Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

kidaze — Vulnerabilities & Security Advisories 9

Browse all 9 CVE security advisories affecting kidaze. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Kidaze is a web application framework primarily used for building content management systems and e-commerce platforms. Historically, it has been vulnerable to multiple remote code execution flaws, cross-site scripting (XSS), and privilege escalation vulnerabilities, with nine CVEs recorded to date. The framework's modular architecture has introduced security risks through insecure deserialization and improper input validation. Notable incidents include a 2022 RCE vulnerability allowing unauthenticated attackers to execute arbitrary code on affected servers, and persistent XSS issues in user-generated content modules. Security researchers have criticized inconsistent sanitization practices across its components, making it a target for opportunistic attacks seeking to compromise web infrastructure.

Found 9 results / 9 Clear Filters
Top products by kidaze: CourseSelectionSystem
CVE ID Title CVSS Severity Published
CVE-2025-14566 kidaze CourseSelectionSystem reg.php sql injection — CourseSelectionSystem CWE-89 7.3 High 2025-12-12
CVE-2025-14565 kidaze CourseSelectionSystem login1.php sql injection — CourseSelectionSystem CWE-89 7.3 High 2025-12-12
CVE-2025-11089 kidaze CourseSelectionSystem COUNT3s4.php sql injection — CourseSelectionSystem CWE-89 7.3 High 2025-09-28
CVE-2025-11052 kidaze CourseSelectionSystem COUNT3s5.php sql injection — CourseSelectionSystem CWE-89 7.3 High 2025-09-27
CVE-2025-11033 kidaze CourseSelectionSystem COUNT3s7.php sql injection — CourseSelectionSystem CWE-89 7.3 High 2025-09-26
CVE-2025-11032 kidaze CourseSelectionSystem COUNT3s6.php sql injection — CourseSelectionSystem CWE-89 7.3 High 2025-09-26
CVE-2025-10665 kidaze CourseSelectionSystem COUNT3s3.php sql injection — CourseSelectionSystem CWE-89 6.3 Medium 2025-09-18
CVE-2025-10597 kidaze CourseSelectionSystem COUNT2.php sql injection — CourseSelectionSystem CWE-89 7.3 High 2025-09-17
CVE-2025-10477 kidaze CourseSelectionSystem eligibility.php sql injection — CourseSelectionSystem CWE-89 6.3 Medium 2025-09-15

This page lists every published CVE security advisory associated with kidaze. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.