Clive 21 maintains a small portfolio of web-based business applications including a news portal, hotel reservation system, and directory management platform that serve as public-facing services. Vulnerabilities affecting the vendor skew strongly toward critical severity and recur across input-handling and file-upload boundaries, with SQL injection, broader injection flaws, and unrestricted file uploads representing the durable weakness pattern—typical of web applications where input validation and output encoding are foundational. Current severity and exploitation activity are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Clive 21 over time
Signals from CVEs in this vendor scope (10 CVEs).
10 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-3135CRITICAL A weakness has been identified in itsourcecode News Portal Project 1.0. The impacted element is an unknown function of the file /admin/add-category.php. This manipulation of the ar | Feb 25, 2026 | 9.8 | 32 | NO | NO |
CVE-2026-3134CRITICAL A security flaw has been discovered in itsourcecode News Portal Project 1.0. The affected element is an unknown function of the file /newsportal/admin/edit-category.php. The manipu | Feb 25, 2026 | 9.8 | 32 | NO | NO |
CVE-2026-3164CRITICAL A vulnerability was found in itsourcecode News Portal Project 1.0. This issue affects some unknown processing of the file /admin/contactus.php. The manipulation of the argument pag | Feb 25, 2026 | 9.8 | 31 | NO | NO |
CVE-2026-1688CRITICAL A security vulnerability has been detected in itsourcecode Directory Management System 1.0. The affected element is an unknown function of the file /admin/index.php. The manipulati | Jan 30, 2026 | 9.8 | 30 | NO | NO |
CVE-2026-2225CRITICAL A flaw has been found in itsourcecode News Portal Project 1.0. This vulnerability affects unknown code of the file /admin/index.php of the component Administrator Login. This manip | Feb 9, 2026 | 9.8 | 29 | NO | NO |
CVE-2026-2161CRITICAL A vulnerability was found in itsourcecode Directory Management System 1.0. Affected by this issue is some unknown functionality of the file /admin/forget-password.php. The manipula | Feb 8, 2026 | 9.8 | 29 | NO | NO |
CVE-2024-6116CRITICAL A vulnerability, which was classified as critical, has been found in itsourcecode Simple Online Hotel Reservation System 1.0. Affected by this issue is some unknown functionality o | Jun 18, 2024 | 9.8 | 27 | NO | NO |
CVE-2024-6115CRITICAL A vulnerability classified as critical was found in itsourcecode Simple Online Hotel Reservation System 1.0. Affected by this vulnerability is an unknown functionality of the file | Jun 18, 2024 | 9.8 | 27 | NO | NO |
CVE-2024-6308CRITICAL A vulnerability was found in itsourcecode Simple Online Hotel Reservation System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file index.ph | Jun 25, 2024 | 9.8 | 25 | NO | NO |
CVE-2026-2162HIGH A vulnerability was determined in itsourcecode News Portal Project 1.0. This affects an unknown part of the file /admin/aboutus.php. This manipulation of the argument pagetitle cau | Feb 8, 2026 | 7.2 | 23 | NO | NO |
Signals from CVEs in this vendor scope (10 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Clive 21.
Media articles that mention a CVE ID that affects a product developed by Clive 21 — matched by CVE ID, not by vendor name.