Clivedelacruz develops an employee management system that, despite a narrow product scope, operates as a business-critical application handling sensitive workforce data and is therefore a target of interest for attackers seeking to compromise or exfiltrate employment records. Vulnerabilities affecting the vendor skew toward serious outcomes and concentrate in injection and SQL-injection weakness classes, reflecting the application's data-processing role and recurring input-handling flaws that permit attackers to manipulate downstream queries and output streams. Defenders should prioritize patching this vendor's releases and implement input validation and parameterized queries as baseline mitigations; live severity and exploitation counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Clivedelacruz over time
Signals from CVEs in this vendor scope (6 CVEs).
6 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-6351CRITICAL A vulnerability was found in itsourcecode Employee Record Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /editprofile. | Jun 20, 2025 | 9.8 | 26 | NO | NO |
CVE-2025-8172HIGH A vulnerability, which was classified as critical, was found in itsourcecode Employee Management System 1.0. Affected is an unknown function of the file /admin/index.php. The manip | Jul 25, 2025 | 8.8 | 24 | NO | NO |
CVE-2025-7127HIGH A vulnerability, which was classified as critical, was found in itsourcecode Employee Management System up to 1.0. This affects an unknown part of the file /admin/changepassword.ph | Jul 7, 2025 | 7.2 | 20 | NO | NO |
CVE-2025-7126HIGH A vulnerability, which was classified as critical, has been found in itsourcecode Employee Management System up to 1.0. Affected by this issue is some unknown functionality of the | Jul 7, 2025 | 7.2 | 20 | NO | NO |
CVE-2025-7125HIGH A vulnerability classified as critical was found in itsourcecode Employee Management System up to 1.0. Affected by this vulnerability is an unknown functionality of the file /admin | Jul 7, 2025 | 7.2 | 18 | NO | NO |
CVE-2025-6610HIGH A vulnerability was found in itsourcecode Employee Management System up to 1.0. It has been classified as critical. This affects an unknown part of the file /admin/editempprofile.p | Jun 25, 2025 | 7.2 | 18 | NO | NO |
Signals from CVEs in this vendor scope (6 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Clivedelacruz.
Media articles that mention a CVE ID that affects a product developed by Clivedelacruz — matched by CVE ID, not by vendor name.