Kevinwong develops web-based business applications including online food ordering and payroll management systems, with observed vulnerabilities centered on application-layer input handling and file-upload validation. The recurring weakness classes—SQL injection and unrestricted file uploads—reflect common integration points in web applications where user-supplied data requires rigorous sanitization. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Kevinwong over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-8081CRITICAL A vulnerability classified as critical was found in itsourcecode Payroll Management System 1.0. Affected by this vulnerability is an unknown functionality of the file login.php. Th | Aug 22, 2024 | 9.8 | 27 | NO | NO |
CVE-2024-7189CRITICAL A vulnerability classified as critical has been found in itsourcecode Online Food Ordering System 1.0. Affected is an unknown function of the file editproduct.php. The manipulation | Jul 29, 2024 | 9.8 | 27 | NO | NO |
CVE-2024-6373CRITICAL A vulnerability has been found in itsourcecode Online Food Ordering System up to 1.0 and classified as critical. This vulnerability affects unknown code of the file /addproduct.php | Jun 27, 2024 | 9.8 | 27 | NO | NO |
CVE-2024-6253CRITICAL A vulnerability was found in itsourcecode Online Food Ordering System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /purchase.php | Jun 22, 2024 | 9.8 | 27 | NO | NO |
CVE-2024-7838CRITICAL A vulnerability was found in itsourcecode Online Food Ordering System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /addcateg | Aug 15, 2024 | 9.8 | 25 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Kevinwong.
Media articles that mention a CVE ID that affects a product developed by Kevinwong — matched by CVE ID, not by vendor name.