Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Y1Fan

#27777of 53,624
9.1Total CVSS
Vulnerabilities · 2
Low
1
Medium
1
PT-2026-4819
3.3
2026-01-26
Unknown · Ijason-Liu Books Manager · CVE-2026-1444
**Name of the Vulnerable Software and Affected Versions** iJason-Liu Books Manager (affected versions not specified) **Description** A cross site scripting issue exists in the file `controllers/books center/add book check.php`. Manipulation of the `mark` argument can lead to exploitation. The attack can be launched remotely. The exploit has been publicly disclosed. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2026-4823
5.8
2026-01-26
Unknown · Ijason-Liu Books Manager · CVE-2026-1445
**Name of the Vulnerable Software and Affected Versions** iJason-Liu Books Manager versions prior to 298ba736387ca37810466349af13a0fdf828e99c **Description** A flaw exists in iJason-Liu Books Manager that allows for unrestricted file uploads. This issue is related to the manipulation of the `book cover` argument within the file controllers/books center/upload bookCover.php. The attack can be initiated remotely. The exploit has been publicly released. **Recommendations** Versions prior to 298ba736387ca37810466349af13a0fdf828e99c should be updated. As a temporary workaround, restrict access to the file `controllers/books center/upload bookCover.php` until a patch is available. Avoid uploading files through the `book cover` parameter until the issue is resolved.