Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Leave Management System — Vulnerabilities & Security Advisories 18

All 18 CVE vulnerabilities found in Leave Management System, with AI-generated Chinese analysis, references, and POCs.

This page aggregates security vulnerabilities identified in the Leave Management System, a specialized human resources application. It compiles reported weaknesses categorized by Common Vulnerabilities and Exposures identifiers, covering incidents documented from the system's initial release through the current reporting period. The data encompasses various flaw types, including unauthorized access, data exposure, and input validation errors. Visitors can use this resource to track specific vendor advisories, understand the prevalence of particular weakness classes within enterprise HR software, or review the complete vulnerability history of the Leave Management System. By centralizing these reports, the page facilitates a clear analysis of how the product's security posture has evolved over time. Users interested in risk assessment or compliance auditing will find detailed links to original disclosure reports and mitigation guidance. This collection serves as a technical reference for security teams evaluating the software's integrity against known exploitation patterns. The entries are organized chronologically and by severity, allowing for both targeted research on individual CVEs and broader trend analysis. No commercial promotion is present; the focus remains strictly on the technical details of discovered flaws and their impact on system confidentiality, integrity, and availability.

Vendor: itsourcecode

CVE ID Title CVSS Severity Published
CVE-2026-103690 itsourcecode Leave Management System controller.php sql injection CWE-89 6.3 Medium 2026-10-01
CVE-2026-103543 itsourcecode Leave Management System controller.php sql injection CWE-89 6.3 Medium 2026-10-01
CVE-2026-95833 itsourcecode Leave Management System index.php sql injection CWE-89 6.3 Medium 2026-09-22
CVE-2026-94032 itsourcecode Leave Management System index.php sql injection CWE-89 6.3 Medium 2026-09-20
CVE-2026-93963 itsourcecode Leave Management System controller.php sql injection CWE-89 6.3 Medium 2026-09-20
CVE-2026-92526 itsourcecode Leave Management System index.php sql injection CWE-89 6.3 Medium 2026-09-16
CVE-2026-92364 itsourcecode Leave Management System index.php sql injection CWE-89 6.3 Medium 2026-09-16
CVE-2026-90796 itsourcecode Leave Management System index.php sql injection CWE-89 6.3 Medium 2026-09-14
CVE-2026-90789 itsourcecode Leave Management System login.php sql injection CWE-89 7.3 High 2026-09-14
CVE-2026-11510 CodeAstro Leave Management System add_leave.php sql injection CWE-89 6.3 Medium 2026-06-08
CVE-2026-11509 CodeAstro Leave Management System search_staff_for_updation.php sql injection CWE-89 6.3 Medium 2026-06-08
CVE-2026-11508 CodeAstro Leave Management System search_staff_to_assign_pc.php sql injection CWE-89 6.3 Medium 2026-06-08
CVE-2026-11507 CodeAstro Leave Management System delete_leave_type.php sql injection CWE-89 6.3 Medium 2026-06-08
CVE-2026-11506 CodeAstro Leave Management System search_staff_for_deletion.php sql injection CWE-89 6.3 Medium 2026-06-08
CVE-2026-9542 CodeAstro Leave Management System add_staff.php sql injection CWE-89 6.3 Medium 2026-05-26
CVE-2026-8132 CodeAstro Leave Management System login.php sql injection CWE-89 7.3 High 2026-05-08
CVE-2025-11433 itsourcecode Leave Management System Query Parameter controller.php redirect cross site scripting CWE-79 3.5 Low 2025-10-08
CVE-2025-11432 itsourcecode Leave Management System reset.php sql injection CWE-89 7.3 High 2025-10-08

All 18 known CVE vulnerabilities affecting Leave Management System with full Chinese analysis, references, and POCs where available.