Philipinho's vulnerability profile centers on a simple, focused PHP blogging application with a narrow product scope. The recurring exposures reflect typical web-application input-handling gaps: code injection, cross-site scripting, SQL injection, and output-encoding issues that characterize insufficiently validated and sanitized user input in server-side PHP code. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Philipinho over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-14227CRITICAL A security flaw has been discovered in Philipinho Simple-PHP-Blog up to 94b5d3e57308bce5dfbc44c3edafa9811893d958. This issue affects some unknown processing of the file /edit.php. | Dec 8, 2025 | 9.8 | 30 | NO | NO |
CVE-2025-15223MEDIUM A vulnerability was found in Philipinho Simple-PHP-Blog up to 94b5d3e57308bce5dfbc44c3edafa9811893d958. Impacted is an unknown function of the file /login.php. Performing manipulat | Dec 31, 2025 | 6.1 | 22 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Philipinho.
Media articles that mention a CVE ID that affects a product developed by Philipinho — matched by CVE ID, not by vendor name.