CVE-2019-15555: Wellness Project Wellness

Critical severity, CVSS 9.8. EPSS: 1.4% chance of exploitation in the next 30 days.

FredReinink Wellness-app before 2019-06-19 allows SQL injection, related to dietTrack.php, exerciseGenerator.php, fitnessTrack.php, and server.php.

Affected products

Published 2019-08-26. Last modified 2026-06-17.