Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
0 CVE-2026-30556 is a reflected Cross-Site Scripting (XSS) vulnerability in SourceCodester Sales and Inventory System 1.0. It occurs in the index.php file via the "msg" parameter, which does not properly sanitize user input. This allows remote attackers to inject arbitrary web scripts or HTML through a crafted URL, potentially impacting confidentiality and integrity. The vulnerability has a medium severity with a CVSS score of 6.1. No official patch or remediation information is currently available. Join the discussion | CVE Database V5 | 03/30/2026, 00:00:00 UTC Added: 03/30/2026, 16:23:20 UTC |
0 A Reflected Cross-Site Scripting (XSS) vulnerability exists in SourceCodester Sales and Inventory System 1.0. The vulnerability is located in the add_stock.php file via the "msg" parameter. The application fails to sanitize the input, allowing remote attackers to inject arbitrary web script or HTML via a crafted URL. Join the discussion | CVE Database V5 | 03/30/2026, 00:00:00 UTC Added: 03/30/2026, 15:53:19 UTC |
0 A Reflected Cross-Site Scripting (XSS) vulnerability exists in SourceCodester Sales and Inventory System 1.0. The vulnerability is located in the add_purchase.php file via the "msg" parameter. The application fails to sanitize the input, allowing remote attackers to inject arbitrary web script or HTML via a crafted URL. Join the discussion | CVE Database V5 | 03/30/2026, 00:00:00 UTC Added: 03/30/2026, 15:53:19 UTC |
0 A Reflected Cross-Site Scripting (XSS) vulnerability exists in SourceCodester Sales and Inventory System 1.0. The vulnerability is located in the add_supplier.php file via the "msg" parameter. The application fails to sanitize the input, allowing remote attackers to inject arbitrary web script or HTML via a crafted URL. Join the discussion | CVE Database V5 | 03/30/2026, 00:00:00 UTC Added: 03/30/2026, 15:53:19 UTC |
0 A Reflected Cross-Site Scripting (XSS) vulnerability exists in SourceCodester Sales and Inventory System 1.0. The vulnerability is located in the add_sales.php file via the "msg" parameter. The application fails to sanitize the input, allowing remote attackers to inject arbitrary web script or HTML via a crafted URL. Join the discussion | CVE Database V5 | 03/30/2026, 00:00:00 UTC Added: 03/30/2026, 15:53:19 UTC |
0 A Reflected Cross-Site Scripting (XSS) vulnerability exists in SourceCodester Sales and Inventory System 1.0. The vulnerability is located in the add_customer.php file via the "msg" parameter. The application fails to sanitize the input, allowing remote attackers to inject arbitrary web script or HTML via a crafted URL. Join the discussion | CVE Database V5 | 03/30/2026, 00:00:00 UTC Added: 03/30/2026, 15:53:19 UTC |
0 A Reflected Cross-Site Scripting (XSS) vulnerability exists in SourceCodester Sales and Inventory System 1.0. The vulnerability is located in the add_category.php file via the "msg" parameter. The application fails to sanitize the input, allowing remote attackers to inject arbitrary web script or HTML via a crafted URL. Join the discussion | CVE Database V5 | 03/30/2026, 00:00:00 UTC Added: 03/30/2026, 15:53:19 UTC |
0 A Reflected Cross-Site Scripting (XSS) vulnerability exists in SourceCodester Sales and Inventory System 1.0. The vulnerability is located in the view_customers.php file via the "limit" parameter. The application fails to sanitize the input, allowing remote attackers to inject arbitrary web script or HTML via a crafted URL. Join the discussion | CVE Database V5 | 03/30/2026, 00:00:00 UTC Added: 03/30/2026, 15:23:20 UTC |
0 A Stored Cross-Site Scripting (XSS) vulnerability exists in SourceCodester Sales and Inventory System 1.0. The vulnerability is located in the update_details.php file. The application fails to sanitize the "website" parameter provided in a POST request. This allows authenticated attackers to inject arbitrary web script or HTML that is stored in the database and executed whenever the store details page is accessed. Join the discussion | CVE Database V5 | 03/30/2026, 00:00:00 UTC Added: 03/30/2026, 15:23:20 UTC |
0 A Reflected Cross-Site Scripting (XSS) vulnerability exists in SourceCodester Sales and Inventory System 1.0 in the view_category.php file via the "limit" parameter. The application fails to sanitize the input, allowing remote attackers to inject arbitrary web script or HTML via a crafted URL. Join the discussion | CVE Database V5 | 03/27/2026, 00:00:00 UTC Added: 03/27/2026, 16:59:46 UTC |
Showing 1 to 10 of 12 results