Bob Watu Quiz vulnerabilities
5 known vulnerabilities affecting bob/watu_quiz.
Total CVEs
5
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2MEDIUM3
Vulnerabilities
Page 1 of 1
CVE-2025-68587HIGHCVSS 8.1≤ 3.4.52025-12-24
CVE-2025-68587 [HIGH] CWE-862 CVE-2025-68587: Missing Authorization vulnerability in Bob Watu Quiz watu allows Exploiting Incorrectly Configured A
Missing Authorization vulnerability in Bob Watu Quiz watu allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Watu Quiz: from n/a through <= 3.4.5.
cvelistv5nvd
CVE-2025-67976MEDIUMCVSS 6.5≤ 3.4.52025-12-16
CVE-2025-67976 [MEDIUM] CWE-862 CVE-2025-67976: Missing Authorization vulnerability in Bob Watu Quiz watu allows Exploiting Incorrectly Configured A
Missing Authorization vulnerability in Bob Watu Quiz watu allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Watu Quiz: from n/a through <= 3.4.5.
cvelistv5nvd
CVE-2025-46242MEDIUMCVSS 4.9≤ 3.4.32025-04-22
CVE-2025-46242 [MEDIUM] CWE-89 CVE-2025-46242: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Bob Watu Quiz watu allows SQL Injection.This issue affects Watu Quiz: from n/a through <= 3.4.3.
cvelistv5nvd
CVE-2025-30844MEDIUMCVSS 6.1≤ 3.4.22025-04-01
CVE-2025-30844 [MEDIUM] CWE-79 CVE-2025-30844: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Bob Watu Quiz watu allows Reflected XSS.This issue affects Watu Quiz: from n/a through <= 3.4.2.
cvelistv5nvd
CVE-2024-53792HIGHCVSS 8.8≤ 3.4.1.22024-12-02
CVE-2024-53792 [HIGH] CWE-89 CVE-2024-53792: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Bob Watu Quiz watu allows SQL Injection.This issue affects Watu Quiz: from n/a through <= 3.4.1.2.
cvelistv5nvd