Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-9449 is a medium severity SQL injection vulnerability in version 1.0 of the code-projects Employee Management System. The flaw exists in an unspecified function within the /changepassemp.php file and can be exploited remotely without user interaction. The vulnerability allows an attacker to manipulate SQL queries, potentially compromising the database. No official patch or remediation guidance is currently available from the vendor. Exploit code is publicly available, but there are no confirmed reports of exploitation in the wild. Join the discussion | CVE Database V5 | 05/25/2026, 10:15:11 UTC Added: 05/25/2026, 11:10:10 UTC |
A flaw has been found in code-projects Employee Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /changepassemp.php. Executing a manipulation of the argument ID can lead to cross site scripting. The attack may be performed from remote. The exploit has been published and may be used. Join the discussion | CVE Database V5 | 05/25/2026, 02:30:10 UTC Added: 05/25/2026, 18:58:30 UTC |
A security vulnerability has been detected in code-projects Employee Management System 1.0. The affected element is an unknown function of the file 370project/cancel.php. The manipulation of the argument id/token leads to sql injection. The attack is possible to be carried out remotely. The exploit has been disclosed publicly and may be used. Join the discussion | CVE Database V5 | 04/27/2026, 11:15:11 UTC Added: 04/27/2026, 11:30:26 UTC |
CVE-2026-7063 is a medium severity SQL injection vulnerability in code-projects Employee Management System version 1.0. It affects the /370project/process/eprocess.php endpoint by allowing remote attackers to manipulate the 'pwd' argument to perform SQL injection. The vulnerability is publicly known but there is no confirmed patch or official remediation available at this time. Join the discussion | CVE Database V5 | 04/26/2026, 22:30:15 UTC Added: 04/26/2026, 22:45:06 UTC |
A vulnerability, which was classified as critical, was found in itsourcecode Employee Management System 1.0. Affected is an unknown function of the file /admin/index.php. The manipulation of the argument Username leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. Join the discussion | CVE Database V5 | 07/25/2025, 22:02:06 UTC Added: 07/25/2025, 22:17:54 UTC |
0 SQL Injection vulnerability in Employee Management System v1.0 allows attackers to run arbitrary SQL commands via the admin_id parameter in update-admin.php. Join the discussion | CVE Database V5 | 03/19/2024, 00:00:00 UTC Added: 02/25/2026, 21:45:57 UTC |
Showing 1 to 6 of 6 results