Simple Traffic Offense System Sourcecodester Simple Traffic Offense System

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Sourcecodester Simple Traffic Offense System.

By the Year

In 2026 there have been 3 vulnerabilities in Sourcecodester Simple Traffic Offense System with an average score of 6.4 out of ten.

Year Vulnerabilities Average Score
2026 3 6.37

It may take a day or so for new Simple Traffic Offense System vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Sourcecodester Simple Traffic Offense System Security Vulnerabilities

SourceCodester Simple Traffic Offense System 1.0 XSS via site_name/site_desc
CVE-2026-86294 5.3 - Medium - September 07, 2026

A vulnerability has been found in SourceCodester Simple Traffic Offense System 1.0. Affected by this issue is some unknown functionality of the file save-settings.php of the component Settings Update Endpoint. The manipulation of the argument site_name/site_desc leads to cross site scripting. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used.

XSS

Auth Bypass via ID Manipulation in Traffic Offense System 1.0 Deletion Endpoint
CVE-2026-86293 6.9 - Medium - September 07, 2026

A flaw has been found in SourceCodester Simple Traffic Offense System 1.0. Affected by this vulnerability is an unknown functionality of the file delete-user.php of the component Deletion Endpoint. Executing a manipulation of the argument ID can lead to missing authentication. The attack may be launched remotely. The exploit has been published and may be used.

Missing Authentication for Critical Function

Missing Auth in SCTOS 1.0 via saveuser.php Remote (Public Exploit)
CVE-2026-86292 6.9 - Medium - September 07, 2026

A vulnerability was detected in SourceCodester Simple Traffic Offense System 1.0. Affected is an unknown function of the file saveuser.php of the component User Creation. Performing a manipulation of the argument position results in missing authentication. The attack may be initiated remotely. The exploit is now public and may be used.

Missing Authentication for Critical Function

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Sourcecodester Simple Traffic Offense System or by Sourcecodester? Click the Watch button to subscribe.

subscribe