Razormist develops a focused line of web-based enterprise applications spanning discussion forums, loan and employee management, polling, and academic result systems—a relatively narrow product portfolio that nevertheless occupies a prominent position in the vulnerability landscape. Vulnerabilities affecting the vendor skew strongly toward critical-severity outcomes, reflecting the memory-safety and input-handling demands of these web-facing applications. The exposure recurs across all products through a durable set of weakness classes: SQL injection and cross-site scripting in the application layer, injection flaws in downstream components, classic buffer overflows, and buffer-boundary violations that are endemic to systems handling user input at scale. Defenders should treat this vendor's advisories as high-priority across all its products and maintain strict input-validation hygiene in deployed instances; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Razormist over time
Signals from CVEs in this vendor scope (76 CVEs).
76 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-10082CRITICAL A vulnerability has been found in SourceCodester Online Polling System 1.0. Affected is an unknown function of the file /admin/manage-admins.php. Such manipulation of the argument | Sep 8, 2025 | 9.8 | 34 | NO | NO |
CVE-2025-10078CRITICAL A vulnerability was detected in SourceCodester Online Polling System 1.0. Affected is an unknown function of the file /admin/candidates.php. Performing manipulation of the argument | Sep 8, 2025 | 9.8 | 34 | NO | NO |
CVE-2025-9699CRITICAL A vulnerability was detected in SourceCodester Online Polling System Code 1.0. This vulnerability affects unknown code of the file /admin/checklogin.php. The manipulation of the ar | Aug 30, 2025 | 9.8 | 34 | NO | NO |
CVE-2025-10076CRITICAL A weakness has been identified in SourceCodester Online Polling System 1.0. This affects an unknown function of the file /manage-profile.php. This manipulation of the argument emai | Sep 8, 2025 | 9.8 | 31 | NO | NO |
CVE-2022-2766CRITICAL A vulnerability was found in SourceCodester Loan Management System. It has been rated as critical. Affected by this issue is some unknown functionality of the file /index.php. The | Aug 11, 2022 | 9.8 | 31 | NO | NO |
CVE-2025-10077CRITICAL A security vulnerability has been detected in SourceCodester Online Polling System 1.0. This impacts an unknown function of the file /registeracc.php. Such manipulation of the argu | Sep 8, 2025 | 9.8 | 30 | NO | NO |
CVE-2024-4920CRITICAL A vulnerability was found in SourceCodester Online Discussion Forum Site 1.0. It has been rated as critical. This issue affects some unknown processing of the file registerH.php. T | May 16, 2024 | 9.8 | 30 | NO | NO |
CVE-2022-37138CRITICAL Loan Management System 1.0 is vulnerable to SQL Injection at the login page, which allows unauthorized users to login as Administrator after injecting username form. | Sep 14, 2022 | 9.8 | 30 | NO | NO |
CVE-2020-24932CRITICAL An SQL Injection vulnerability exists in Sourcecodester Complaint Management System 1.0 via the cid parameter in complaint-details.php. | Oct 27, 2021 | 9.8 | 30 | NO | NO |
CVE-2023-4845CRITICAL A vulnerability was found in SourceCodester Simple Membership System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file account_edit_query.p | Sep 9, 2023 | 9.8 | 29 | NO | NO |
Signals from CVEs in this vendor scope (76 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Razormist.
Media articles that mention a CVE ID that affects a product developed by Razormist — matched by CVE ID, not by vendor name.