Train Scheduler App Project maintains a focused scheduling application where the observable vulnerability pattern centers on web-layer input-handling weaknesses, specifically cross-site scripting and resource-injection flaws that are characteristic of application-tier request processing. This represents a compact vendor profile grounded in its core product; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Train Scheduler App Project over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-3774CRITICAL A vulnerability was found in SourceCodester Train Scheduler App 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /train_scheduler_ap | Oct 31, 2022 | 9.1 | 29 | NO | NO |
CVE-2022-43079MEDIUM A cross-site scripting (XSS) vulnerability in /admin/add-fee.php of Train Scheduler App v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injecte | Nov 1, 2022 | 6.1 | 21 | NO | NO |
CVE-2022-42992MEDIUM Multiple stored cross-site scripting (XSS) vulnerabilities in Train Scheduler App v1.0 allow attackers to execute arbitrary web scripts or HTML via a crafted payload injected into | Oct 27, 2022 | 5.4 | 17 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Train Scheduler App Project.
Media articles that mention a CVE ID that affects a product developed by Train Scheduler App Project — matched by CVE ID, not by vendor name.