Library System Project maintains a focused library-management software product that operates in institutional and organizational deployments, with observed vulnerabilities concentrated in data-access and file-handling layers. The durable signal centers on input-validation weaknesses, specifically SQL injection and unrestricted file uploads, reflecting typical risks in web-facing database applications. Current severity, exploitation status, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Library System Project over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-5580CRITICAL A vulnerability classified as critical has been found in SourceCodester Library System 1.0. This affects an unknown part of the file index.php. The manipulation of the argument cat | Oct 14, 2023 | 9.8 | 30 | NO | NO |
CVE-2021-26200CRITICAL The user area for Library System 1.0 is vulnerable to SQL injection where a user can bypass the authentication and login as the admin user. | Feb 15, 2021 | 9.8 | 30 | NO | NO |
CVE-2024-3948CRITICAL A vulnerability was found in SourceCodester Home Clean Service System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file \admin\st | Apr 18, 2024 | 9.8 | 26 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Library System Project.
Media articles that mention a CVE ID that affects a product developed by Library System Project — matched by CVE ID, not by vendor name.