Sourcecodester Leave Application System vulnerabilities
3 known vulnerabilities affecting sourcecodester/leave_application_system.
Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM3
Vulnerabilities
Page 1 of 1
CVE-2026-5326MEDIUMCVSS 5.5v1.02026-04-02
CVE-2026-5326 [MEDIUM] CWE-285 CVE-2026-5326: A vulnerability was identified in SourceCodester Leave Application System 1.0. Impacted is an unknow
A vulnerability was identified in SourceCodester Leave Application System 1.0. Impacted is an unknown function of the file /index.php?page=manage_user of the component User Information Handler. Such manipulation of the argument ID leads to authorization bypass. The attack can be executed remotely. The exploit is publicly available and might be used.
cvelistv5nvd
CVE-2026-5209MEDIUMCVSS 4.8v1.02026-03-31
CVE-2026-5209 [MEDIUM] CWE-79 CVE-2026-5209: A security vulnerability has been detected in SourceCodester Leave Application System 1.0. Affected
A security vulnerability has been detected in SourceCodester Leave Application System 1.0. Affected by this issue is some unknown functionality of the component User Management Handler. Such manipulation leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed publicly and may be used.
cvelistv5nvd
CVE-2026-5210MEDIUMCVSS 6.9v1.02026-03-31
CVE-2026-5210 [MEDIUM] CWE-73 CVE-2026-5210: A vulnerability was detected in SourceCodester Leave Application System 1.0. This affects an unknown
A vulnerability was detected in SourceCodester Leave Application System 1.0. This affects an unknown part. Performing a manipulation of the argument page results in file inclusion. Remote exploitation of the attack is possible. The exploit is now public and may be used.
cvelistv5nvd