Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

projectworlds — Vulnerabilities & Security Advisories 101

Browse all 101 CVE security advisories affecting projectworlds. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Projectworlds operates as a provider of enterprise resource planning and business management software, primarily targeting small to medium-sized enterprises for inventory, sales, and accounting automation. Security audits have identified a significant volume of vulnerabilities, with 101 Common Vulnerabilities and Exposures currently documented. The most prevalent issues involve remote code execution and cross-site scripting, often stemming from inadequate input validation in web interfaces. Additionally, the platform has historically suffered from broken access control flaws, allowing unauthorized privilege escalation and data exposure. These weaknesses suggest systemic gaps in secure coding practices and rigorous penetration testing protocols. While no single catastrophic breach has been widely publicized, the high count of active CVEs indicates persistent exposure to automated exploitation tools. Organizations relying on this software must prioritize immediate patching and network segmentation to mitigate the risk of compromise, given the consistent pattern of critical severity ratings in recent disclosures.

Found 16 results / 101Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2025-14571 projectworlds Advanced Library Management System borrow_book.php sql injection — Advanced Library Management SystemCWE-89 7.3 High2025-12-12
CVE-2025-14570 projectworlds Advanced Library Management System view_admin.php sql injection — Advanced Library Management SystemCWE-89 7.3 High2025-12-12
CVE-2025-14527 projectworlds Advanced Library Management System view_book.php sql injection — Advanced Library Management SystemCWE-89 7.3 High2025-12-11
CVE-2025-14212 projectworlds Advanced Library Management System member_search.php sql injection — Advanced Library Management SystemCWE-89 7.3 High2025-12-08
CVE-2025-14211 projectworlds Advanced Library Management System delete_book.php sql injection — Advanced Library Management SystemCWE-89 7.3 High2025-12-08
CVE-2025-14210 projectworlds Advanced Library Management System delete_member.php sql injection — Advanced Library Management SystemCWE-89 7.3 High2025-12-08
CVE-2025-13572 projectworlds Advanced Library Management System delete_admin.php sql injection — Advanced Library Management SystemCWE-89 7.3 High2025-11-23
CVE-2025-13278 projectworlds Advanced Library Management System borrowed_book_search.php sql injection — Advanced Library Management SystemCWE-89 6.3 Medium2025-11-17
CVE-2025-13256 projectworlds Advanced Library Management System borrow.php sql injection — Advanced Library Management SystemCWE-89 6.3 Medium2025-11-17
CVE-2025-13255 projectworlds Advanced Library Management System book_search.php sql injection — Advanced Library Management SystemCWE-89 6.3 Medium2025-11-17
CVE-2025-13254 projectworlds Advanced Library Management System add_member.php sql injection — Advanced Library Management SystemCWE-89 6.3 Medium2025-11-17
CVE-2025-13253 projectworlds Advanced Library Management System add_librarian.php sql injection — Advanced Library Management SystemCWE-89 6.3 Medium2025-11-16
CVE-2025-12237 projectworlds Advanced Library Management System index.php sql injection — Advanced Library Management SystemCWE-89 7.3 High2025-10-27
CVE-2025-11475 projectworlds Advanced Library Management System view_member.php sql injection — Advanced Library Management SystemCWE-89 7.3 High2025-10-08
CVE-2025-11426 projectworlds Advanced Library Management System edit_book.php unrestricted upload — Advanced Library Management SystemCWE-434 6.3 Medium2025-10-08
CVE-2025-11425 projectworlds Advanced Library Management System edit_admin.php cross site scripting — Advanced Library Management SystemCWE-79 2.4 Low2025-10-08

This page lists every published CVE security advisory associated with projectworlds. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.