CVE-2025-61247

High severity, CVSS 8.2. EPSS: 0.2% chance of exploitation in the next 30 days.

indieka900 online-shopping-system-php 1.0 is vulnerable to SQL Injection in the password parameter of login.php.

Published 2025-10-27. Last modified 2026-06-17.