CVE-2026-16765
A vulnerability was determined in CodeAstro Online Classroom 1.0. Affected by this issue is some unknown functionality of the file /OnlineCl
CVSS
7.3
Alto
EPSS
—
KEV
—
Exploit Today
—
0-100
Publicado: 23 jul 2026 · Última mod.: 23 jul 2026 · CWE-74 · CWE-89
Sin historial EPSS suficiente todavía.
A vulnerability was determined in CodeAstro Online Classroom 1.0. Affected by this issue is some unknown functionality of the file /OnlineClassroom/loginlinkadmin.php. Executing a manipulation of the argument aid can lead to sql injection. The attack can be executed remotely. The exploit has been publicly disclosed and may be utilized.
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2026-633599.8 CRÍ—
———The Appriss Insights (Equifax) Victim Information Notification Exchange (VINE) applications allow an unauthenticated attacker to send a specially-crafted request to bypass the login page, access other users' credentials, take over other user accounts, access sensitive PII, and dump other information from the database.10hCVE-2026-65761——
———Joomla Extension - joomshaper.com - Unauthenticated SQL injection in Easy Store extension 1.0.0-2.0.1 - Improper validation of order parameters lead to an unauthenticated SQL injection in easystore, allowing full DB read access including credentials and sessions.10hCVE-2026-655327.6 ALT—
——0Shop manager SQL Injection in Persian Woocommerce SMS <= 7.2.2 versions.14hCVE-2026-655268.5 ALT—
——0Contributor SQL Injection in Visualizer <= 4.0.6 versions.14hCVE-2026-654947.1 ALT—
——0Subscriber SQL Injection in Dokan Pro <= 5.0.2 versions.16hCVE-2026-654627.6 ALT—
——0Administrator SQL Injection in Uncanny Automator <= 7.3.2 versions.15h