Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
A security vulnerability has been detected in SourceCodester School Registration and Fee System 1.0. This impacts an unknown function of the file /bilal/save_class.php. The manipulation of the argument Category leads to sql injection. Remote exploitation of the attack is possible. The exploit has been disclosed publicly and may be used. Join the discussion | CVE Database V5 | 09/13/2026, 14:00:12 UTC Added: 09/13/2026, 14:17:03 UTC |
A Cross-Site Scripting (XSS) vulnerability in the web backend for the Repetico app 1.9.7.31 for Android allows a remote authenticated user to execute arbitrary JavaScript code in the app's context via crafted input in the multiple-choice question text field. Join the discussion | CVE Database V5 | 09/13/2026, 00:00:00 UTC Added: 09/14/2026, 00:02:22 UTC |
CVE-2026-76764 is a SQL injection vulnerability in code-projects Employee Management System version 1.0. The flaw exists in an unknown function within the /process/aprocess.php file at the Admin Login Endpoint, where manipulation of the mailuid argument allows SQL injection. This vulnerability can be exploited remotely. An exploit has been published but there is no indication of active exploitation in the wild. Join the discussion | CVE Database V5 | 08/20/2026, 00:00:13 UTC Added: 08/20/2026, 00:07:38 UTC |
CVE-2026-76762 is a medium severity SQL injection vulnerability in code-projects Assessment Management version 1.0. The flaw exists in an unknown function within the /welcome.php file where the userid argument is improperly handled, allowing remote attackers to inject SQL code. Exploit code is publicly available, but no official patch or remediation guidance has been provided yet. Join the discussion | CVE Database V5 | 08/19/2026, 23:15:10 UTC Added: 08/19/2026, 23:22:53 UTC |
CVE-2026-76574 is a SQL injection vulnerability in code-projects Hospital Information System version 1.0. It affects the User::login function in includes/users/UsersController.php, allowing remote attackers to manipulate the email argument to perform SQL injection. The vulnerability has a CVSS 4.0 score of 6.9 (medium severity). Exploit code has been published but no known active exploitation in the wild is reported. No patch or official remediation information is provided. Join the discussion | CVE Database V5 | 08/19/2026, 20:00:10 UTC Added: 08/19/2026, 20:07:54 UTC |
CVE-2026-75778 is a SQL injection vulnerability in code-projects Task Management System version 1.0. The flaw exists in the Operation::select_with_multiple_condition function within the /index.php file of the Login Form component. An attacker can remotely exploit this vulnerability by manipulating the email argument to execute arbitrary SQL commands. The vulnerability has a CVSS 4.0 base score of 6.9, indicating medium severity. Public exploit code is available, but no known active exploitation in the wild has been reported. No patch or remediation information is provided. Join the discussion | CVE Database V5 | 08/18/2026, 12:15:10 UTC Added: 08/18/2026, 12:35:16 UTC |
A vulnerability was found in SourceCodester Photo Share Website 1.0. This affects an unknown function of the file /social/ajax.php?action=signup. Performing a manipulation of the argument email results in sql injection. Remote exploitation of the attack is possible. The exploit has been made public and could be used. Join the discussion | GCVE Database | 08/07/2026, 16:15:09 UTC Added: 08/08/2026, 14:52:18 UTC |
SourceCodester Photo Share Website 1.0 contains a vulnerability in the /social/ajax.php?action=save_upload endpoint. Manipulation of the img[] or imgName[] arguments allows unrestricted file upload. The vulnerability can be exploited remotely and public exploit details are available. No patch or remediation information is currently provided. Join the discussion | GCVE Database | 08/07/2026, 16:00:09 UTC Added: 08/08/2026, 14:52:18 UTC |
A security vulnerability has been detected in PHPGurukul Company Visitor Management System 1.0. This issue affects some unknown processing of the file /manage-newvisitors.php. The manipulation of the argument fullname leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed publicly and may be used. Join the discussion | CVE Database V5 | 08/07/2026, 14:45:09 UTC Added: 08/07/2026, 15:12:05 UTC |
A vulnerability was determined in itsourcecode Electronic Judging System 1.0. Impacted is an unknown function of the file /intrams/admin/add_judges.php. This manipulation of the argument fname causes sql injection. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized. Join the discussion | CVE Database V5 | 07/14/2026, 05:30:08 UTC Added: 07/14/2026, 06:04:03 UTC |
Showing 1 to 10 of 178 results