_edit.php` #### Description In `/admin/positions_edit.php`, user-supplied parameters (such as the `id` parameter) are directly concatenated …

Read more
CVSS 7.3
Modern Bag V1.0 SQL Injection in /admin/login-back.php
github.com · 2025-07-15

### Key Information #### Affected Product - **Product Name**: Modern Bag Project V1.0 - **Vendor Homepage**: https://code-projects.org/modern-bag-in-php-css-javascript-and-mysql-free-download/ #### Vu…

Read more
CVSS 6.3
SQL Injection in voters_edit.php of Voting System with POC
github.com · 2025-07-15

### Key Information #### Vulnerability Description - **Vulnerability Type**: SQL Injection - **Affected File**: `/admin/voters_edit.php` - **Problematic Code**: ```php $id = $_POST['id']; $firstname =…

Read more
CVSS 7.3
Modern Bag V1.0 SQL Injection in admin/slide.php
github.com · 2025-07-15

### Key Information #### Affected Product - **Product Name**: Modern Bag - **Vendor Homepage**: https://code-projects.org/modern-bag-in-php-css-javascript-and-mysql-free-download/ #### Affected and Fi…

Read more
CVSS 7.3
SQL Injection in Online Appointment Booking System V1.0 (ulocateus.php)
github.com · 2025-07-15

### Critical Vulnerability Information #### Affected Product - **Product Name**: Online Appointment Booking System - **Version**: V1.0 #### Vulnerable File - **File Name**: ulocateus.php #### Vulnerab…

Read more
CVSS 6.3
Arbitrary File Upload Vulnerability POC and Code Analysis
github.com · 2025-07-12

### Critical Vulnerability Information #### Vulnerability Type - Arbitrary File Upload Vulnerability #### Vulnerability Location - `/admin/users_photo.php` #### Prerequisites - Administrator privilege…

Read more
CVSS 7.3
LifeStyle Store V1.0 SQL Injection in cart_remove.php (Pre-Auth)
github.com · 2025-07-12

### Key Information #### Affected Product - **Product Name**: LifeStyle Store - **Version**: V1.0 - **Link**: https://code-projects.org/lifestyle-store-in-php-css-javascript-and-mysql-free-download/ #…

Read more
CVSS 7.3
Library System V1.0 Pre-Auth SQL Injection in add-teacher.php with PoC
github.com · 2025-07-12

### Key Information #### Affected Product - **Product Name**: Library System - **Version**: V1.0 - **Affected File**: add-teacher.php #### Vulnerability Type - **Type**: SQL Injection #### Root Cause …

Read more
CVSS 6.3
SQL Injection in Responsive Blog Site PHP v1.0 (single.php)
github.com · 2025-07-12

### Key Information Summary #### Vulnerability Overview - **Vulnerability Type**: SQL Injection - **Affected Software**: Responsive Blog Site in PHP (v1.0) - **Vulnerability Description**: An SQL inje…

Read more
CVSS 7.3
SQL Injection in Student Enrollment system V1.0 login.php with POC
github.com · 2025-07-12

### Key Information #### Affected Product - **Product Name**: Student Enrollment system V1.0 - **Vendor Homepage**: https://code-projects.org/student-enrollment-in-php-with-source-code/ #### Affected …

Read more
CVSS 7.3
SQL Injection in Online Notes Sharing v1.0 /login.php
github.com · 2025-07-12

### Key Information #### Vulnerability Overview - **Vulnerability Type**: SQL Injection (CWE-89) - **Product Name**: Online Notes Sharing - **Version**: v1.0 - **Affected File**: /login.php - **Discov…

Read more
CVSS 6.3
Arbitrary File Upload Vulnerability in code-projects online-notes-sharing V1.0
github.com · 2025-07-12

### Critical Vulnerability Information #### Vulnerability Type - Arbitrary File Upload Vulnerability #### Affected Products and Versions - **Product**: code-projects online-notes-sharing V1.0 - **Affe…

Read more
CVSS 7.3
Mobile Shop V1.0 /LoginAsAdmin.php SQL Injection Vulnerability
github.com · 2025-07-12

### Key Information #### Affected Product - Mobile Shop #### Vulnerable File - /LoginAsAdmin.php #### Affected Version - V1.0 #### Vulnerability Type - SQL Injection #### Root Cause - In the `/LoginAs…

Read more
CVSS 6.3
Library System V1.0 Arbitrary File Upload Vulnerability and RCE Analysis
github.com · 2025-07-12

### Critical Vulnerability Information #### Vulnerability Description - **Type**: Arbitrary File Upload Vulnerability - **Impact**: Allows attackers to upload malicious PHP scripts, bypassing file typ…

Read more
CVSS 6.3
SQL Injection in Responsive Blog Site PHP v1.0 (category.php)
github.com · 2025-07-12

### Key Information Summary #### Vulnerability Overview - **Vulnerability Type**: SQL Injection - **Affected Software**: Responsive Blog Site in PHP (v1.0) - **Vulnerable File**: /Responsive Blog Site…

Read more

All articles are auto-cleaned (markdown extraction + LLM noise removal) and translated to English by our offline pipeline. Source URL is always preserved at the bottom of each article.

Want a specific source covered? Email us — we add new feeds weekly.