VYPR
Vendor

Remyandrade

Products
42
CVEs
77
Across products
65
Status
Private

Products

42
View all 42 products →

Recent CVEs

77
View all 77 CVEs →
  • CVE-2024-24496CriFeb 8, 2024
    risk 0.68cvss 9.8epss 0.20

    An issue in Daily Habit Tracker v.1.0 allows a remote attacker to manipulate trackers via the home.php, add-tracker.php, delete-tracker.php, update-tracker.php components.

  • CVE-2024-24495CriFeb 8, 2024
    risk 0.67cvss 9.8epss 0.01

    SQL Injection vulnerability in delete-tracker.php in Daily Habit Tracker v.1.0 allows a remote attacker to execute arbitrary code via crafted GET request.

  • CVE-2025-70457CriJan 23, 2026
    risk 0.64cvss 9.8epss 0.01

    A Remote Code Execution (RCE) vulnerability exists in Sourcecodester Modern Image Gallery App v1.0 within the gallery/upload.php component. The application fails to properly validate uploaded file contents. Additionally, the application preserves the user-supplied file extension…

  • CVE-2024-25302CriFeb 9, 2024
    risk 0.64cvss 9.8epss 0.01

    Sourcecodester Event Student Attendance System 1.0, allows SQL Injection via the 'student' parameter.

  • CVE-2024-24141CriJan 29, 2024
    risk 0.64cvss 9.8epss 0.01

    Sourcecodester School Task Manager App 1.0 allows SQL Injection via the 'task' parameter.

  • CVE-2025-1160HigFeb 10, 2025
    risk 0.48cvss 7.3epss 0.01

    A vulnerability was found in SourceCodester Employee Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file index.php. The manipulation of the argument username/password leads to use of default credentials. The…

  • CVE-2024-1197HigFeb 2, 2024
    risk 0.47cvss 7.3epss 0.01

    A vulnerability, which was classified as critical, has been found in SourceCodester Testimonial Page Manager 1.0. This issue affects some unknown processing of the file delete-testimonial.php of the component HTTP GET Request Handler. The manipulation of the argument testimony…

  • CVE-2024-24140HigJan 29, 2024
    risk 0.47cvss 7.2epss 0.01

    Sourcecodester Daily Habit Tracker App 1.0 allows SQL Injection via the parameter 'tracker.'

  • CVE-2024-24139HigJan 29, 2024
    risk 0.47cvss 7.2epss 0.01

    Sourcecodester Login System with Email Verification 1.0 allows SQL Injection via the 'user' parameter.

  • CVE-2024-24494MedFeb 8, 2024
    risk 0.45cvss 6.1epss 0.26

    Cross Site Scripting vulnerability in Daily Habit Tracker v.1.0 allows a remote attacker to execute arbitrary code via the day, exercise, pray, read_book, vitamins, laundry, alcohol and meat parameters in the add-tracker.php and update-tracker.php components.

  • CVE-2025-63892MedNov 18, 2025
    risk 0.44cvss 6.8epss 0.00

    A vulnerability was determined in SourceCodester Student Grades Management System 1.0. Affected is the function create_classroom of the file /classroom.php of the component My Classrooms Management Page. This manipulation of the argument name/description causes stored cross site…

  • CVE-2026-3695MedMar 8, 2026
    risk 0.42cvss 6.5epss 0.01

    A vulnerability has been found in SourceCodester Modern Image Gallery App 1.0. Impacted is an unknown function of the file /delete.php. Such manipulation of the argument filename leads to path traversal. It is possible to launch the attack remotely. The exploit has been…

  • CVE-2023-47014MedNov 22, 2023
    risk 0.42cvss 6.5epss 0.00

    A Cross-Site Request Forgery (CSRF) vulnerability in Sourcecodester Sticky Notes App Using PHP with Source Code v.1.0 allows a local attacker to obtain sensitive information via a crafted payload to add-note.php.

  • CVE-2026-3163MedFeb 25, 2026
    risk 0.41cvss 6.3epss 0.00

    A vulnerability has been found in SourceCodester Website Link Extractor 1.0. This vulnerability affects the function file_get_contents of the component URL Handler. The manipulation leads to server-side request forgery. It is possible to initiate the attack remotely. The exploit…

  • CVE-2025-1166MedFeb 11, 2025
    risk 0.41cvss 6.3epss 0.01

    A vulnerability has been found in SourceCodester Food Menu Manager 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file endpoint/update.php. The manipulation leads to unrestricted upload. The attack can be launched remotely. The…

  • CVE-2024-8380MedSep 3, 2024
    risk 0.41cvss 6.3epss 0.01

    A vulnerability was found in SourceCodester Contact Manager with Export to VCF 1.0. It has been rated as critical. This issue affects some unknown processing of the file /endpoint/delete-account.php of the component Delete Contact Handler. The manipulation of the argument…

  • CVE-2024-7748MedAug 13, 2024
    risk 0.41cvss 6.3epss 0.01

    A vulnerability, which was classified as critical, has been found in SourceCodester Accounts Manager App 1.0. This issue affects some unknown processing of the file /endpoint/delete-account.php. The manipulation of the argument account leads to sql injection. The attack may be…

  • CVE-2024-5134MedMay 20, 2024
    risk 0.41cvss 6.3epss 0.01

    A vulnerability was found in SourceCodester Electricity Consumption Monitoring Tool 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /endpoint/delete-bill.php. The manipulation of the argument bill leads to sql injection. The attack can…

  • CVE-2024-2934MedMar 27, 2024
    risk 0.41cvss 6.3epss 0.01

    A vulnerability classified as critical was found in SourceCodester Todo List in Kanban Board 1.0. Affected by this vulnerability is an unknown functionality of the file /endpoint/delete-todo.php. The manipulation of the argument list leads to sql injection. The attack can be…

  • CVE-2024-2604MedMar 18, 2024
    risk 0.41cvss 6.3epss 0.01

    A vulnerability was found in SourceCodester File Manager App 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /endpoint/update-file.php. The manipulation of the argument file leads to unrestricted upload. The attack can be initiated…