CVE-2025-70152
Scholars Tracking System 1.0 SQL Injection in Admin User Management.
Halo Surface Signal: 4 out of 5 — likely to be public-facing.
The Scholars Tracking System is vulnerable to SQL injection through its unauthenticated administrative endpoints. This could allow an attacker to manipulate user data, leading to unauthorized access or modification. Confirm if this system is in use and exposed to assess risk.