A vulnerability was identified in HKritesh009 Grocery List Management Web App up to f491b681eb70d465f445c9a721415c965190f83b. This affects an unknown part of the file /src/update.php. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit is publicly available and might be used. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available.
Metrics
Affected Vendors & Products
References
History
Mon, 01 Sep 2025 09:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Hkritesh009
Hkritesh009 grocery List Management Web App |
|
Vendors & Products |
Hkritesh009
Hkritesh009 grocery List Management Web App |
Sun, 31 Aug 2025 22:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was identified in HKritesh009 Grocery List Management Web App up to f491b681eb70d465f445c9a721415c965190f83b. This affects an unknown part of the file /src/update.php. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit is publicly available and might be used. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available. | |
Title | HKritesh009 Grocery List Management Web App update.php sql injection | |
Weaknesses | CWE-74 CWE-89 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-08-31T22:32:06.213Z
Updated: 2025-08-31T22:32:06.213Z
Reserved: 2025-08-31T08:12:26.122Z
Link: CVE-2025-9749

No data.

Status : Received
Published: 2025-08-31T23:15:30.053
Modified: 2025-08-31T23:15:30.053
Link: CVE-2025-9749

No data.