Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Gola

#19949of 53,630
13Total CVSS
Vulnerabilities · 2
Medium
2
PT-2026-49172
6.5
2026-06-15
Pypi · Python-Utcp · CVE-2026-12210
**Name of the Vulnerable Software and Affected Versions** python-utcp version 1.1.0 **Description** A server-side request forgery (SSRF) exists in the `utcp-gql/utcp-websocket` component of the universal-tool-calling-protocol. This issue allows a remote attacker to initiate a manipulation that results in the server making unauthorized requests. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2026-45686
6.5
2026-06-02
Itsourcecode · Fleet Management System · CVE-2026-10568
**Name of the Vulnerable Software and Affected Versions** itsourcecode Fees Management System version 1.0 **Description** A SQL injection issue exists in the '/manage payment.php' file. The flaw allows remote attackers to manipulate the `ID` argument to execute arbitrary SQL commands. SQL injection is a technique where an attacker inserts malicious SQL code into a query, potentially allowing them to view, modify, or delete data from the database. **Recommendations** Update itsourcecode Fees Management System version 1.0 to a patched version. As a temporary workaround, restrict access to the '/manage payment.php' file or avoid using the `ID` argument until a fix is applied.