The News System Project maintains a narrowly scoped news management system where the durable signal centers on application-layer input-handling vulnerabilities, specifically SQL injection in database query construction. Current vulnerability counts, severity distribution, and exploitation status are shown in the live statistics panel alongside this summary.
The number and severity of CVEs published that impact products developed by News System Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-7581CRITICAL SQL injection vulnerability in NewsController.php in the News module 5.3.2 and earlier for TYPO3 allows unauthenticated users to execute arbitrary SQL commands via vectors involvin | Apr 7, 2017 | 9.8 | 69 | NO | YES |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by News System Project.
Media articles that mention a CVE ID that affects a product developed by News System Project — matched by CVE ID, not by vendor name.