Technology · Sambitraj
Sambitraj STUDENT-MANAGEMENT-SYSTEM vulnerabilities
Updated . Rebuilt every hour.
Junglewise Threat Intelligence has tracked 26 vulnerabilities in Sambitraj STUDENT-MANAGEMENT-SYSTEM: 0 in the last 7 days and 10 in the last 90 days, 0 of them critical and 0 exploited in the wild. The most recent, CVE-2026-86674, was published on 8 September 2026.
- Last 7 days
- 0
- Last 90 days
- 10
- Critical, all time
- 0
- Exploited in the wild
- 0
About Sambitraj STUDENT-MANAGEMENT-SYSTEM
STUDENT-MANAGEMENT-SYSTEM is a web-based application designed for managing student records and academic data.
Latest Sambitraj STUDENT-MANAGEMENT-SYSTEM vulnerabilities
- CVE-2026-86674: ningzichun Student Management System session fixation in loginmediumCVSS 6.3EPSS 0.4%
- CVE-2026-86673: ningzichun Student Management System hard-coded database credentialshighCVSS 7.3EPSS 0.5%
- CVE-2026-86672: ningzichun Student Management System exposed backup filemediumCVSS 5.3EPSS 0.5%
- CVE-2026-82699: sambitraj Student Management System cleartext password storagelowCVSS 2.7EPSS 0.3%
- CVE-2026-82698: sambitraj Student-Management-System use of default passwordmediumCVSS 5.3EPSS 0.5%
- CVE-2026-82697: sambitraj Student-Management-System insecure session cookie in loginlowCVSS 3.7EPSS 0.5%
- CVE-2026-82553: sambitraj Student Management System authorization bypass in dashboardmediumCVSS 6.3EPSS 0.4%
- CVE-2026-78057: sambitraj Student Management System SQL injection in management mutation handlersmediumCVSS 6.3EPSS 0.3%
- CVE-2026-78056: sambitraj Student-Management-System SQL injection in DashboardmediumCVSS 6.3EPSS 0.3%
- CVE-2026-18927: imranrisal-dev Student-Management-System unrestricted file upload in profile image handlermediumCVSS 6.3EPSS 0.4%
- CVE-2026-11534: imvks786 student_management_system stored XSS in add.phplowCVSS 3.5
- CVE-2026-11533: imvks786 Student Management System improper authorization in see.phpmediumCVSS 5.4
- CVE-2026-11532: imvks786 student_management_system improper access control in Student Record HandlermediumCVSS 6.3
- CVE-2026-11531: imvks786 student_management_system SQL injection in admin_login.phphighCVSS 7.3
- CVE-2026-11530: imvks786 student_management_system SQL injection in Login componenthighCVSS 7.3
- CVE-2026-11476: Kushan2k student-management-system improper authorization in Profile Update EndpointmediumCVSS 6.3
- CVE-2026-11475: Kushan2k student-management-system SQL injection in GradeControllermediumCVSS 6.3
- CVE-2026-11474: Kushan2k student-management-system unrestricted upload in RegisterService.phphighCVSS 7.3
- CVE-2026-10777: ealpha072 Student-Management-System improper authentication in admin backendhighCVSS 7.3
- CVE-2026-10619: sayan365 student-management-system improper authentication in administrative endpointshighCVSS 7.3
- CVE-2026-10272: a4m4 Student-Management-System improper authorization in admin/deleteform.phpmediumCVSS 6.5
- CVE-2026-10271: a4m4 Student-Management-System authentication bypass in admin endpointmediumCVSS 6.3
- CVE-2026-10112: sambitraj STUDENT-MANAGEMENT-SYSTEM stored XSS in Dashboard PagelowCVSS 2.4
- CVE-2026-10111: sambitraj STUDENT-MANAGEMENT-SYSTEM SQL injection in login pageshighCVSS 7.3
- CVE-2026-9562: sambitraj STUDENT-MANAGEMENT-SYSTEM broken access control in dashboardshighCVSS 7.3
Most severe Sambitraj STUDENT-MANAGEMENT-SYSTEM vulnerabilities
Exploited in the wild first, then by severity and CVSS score.
- CVE-2026-86673: ningzichun Student Management System hard-coded database credentialshighCVSS 7.3EPSS 0.5%
- CVE-2026-11531: imvks786 student_management_system SQL injection in admin_login.phphighCVSS 7.3
- CVE-2026-11530: imvks786 student_management_system SQL injection in Login componenthighCVSS 7.3
- CVE-2026-11474: Kushan2k student-management-system unrestricted upload in RegisterService.phphighCVSS 7.3
- CVE-2026-10777: ealpha072 Student-Management-System improper authentication in admin backendhighCVSS 7.3
- CVE-2026-10619: sayan365 student-management-system improper authentication in administrative endpointshighCVSS 7.3
- CVE-2026-10111: sambitraj STUDENT-MANAGEMENT-SYSTEM SQL injection in login pageshighCVSS 7.3
- CVE-2026-9562: sambitraj STUDENT-MANAGEMENT-SYSTEM broken access control in dashboardshighCVSS 7.3
- CVE-2026-10272: a4m4 Student-Management-System improper authorization in admin/deleteform.phpmediumCVSS 6.5
- CVE-2026-86674: ningzichun Student Management System session fixation in loginmediumCVSS 6.3EPSS 0.4%
Vulnerabilities per week
The last 13 weeks, by the week each vulnerability was published.
| Week of | Bar | Vulns | Critical |
|---|---|---|---|
| 29 Jun 2026 | 0 | 0 | |
| 6 Jul 2026 | 0 | 0 | |
| 13 Jul 2026 | 0 | 0 | |
| 20 Jul 2026 | 0 | 0 | |
| 27 Jul 2026 | 0 | 0 | |
| 3 Aug 2026 | 1 | 0 | |
| 10 Aug 2026 | 0 | 0 | |
| 17 Aug 2026 | 2 | 0 | |
| 24 Aug 2026 | 1 | 0 | |
| 31 Aug 2026 | 3 | 0 | |
| 7 Sep 2026 | 3 | 0 | |
| 14 Sep 2026 | 0 | 0 | |
| 21 Sep 2026 | 0 | 0 |
How this is built
Junglewise Threat Intelligence collects vulnerabilities from NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories, and matches each one to the technologies and vendors it affects. Dates are the date a vulnerability was published, in UTC.
The pages are rebuilt from the database every hour. Frozen weekly and monthly reports never change once published, so they can be cited.
Use this data
The same data is at https://junglewise.ai/threats/technologies/student-management-system.json, for scripts and language models. It is free to reuse under CC BY 4.0 with a link back to this page.
Cite as: Junglewise Threat Intelligence, "Sambitraj STUDENT-MANAGEMENT-SYSTEM vulnerabilities", https://junglewise.ai/threats/technologies/student-management-system, 26 September 2026.