projectworlds

229 tracked vulnerabilities.

CVE-2025-13573 MEDIUM
projectworlds advanced_library_management_system 1.0 - Unrestricted File Upload via /add_book.php Image Parameter
Nov 24, 2025
CVSS 6.3
EPSS 0.00
CVE-2025-13572 HIGH
projectworlds Advanced Library Management System 1.0 - SQL Injection via admin_id Parameter in delete_admin.php
Nov 23, 2025
CVSS 7.3
EPSS 0.00
CVE-2025-13278 MEDIUM
projectworlds Advanced Library Management System 1.0 - SQL Injection via Date Range Parameters
Nov 17, 2025
CVSS 6.3
EPSS 0.00
CVE-2025-13256 MEDIUM
projectworlds Advanced Library Management System 1.0 - SQL Injection via borrow.php roll_number Parameter
Nov 17, 2025
CVSS 6.3
EPSS 0.00
CVE-2025-13255 MEDIUM
projectworlds Advanced Library Management System 1.0 - SQL Injection via book_search.php book_pub/book_title Parameter
Nov 17, 2025
CVSS 6.3
EPSS 0.00
CVE-2025-13254 MEDIUM
projectworlds Advanced Library Management System 1.0 - SQL Injection via Roll Number Parameter
Nov 17, 2025
CVSS 6.3
EPSS 0.00
CVE-2025-13253 MEDIUM
projectworlds Advanced Library Management System 1.0 - SQL Injection via Username Parameter in /add_librarian.php
Nov 17, 2025
CVSS 6.3
EPSS 0.00
CVE-2025-12938 HIGH
Projectworlds Online Admission System 1.0 - SQL Injection
Nov 10, 2025
CVSS 7.3
EPSS 0.00
CVE-2025-12862 MEDIUM
projectworlds Online Notes Sharing Platform 1.0 - Unrestricted Upload
Nov 07, 2025
CVSS 6.3
EPSS 0.00
CVE-2025-12237 HIGH
projectworlds Advanced Library Management System 1.0 - SQL Injection via /index.php keywords Parameter
Oct 27, 2025
CVSS 7.3
EPSS 0.00
CVE-2025-12231 LOW
projectworlds Expense Management System 1.0 - Cross-Site Scripting in Expense Categories Page
Oct 27, 2025
CVSS 2.4
EPSS 0.00
CVE-2025-12230 LOW
projectworlds Expense Management System 1.0 - Cross-Site Scripting in Currency Page
Oct 27, 2025
CVSS 2.4
EPSS 0.00
CVE-2025-12229 LOW
projectworlds Expense Management System 1.0 - Cross-Site Scripting in Roles Page
Oct 27, 2025
CVSS 2.4
EPSS 0.00
CVE-2025-12228 LOW
projectworlds Expense Management System 1.0 - Cross-Site Scripting in Users Page
Oct 27, 2025
CVSS 2.4
EPSS 0.00
CVE-2025-12227 LOW
projectworlds Gate Pass Management System 1.0 - Cross-Site Scripting in /add-pass.php
Oct 27, 2025
CVSS 3.5
EPSS 0.00
CVE-2025-12215 HIGH
projectworlds Online Shopping System 1.0 - SQL Injection via /login_submit.php Keywords Parameter
Oct 27, 2025
CVSS 7.3
EPSS 0.00
CVE-2025-11604 HIGH
projectworlds Online Ordering Food System 1.0 - SQL Injection via Status Parameter in all-orders.php
Oct 11, 2025
CVSS 7.3
EPSS 0.00
CVE-2025-11557 HIGH
projectworlds Gate Pass Management System 1.0 - SQL Injection via fullname Parameter in add-pass.php
Oct 09, 2025
CVSS 7.3
EPSS 0.00
CVE-2025-60311 HIGH
ProjectWorlds Gym Management System 1.0 - SQL Injection
Oct 08, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-11475 HIGH
Advanced Library Management System 1.0 - SQL Injection
Oct 08, 2025
CVSS 7.3
EPSS 0.00
CVE-2025-11426 MEDIUM
Advanced Library Management System 1.0 - Unrestricted Upload
Oct 08, 2025
CVSS 6.3
EPSS 0.00
CVE-2025-11425 LOW
Advanced Library Management System 1.0 - XSS
Oct 08, 2025
CVSS 2.4
EPSS 0.00
CVE-2025-11103 MEDIUM
Projectworlds Online Tours and Travels 1.0 - Unrestricted Upload
Sep 28, 2025
CVSS 4.7
EPSS 0.00
CVE-2025-11070 HIGH
Projectworlds Online Shopping System 1.0 - SQL Injection
Sep 27, 2025
CVSS 7.3
EPSS 0.00
CVE-2025-11067 LOW
Projectworlds Visitor Management System 1.0 - XSS
Sep 27, 2025
CVSS 2.4
EPSS 0.00