Vulnerability index

Browse CVEs

4,950 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness InjectionCWE-74 × clear
College Management System CRITICAL 9.8
CVE-2026-3152

A flaw has been found in itsourcecode College Management System 1.0. This issue affects some unknown processing of the file /admin/teacher-salary.php…

Mitigation only
Fix from $2,300 2026-02-25
Document Management System CRITICAL 9.8
CVE-2026-3153

A vulnerability has been found in itsourcecode Document Management System 1.0. Impacted is an unknown function of the file /register.php. Such manipu…

Mitigation only
Fix from $2,300 2026-02-25
College Management System HIGH 8.8
CVE-2026-3150

A security vulnerability has been detected in itsourcecode College Management System 1.0. This affects an unknown part of the file /admin/display-tea…

No fix yet
Fix from $1,950 2026-02-25
College Management System HIGH 8.8
CVE-2026-3149

A weakness has been identified in itsourcecode College Management System 1.0. Affected by this issue is some unknown functionality of the file /admin…

No fix yet
Fix from $1,950 2026-02-25
Simple And Nice Shopping Cart Script CRITICAL 9.8
CVE-2026-3148

A vulnerability was determined in SourceCodester Simple and Nice Shopping Cart Script 1.0. This impacts an unknown function of the file /signup.php. …

Mitigation only
Fix from $2,300 2026-02-25
News Portal Project CRITICAL 9.8
CVE-2026-3135

A weakness has been identified in itsourcecode News Portal Project 1.0. The impacted element is an unknown function of the file /admin/add-category.p…

Mitigation only
Fix from $2,300 2026-02-25
Document Management System CRITICAL 9.8
CVE-2026-3133

A vulnerability has been found in itsourcecode Document Management System 1.0. This issue affects some unknown processing of the file /loging.php of …

Mitigation only
Fix from $2,300 2026-02-25
News Portal Project CRITICAL 9.8
CVE-2026-3134

A security flaw has been discovered in itsourcecode News Portal Project 1.0. The affected element is an unknown function of the file /newsportal/admi…

Mitigation only
Fix from $2,300 2026-02-25
Document Management System CRITICAL 9.8
CVE-2026-3069

A security vulnerability has been detected in itsourcecode Document Management System 1.0. Affected is an unknown function of the file /edtlbls.php. …

Mitigation only
Fix from $2,300 2026-02-24
Document Management System CRITICAL 9.8
CVE-2026-3068

A weakness has been identified in itsourcecode Document Management System 1.0. This impacts an unknown function of the file /deluser.php. Executing a…

Mitigation only
Fix from $2,300 2026-02-24
Hummerrisk HIGH 8.8
CVE-2026-3066EPSS 12%

A flaw has been found in HummerRisk up to 1.5.0. This vulnerability affects the function fixedCommand of the file hummer-common/hummer-common-core/sr…

Fix: after 1.5.0
Fix from $1,950 2026-02-24
Pearprojectapi CRITICAL 9.8
CVE-2026-3057

A security flaw has been discovered in a54552239 pearProjectApi up to 2.8.10. Affected is the function dateTotalForProject of the file application/co…

Fix: after 2.8.10
Fix from $2,300 2026-02-24
Hummerrisk HIGH 8.8
CVE-2026-3064EPSS 19%

A security vulnerability has been detected in HummerRisk up to 1.5.0. Affected by this issue is some unknown functionality of the file ResourceCreate…

Fix: after 1.5.0
Fix from $1,950 2026-02-24
Hummerrisk HIGH 8.8
CVE-2026-3065EPSS 30%

A vulnerability was detected in HummerRisk up to 1.5.0. This affects the function CommandUtils.commonExecCmdWithResult of the file CloudTaskService.j…

Fix: after 1.5.0
Fix from $1,950 2026-02-24
E Logbook With Health Monitoring System For Covid 19 CRITICAL 9.8
CVE-2026-3046

A security vulnerability has been detected in itsourcecode E-Logbook with Health Monitoring System for COVID-19 1.0. This vulnerability affects unkno…

Mitigation only
Fix from $2,300 2026-02-24
Event Management System CRITICAL 9.8
CVE-2026-3042

A vulnerability was detected in itsourcecode Event Management System 1.0. The affected element is an unknown function of the file /admin/index.php. P…

Mitigation only
Fix from $2,300 2026-02-24
Valkey HIGH 7.1
CVE-2025-67733

Valkey is a distributed key-value database. Prior to versions 9.0.2, 8.1.6, 8.0.7, and 7.2.12, a malicious user can use scripting commands to inject …

Fix: 7.2.12 / 8.0.7+
Fix from $1,950 2026-02-23
Unclassified MEDIUM 6.3
CVE-2026-2963

A vulnerability was determined in Jinher OA C6 up to 20260210. This issue affects some unknown processing of the file /C6/Jhsoft.Web.officesupply/Off…

Mitigation only
Fix from $1,600 2026-02-23
Dst Admin HIGH 8.8
CVE-2026-2956EPSS 8%

A security flaw has been discovered in qinming99 dst-admin up to 1.5.0. This affects the function revertBackup of the file /home/restore. The manipul…

Fix: after 1.5.0
Fix from $1,950 2026-02-22
Ujcms CRITICAL 9.8
CVE-2026-2954

A vulnerability was found in Dromara UJCMS 10.0.2. Impacted is the function importChanel of the file /api/backend/ext/import-data/import-channel of t…

Mitigation only
Fix from $2,300 2026-02-22
Online Reviewer System CRITICAL 9.8
CVE-2026-2912

A vulnerability was found in code-projects Online Reviewer System 1.0. Impacted is an unknown function of the file /system/system/students/assessment…

Mitigation only
Fix from $2,300 2026-02-22
Vehicle Management System CRITICAL 9.8
CVE-2026-2867

A vulnerability was determined in itsourcecode Vehicle Management System 1.0. Affected is an unknown function of the file /billaction.php. Executing …

Mitigation only
Fix from $2,300 2026-02-21
Agri Trading Online Shopping System CRITICAL 9.8
CVE-2026-2865

A vulnerability was found in itsourcecode Agri-Trading Online Shopping System 1.0. This impacts an unknown function of the file admin/productcontroll…

Mitigation only
Fix from $2,300 2026-02-21
D Tale CRITICAL 9.8
CVE-2026-27194

D-Tale is a visualizer for pandas data structures. Versions prior to 3.20.0 are vulnerable to Remote Code Execution through the /save-column-filter e…

Fix: after 3.19.1
Fix from $2,300 2026-02-21
Unclassified HIGH 8.3
CVE-2026-27203

eBay API MCP Server is an open source local MCP server providing AI assistants with comprehensive access to eBay's Sell APIs. All versions are vulner…

Patch available
Fix from $1,950 2026-02-21
Unclassified MEDIUM 6.5
CVE-2026-27022

@langchain/langgraph-checkpoint-redis is the Redis checkpoint and store implementation for LangGraph. A query injection vulnerability exists in the @…

Patch available
Fix from $1,600 2026-02-20
Simple Responsive Tourism Website CRITICAL 9.8
CVE-2026-2848

A flaw has been found in SourceCodester Simple Responsive Tourism Website 1.0. Affected by this vulnerability is an unknown functionality of the file…

Mitigation only
Fix from $2,300 2026-02-20
Cf E7 Firmware HIGH 8.8
CVE-2026-2824EPSS 15%

A flaw has been found in Comfast CF-E7 2.6.0.9. This affects the function sub_441CF4 of the file /cgi-bin/mbox-config?method=SET&section=ping_config …

No fix yet
Fix from $1,950 2026-02-20
Jeecg Boot HIGH 8.8
CVE-2026-2822

A security vulnerability has been detected in JeecgBoot up to 3.9.1. The affected element is an unknown function of the file /jeecgboot/sys/dict/load…

Fix: after 3.9.1
Fix from $1,950 2026-02-20
Cf E7 Firmware HIGH 8.8
CVE-2026-2823EPSS 17%

A vulnerability was detected in Comfast CF-E7 2.6.0.9. The impacted element is the function sub_41ACCC of the file /cgi-bin/mbox-config?method=SET&se…

No fix yet
Fix from $1,950 2026-02-20