Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
0 CVE-2025-69564 is a critical SQL Injection vulnerability affecting the code-projects Mobile Shop Management System 1.0. The flaw exists in the /ExAddNewUser.php endpoint, where multiple parameters including Name, Address, email, UserName, Password, confirm_password, Role, Branch, and Activate are vulnerable to injection. This vulnerability allows an unauthenticated attacker to execute arbitrary SQL commands remotely without user interaction, potentially leading to full compromise of the backend database. The CVSS score is 9.8, indicating high impact on confidentiality, integrity, and availability. Although no known exploits are currently in the wild, the ease of exploitation and critical impact make this a severe threat. European organizations using this system, especially retail and shop management businesses, face risks of data breaches, data manipulation, and service disruption. Immediate mitigation involves input validation, parameterized queries, and applying patches once available. Join the discussion | CVE Database V5 | 01/27/2026, 00:00:00 UTC Added: 01/27/2026, 16:35:56 UTC |
0 CVE-2025-69562 is a critical SQL Injection vulnerability found in code-projects Mobile Shop Management System 1.0, specifically in the /insertmessage.php script via the userid parameter. This vulnerability allows unauthenticated remote attackers to execute arbitrary SQL commands, potentially leading to full compromise of the backend database. The CVSS score of 9.8 reflects the high impact on confidentiality, integrity, and availability without requiring authentication or user interaction. Exploitation could result in data theft, data manipulation, or complete system takeover. No known exploits are currently reported in the wild, and no patches have been published yet. European organizations using this system, especially retailers and mobile shop operators, face significant risks. Mitigation should focus on immediate input validation, use of prepared statements, and network-level protections. Join the discussion | CVE Database V5 | 01/27/2026, 00:00:00 UTC Added: 01/27/2026, 16:35:56 UTC |
0 CVE-2025-69563 is a critical SQL Injection vulnerability in code-projects Mobile Shop Management System 1.0, specifically in the /ExLogin.php script via the Password parameter. This vulnerability allows unauthenticated remote attackers to execute arbitrary SQL commands, potentially leading to full compromise of the backend database. The CVSS score of 9.8 reflects the high impact on confidentiality, integrity, and availability without requiring authentication or user interaction. Although no known exploits are currently reported in the wild, the ease of exploitation and severity make it a significant threat. European organizations using this system are at risk of data breaches, unauthorized access, and service disruption. Immediate mitigation involves applying patches or implementing input validation and parameterized queries. Countries with higher adoption of this software or with strategic retail and mobile commerce sectors are more likely to be affected. Join the discussion | CVE Database V5 | 01/27/2026, 00:00:00 UTC Added: 01/27/2026, 16:20:57 UTC |
Showing 1 to 3 of 3 results