| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-14091 | TrippWasTaken PHP-Guitar-Shop Product Details product.php sql injection | TrippWasTaken | PHP-Guitar-Shop | High | 7.3 | 2025-12-05 16:02:06 | Deep Dive |
| CVE-2025-12119 | Bulk write with options may read invalid memory | MongoDB | C Driver | Medium | 6.8 | 2025-11-18 20:21:08 | Deep Dive |
| CVE-2025-13275 | Iqbolshoh php-business-website about.php unrestricted upload | Iqbolshoh | php-business-website | Medium | 4.7 | 2025-11-17 10:32:05 | Deep Dive |
| CVE-2025-64356 | WordPress Insert PHP Code Snippet plugin <= 1.4.3 - Broken Access Control vulnerability | f1logic | Insert PHP Code Snippet | 中危 | - | 2025-10-31 11:42:27 | Deep Dive |
| CVE-2025-12224 | Iqbolshoh php-business-website contact.php cross site scripting | Iqbolshoh | php-business-website | Low | 3.5 | 2025-10-27 04:32:10 | Deep Dive |
| CVE-2025-12202 | ajayrandhawa User-Management-PHP-MYSQL web cross-site request forgery | ajayrandhawa | User-Management-PHP-MYSQL web | Medium | 4.3 | 2025-10-27 01:32:08 | Deep Dive |
| CVE-2025-12201 | ajayrandhawa User-Management-PHP-MYSQL User Management edit-user.php unrestricted upload | ajayrandhawa | User-Management-PHP-MYSQL | Medium | 4.7 | 2025-10-27 01:32:05 | Deep Dive |
| CVE-2025-11594 | ywxbear PHP-Bookstore-Website-Example Quantity index.php improper validation of specified quantity in input | ywxbear | PHP-Bookstore-Website-Example | Medium | 5.3 | 2025-10-11 09:02:05 | Deep Dive |
| CVE-2025-10967 | MuFen-mker PHP-Usermm chkuser.php sql injection | MuFen-mker | PHP-Usermm | High | 7.3 | 2025-09-25 20:02:10 | Deep Dive |
| CVE-2025-10246 | lokibhardwaj PHP-Code-For-Unlimited-File-Upload f.php cross site scripting | lokibhardwaj | PHP-Code-For-Unlimited-File-Upload | Low | 3.5 | 2025-09-11 05:02:07 | Deep Dive |
| CVE-2025-40725 | Reflected Cross-Site Scripting (XSS) in Azon Dominator | Azon Dominator | Azon Dominator PHP script | - | - | 2025-09-10 11:45:19 | Deep Dive |
| CVE-2025-40642 | Reflected Cross-Site Scripting (XSS) in WebWork | WebWork | WebWork PHP script | - | - | 2025-09-08 11:25:15 | Deep Dive |
| CVE-2025-9150 | Surbowl dormitory-management-php violation_add.php sql injection | Surbowl | dormitory-management-php | High | 7.3 | 2025-08-19 17:32:08 | Deep Dive |
| CVE-2025-9002 | Surbowl dormitory-management-php login.php sql injection | Surbowl | dormitory-management-php | High | 7.3 | 2025-08-15 02:02:08 | Deep Dive |
| CVE-2012-10056 | PHP Volunteer Management System 1.0.2 Arbitrary File Upload | PHP Volunteer Management | PHP Volunteer Management | - | - | 2025-08-13 20:51:22 | Deep Dive |
| CVE-2013-10070 | PHP-Charts v1.0 PHP Code Execution | PHP-Charts | PHP-Charts | - | - | 2025-08-05 20:04:45 | Deep Dive |
| CVE-2025-8104 | Memory Usage <= 3.98 - Cross-Site Request Forgery to Limited Plugin Installation via wpmemory_install_plugin Function | sminozzi | Memory Usage, Memory Limit, PHP and Server Memory Health Check and Provide Suggestions | Medium | 4.3 | 2025-07-27 04:23:40 | Deep Dive |
| CVE-2025-52779 | WordPress Dot html,php,xml etc pages plugin <= 1.0 - Cross Site Scripting (XSS) Vulnerability | karimmughal | Dot html,php,xml etc pages | High | 7.1 | 2025-07-16 11:27:56 | Deep Dive |
| CVE-2025-40724 | Stored Cross-Site Scripting (XSS) in Pharmacy POS PHP Script | Pharmacy POS PHP Script | Pharmacy POS PHP Script | - | - | 2025-07-16 09:23:16 | Deep Dive |
| CVE-2025-1735 | pgsql extension does not check for errors during escaping | PHP Group | PHP | Medium | 5.9 | 2025-07-13 22:27:48 | Deep Dive |