Newpk Project maintains a narrowly scoped product offering centered on the Newpk application, where the observed vulnerability pattern reflects input-handling gaps characteristic of database-connected systems. The recurring signal centers on SQL injection, indicating a structural need for enhanced input validation and parameterized query practices in this product's codebase. Current vulnerability counts, severity distribution, and exploitation activity are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Newpk Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-20189CRITICAL SQL Injection vulnerability in NewPK 1.1 via the title parameter to admin\newpost.php. | Dec 14, 2020 | 9.8 | 30 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Newpk Project.
Media articles that mention a CVE ID that affects a product developed by Newpk Project — matched by CVE ID, not by vendor name.