| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-6000 | code-projects Online Library Management System SQL Database Backup File library.sql information disclosure | code-projects | Online Library Management System | Medium | 4.3 | 2026-04-10 02:00:19 | Deep Dive |
| CVE-2026-3360 | Tutor LMS <= 3.9.7 - Missing Authorization to Unauthenticated Arbitrary Billing Profile Overwrite via 'order_id' Parameter | themeum | Tutor LMS – eLearning and online course solution | High | 7.5 | 2026-04-10 01:24:58 | Deep Dive |
| CVE-2026-2519 | Online Scheduling and Appointment Booking System – Bookly <= 27.0 - Unauthenticated Price Manipulation via 'tips' | ladela | Online Scheduling and Appointment Booking System – Bookly | Medium | 5.3 | 2026-04-09 12:28:06 | Deep Dive |
| CVE-2026-5836 | code-projects Online Shoe Store admin_product.php cross site scripting | code-projects | Online Shoe Store | Low | 2.4 | 2026-04-09 03:00:21 | Deep Dive |
| CVE-2026-5835 | code-projects Online Shoe Store admin_football.php cross site scripting | code-projects | Online Shoe Store | Low | 2.4 | 2026-04-09 02:45:11 | Deep Dive |
| CVE-2026-5834 | code-projects Online Shoe Store admin_running.php cross site scripting | code-projects | Online Shoe Store | Low | 2.4 | 2026-04-09 02:30:11 | Deep Dive |
| CVE-2026-5814 | PHPGurukul Online Course Registration check_availability.php sql injection | PHPGurukul | Online Course Registration | High | 7.3 | 2026-04-08 23:00:17 | Deep Dive |
| CVE-2026-5813 | PHPGurukul Online Course Registration check_availability.php sql injection | PHPGurukul | Online Course Registration | High | 7.3 | 2026-04-08 22:45:12 | Deep Dive |
| CVE-2026-5811 | SourceCodester Online Food Ordering System POST Parameter Actions.php save_product logic error | SourceCodester | Online Food Ordering System | Medium | 5.4 | 2026-04-08 22:15:13 | Deep Dive |
| CVE-2026-5167 | Masteriyo LMS <= 2.1.7 - Unauthenticated Authorization Bypass to Arbitrary Order Completion via Stripe Webhook Endpoint | masteriyo | Masteriyo LMS – Online Course Builder for eLearning, LMS & Education | Medium | 5.3 | 2026-04-08 06:43:41 | Deep Dive |
| CVE-2026-4333 | LearnPress <= 4.3.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'skin' Shortcode Attribute | thimpress | LearnPress – WordPress LMS Plugin for Create and Sell Online Courses | Medium | 6.4 | 2026-04-08 03:36:08 | Deep Dive |
| CVE-2026-5705 | code-projects Online Hotel Booking Booking Endpoint booknow.php cross site scripting | code-projects | Online Hotel Booking | Medium | 4.3 | 2026-04-06 23:30:12 | Deep Dive |
| CVE-2026-5682 | Meesho Online Shopping App com.meesho.supply endpoint risky encryption | Meesho | Online Shopping App | Low | 3.7 | 2026-04-06 19:45:15 | Deep Dive |
| CVE-2026-5666 | code-projects Online FIR System SQL Database Backup File complaints.sql sensitive information | code-projects | Online FIR System | Medium | 5.3 | 2026-04-06 15:30:14 | Deep Dive |
| CVE-2026-5665 | code-projects Online FIR System Login checklogin.php sql injection | code-projects | Online FIR System | High | 7.3 | 2026-04-06 15:15:13 | Deep Dive |
| CVE-2026-5650 | code-projects Online Application System for Admission oas.sql sensitive information | code-projects | Online Application System for Admission | Medium | 5.3 | 2026-04-06 11:30:13 | Deep Dive |
| CVE-2026-5649 | code-projects Online Application System for Admission Endpoint admsnform.php sql injection | code-projects | Online Application System for Admission | Medium | 6.3 | 2026-04-06 11:15:11 | Deep Dive |
| CVE-2026-5647 | code-projects Online Shoe Store Add Product admin_feature.php cross site scripting | code-projects | Online Shoe Store | Low | 2.4 | 2026-04-06 10:45:10 | Deep Dive |
| CVE-2026-5641 | PHPGurukul Online Shopping Portal Project Parameter update-image1.php sql injection | PHPGurukul | Online Shopping Portal Project | Medium | 6.3 | 2026-04-06 09:15:12 | Deep Dive |
| CVE-2026-5640 | PHPGurukul Online Shopping Portal Project Parameter update-image2.php sql injection | PHPGurukul | Online Shopping Portal Project | Medium | 6.3 | 2026-04-06 09:00:17 | Deep Dive |