Wecodex develops a family of content-management and business-management systems targeting hospitality, logistics, education, and retail verticals, including hotel, library, restaurant, school, and shipping platforms. The durable signal across these products centers on SQL injection vulnerabilities, reflecting recurring input-validation gaps in database-query construction; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Wecodex over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-25204CRITICAL Library CMS 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to bypass authentication by injecting SQL code through the username parameter. Attacke | Mar 26, 2026 | 9.8 | 29 | NO | NO |
CVE-2018-25201CRITICAL School Management System CMS 1.0 contains an SQL injection vulnerability in the admin login functionality that allows attackers to bypass authentication by injecting SQL code throu | Mar 26, 2026 | 9.8 | 29 | NO | NO |
CVE-2018-25195CRITICAL Wecodex Hotel CMS 1.0 contains an SQL injection vulnerability in the admin login functionality that allows unauthenticated attackers to bypass authentication by injecting SQL code. | Mar 26, 2026 | 9.8 | 29 | NO | NO |
CVE-2018-25185CRITICAL Wecodex Restaurant CMS 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the username p | Mar 26, 2026 | 9.8 | 29 | NO | NO |
CVE-2018-25183CRITICAL Shipping System CMS 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to bypass authentication by injecting SQL code through the username parameter. | Mar 26, 2026 | 9.8 | 29 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Wecodex.
Media articles that mention a CVE ID that affects a product developed by Wecodex — matched by CVE ID, not by vendor name.