← Back

Daily Habit Tracker

daily_habit_tracker

Vendor: Remyandrade • 5 CVEs

CVEs (5)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Remyandrade
1Daily Habit Tracker
Mar 5, 2025
Mar 1, 2024
N/A· v4
5.4 MEDIUM· v3
4.0 MEDIUM· v2
A vulnerability was found in SourceCodester Daily Habit Tracker 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /endpoint/update-tracker.php. The manipulat...Show more
A vulnerability was found in SourceCodester Daily Habit Tracker 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /endpoint/update-tracker.php. The manipulation of the argument day leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-255391.Show less
1Remyandrade
1Daily Habit Tracker
Nov 21, 2024
Feb 8, 2024
N/A· v4
9.8 CRITICAL· v3
N/A· v2
An issue in Daily Habit Tracker v.1.0 allows a remote attacker to manipulate trackers via the home.php, add-tracker.php, delete-tracker.php, update-tracker.php components.
1Remyandrade
1Daily Habit Tracker
May 15, 2025
Feb 8, 2024
N/A· v4
9.8 CRITICAL· v3
N/A· v2
SQL Injection vulnerability in delete-tracker.php in Daily Habit Tracker v.1.0 allows a remote attacker to execute arbitrary code via crafted GET request.
1Remyandrade
1Daily Habit Tracker
May 15, 2025
Feb 8, 2024
N/A· v4
6.1 MEDIUM· v3
N/A· v2
Cross Site Scripting vulnerability in Daily Habit Tracker v.1.0 allows a remote attacker to execute arbitrary code via the day, exercise, pray, read_book, vitamins, laundry, alcohol and meat parameters in the add-tracker...Show more
Cross Site Scripting vulnerability in Daily Habit Tracker v.1.0 allows a remote attacker to execute arbitrary code via the day, exercise, pray, read_book, vitamins, laundry, alcohol and meat parameters in the add-tracker.php and update-tracker.php components.Show less
1Remyandrade
1Daily Habit Tracker
May 29, 2025
Jan 29, 2024
N/A· v4
7.2 HIGH· v3
N/A· v2
Sourcecodester Daily Habit Tracker App 1.0 allows SQL Injection via the parameter 'tracker.'