Skip to main content

Threat Intelligence Database

Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Package: pkg:github/francoisjacquet/rosariosis

Threat Intelligence

Click on any threat for detailed analysis and mitigation recommendations

A SQL injection vulnerability exists in francoisjacquet RosarioSIS up to version 12.7.4 within the Student Medical Module. The flaw involves manipulation of an argument in the file modules/Students/includes/Medical.inc.php, allowing remote attackers to execute SQL injection attacks. Upgrading to version 12.8 resolves the issue.

Join the discussion

A vulnerability was found in francoisjacquet RosarioSIS up to 12.8. This issue affects some unknown processing of the file Modules.php. Performing a manipulation results in cross-site request forgery. Remote exploitation of the attack is possible. Upgrading to version 12.9 is capable of addressing this issue. The patch is named 801a71272c82cf4bf695fdc5ed42a9b7511d124d. It is recommended to upgrade the affected component.

Join the discussion

CVE-2026-19786 is a cross-site request forgery (CSRF) vulnerability in francoisjacquet RosarioSIS affecting versions up to 12.8. The issue involves improper processing in the Modules.php file that allows remote attackers to perform unauthorized actions via CSRF. Upgrading to version 12.9 addresses this vulnerability. The CVSS 4.0 base score is 5.3, indicating a medium severity level.

Join the discussion

A vulnerability has been found in francoisjacquet RosarioSIS up to 12.7.4. This vulnerability affects unknown code of the file modules/Students/includes/Medical.inc.php of the component Student Medical Module. Such manipulation of the argument table leads to sql injection. The attack may be launched remotely. Upgrading to version 12.8 is able to resolve this issue. The name of the patch is 6234a0ee0124c0667c824693ac77164f18946ddf. Upgrading the affected component is recommended.

Join the discussion

A flaw has been found in francoisjacquet RosarioSIS up to 12.8. This affects the function DBUpdate of the file Discipline/Referrals.php. This manipulation causes authorization bypass. The attack may be initiated remotely. The exploit has been published and may be used. Upgrading to version 12.9 is able to mitigate this issue. Patch name: 04dd1a368ddf80ad7082baefa3c656e4e1825c76. It is suggested to upgrade the affected component.

Join the discussion

Showing 1 to 5 of 5 results

Filters:Package: pkg:github/francoisjacquet/rosariosis
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses