devcode-it/openstamanager vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
CVE-2026-38751Highdevcode-it/openstamanager: OpenSTAManager contains an arbitrary file upload vulnerability in its module update functionality CVE-2026-35470Highdevcode-it/openstamanager: OpenSTAManager has a SQL Injection via righe Parameter in confronta_righe ModalsCVE-2026-35168Highdevcode-it/openstamanager: OpenSTAManager: SQL Injection via Aggiornamenti ModuleCVE-2026-29782Highdevcode-it/openstamanager: OpenSTAManager Affected by Remote Code Execution via Insecure Deserialization in OAuth2CVE-2026-28805Highdevcode-it/openstamanager: OpenSTAManager has a Time-Based Blind SQL Injection via `options[stato]` ParameterCVE-2026-27012Criticaldevcode-it/openstamanager: OpenSTAManager affected by unauthenticated privilege escalation via modules/utenti/actions.phpCVE-2026-24415Mediumdevcode-it/openstamanager: OpenSTAManager Affected by XSS in modifica_iva.php via righe parameterCVE-2026-24419Highdevcode-it/openstamanager: OpenSTAManager has a SQL Injection in the Prima Nota module CVE-2026-24418Highdevcode-it/openstamanager: OpenSTAManager has a SQL Injection vulnerability in the Scadenzario bulk operations moduleCVE-2026-24417Highdevcode-it/openstamanager: OpenSTAManager has a Time-Based Blind SQL Injection with Amplified Denial of ServiceCVE-2026-24416Highdevcode-it/openstamanager: OpenSTAManager has a Time-Based Blind SQL Injection in Article Pricing ModuleCVE-2025-69216Highdevcode-it/openstamanager: OpenSTAManager has a SQL Injection in Scadenzario Print TemplateCVE-2025-69214Highdevcode-it/openstamanager: OpenSTAManager has a SQL Injection in ajax_select.php (componenti endpoint)CVE-2025-69212Criticaldevcode-it/openstamanager: OpenSTAManager has an OS Command Injection in P7M File ProcessingCVE-2025-69215Highdevcode-it/openstamanager: OpenSTAManager has an SQL Injection in the Stampe ModuleCVE-2025-69213Highdevcode-it/openstamanager: OpenSTAManager has a SQL Injection in ajax_complete.php (get_sedi endpoint)CVE-2025-65103Highdevcode-it/openstamanager: OpenSTAManager has Authenticated SQL Injection in API via 'display' parameter

Stop the waste.
Protect your environment with Kodem.