Vulnerability index

Browse CVEs

4,966 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness InjectionCWE-74 × clear
School Management System CRITICAL 9.8
CVE-2026-1589

A vulnerability was determined in itsourcecode School Management System 1.0. This affects an unknown function of the file /ramonsys/inquiry/index.php…

Mitigation only
Fix from $2,300 2026-01-29
School Management System CRITICAL 9.8
CVE-2026-1590

A vulnerability was identified in itsourcecode School Management System 1.0. This impacts an unknown function of the file /ramonsys/faculty/index.php…

Mitigation only
Fix from $2,300 2026-01-29
Society Management System CRITICAL 9.8
CVE-2026-1593

A weakness has been identified in itsourcecode Society Management System 1.0. Affected by this vulnerability is an unknown functionality of the file …

Mitigation only
Fix from $2,300 2026-01-29
Society Management System CRITICAL 9.8
CVE-2026-1594

A security vulnerability has been detected in itsourcecode Society Management System 1.0. Affected by this issue is some unknown functionality of the…

Mitigation only
Fix from $2,300 2026-01-29
Semcms CRITICAL 9.8
CVE-2026-1552

A security vulnerability has been detected in SEMCMS 5.0. This vulnerability affects unknown code of the file /SEMCMS_Info.php. The manipulation of t…

Mitigation only
Fix from $2,300 2026-01-29
School Management System HIGH 8.8
CVE-2026-1551

A weakness has been identified in itsourcecode School Management System 1.0. This affects an unknown part of the file /ramonsys/course/controller.php…

No fix yet
Fix from $1,950 2026-01-29
A7000r Firmware HIGH 8.8
CVE-2026-1548

A flaw has been found in Totolink A7000R 4.1cu.4154. This impacts the function CloudACMunualUpdateUserdata of the file /cgi-bin/cstecgi.cgi. This man…

No fix yet
Fix from $1,950 2026-01-28
School Management System CRITICAL 9.8
CVE-2026-1545

A weakness has been identified in itsourcecode School Management System 1.0. The affected element is an unknown function of the file /course/index.ph…

Mitigation only
Fix from $2,300 2026-01-28
Jsherp CRITICAL 9.8
CVE-2026-1546

A security vulnerability has been detected in jishenghua jshERP up to 3.6. The impacted element is the function getBillItemByParam of the file /jshER…

Fix: after 3.6
Fix from $2,300 2026-01-28
A7000r Firmware CRITICAL 9.8
CVE-2026-1547

A vulnerability was detected in Totolink A7000R 4.1cu.4154. This affects the function setUnloadUserData of the file /cgi-bin/cstecgi.cgi. The manipul…

Mitigation only
Fix from $2,300 2026-01-28
Online Music Site CRITICAL 9.8
CVE-2026-1534

A weakness has been identified in code-projects Online Music Site 1.0. This affects an unknown function of the file /Administrator/PHP/AdminEditUser.…

Mitigation only
Fix from $2,300 2026-01-28
Online Music Site CRITICAL 9.8
CVE-2026-1535

A security vulnerability has been detected in code-projects Online Music Site 1.0. This impacts an unknown function of the file /Administrator/PHP/Ad…

Mitigation only
Fix from $2,300 2026-01-28
Online Music Site CRITICAL 9.8
CVE-2026-1533

A security flaw has been discovered in code-projects Online Music Site 1.0. The impacted element is an unknown function of the file /Administrator/PH…

Mitigation only
Fix from $2,300 2026-01-28
Unclassified HIGH 7.3
CVE-2026-1449

A flaw has been found in Hisense TransTech Smart Bus Management System up to 20260113. Affected is the function Page_Load of the file YZSoft/Forms/XF…

Mitigation only
Fix from $1,950 2026-01-27
Online Music Site CRITICAL 9.8
CVE-2026-1443

A flaw has been found in code-projects Online Music Site 1.0. Affected by this issue is some unknown functionality of the file /Administrator/PHP/Adm…

Mitigation only
Fix from $2,300 2026-01-26
Unclassified MEDIUM 5.1
CVE-2025-41083

Vulnerability in Altitude Authentication Service and Altitude Communication Server v8.5.3290.0 by Altitude, where manipulation of Host header in HTTP…

Mitigation only
Fix from $1,600 2026-01-26
Online Examination System CRITICAL 9.8
CVE-2026-1422

A vulnerability was found in code-projects Online Examination System 1.0. Affected by this vulnerability is an unknown functionality of the file /ind…

Mitigation only
Fix from $2,300 2026-01-26
Dcs 700l Firmware HIGH 7.2
CVE-2026-1419EPSS 15%

A weakness has been identified in D-Link DCS700l 1.03.09. Affected is an unknown function of the file /setDayNightMode of the component Web Form Hand…

No fix yet
Fix from $1,950 2026-01-26
Operation And Maintenance Security Management System CRITICAL 9.8
CVE-2026-1414

A vulnerability was determined in Sangfor Operation and Maintenance Security Management System up to 3.0.12. This impacts the function getInformation…

Fix: after 3.0.12
Fix from $2,300 2026-01-26
Operation And Maintenance Security Management System CRITICAL 9.8
CVE-2026-1413

A vulnerability was found in Sangfor Operation and Maintenance Security Management System up to 3.0.12. This affects the function portValidate of the…

Fix: after 3.0.12
Fix from $2,300 2026-01-26
Operation And Maintenance Security Management System CRITICAL 9.8
CVE-2026-1412

A vulnerability has been found in Sangfor Operation and Maintenance Security Management System up to 3.0.12. The impacted element is an unknown funct…

Fix: after 3.0.12
Fix from $2,300 2026-01-26
Nr1800x Firmware HIGH 8.8
CVE-2026-1326

A weakness has been identified in Totolink NR1800X 9.1.0u.6279_B20210910. This vulnerability affects the function setWanCfg of the file /cgi-bin/cste…

No fix yet
Fix from $1,950 2026-01-22
Nr1800x Firmware HIGH 8.8
CVE-2026-1327

A security vulnerability has been detected in Totolink NR1800X 9.1.0u.6279_B20210910. This issue affects the function setTracerouteCfg of the file /c…

No fix yet
Fix from $1,950 2026-01-22
Horilla HIGH 8.0
CVE-2026-24010

Horilla is a free and open source Human Resource Management System (HRMS). A critical File Upload vulnerability in versions prior to 1.5.0, with Soci…

Fix: 1.5.0+
Fix from $1,950 2026-01-22
Grist Core CRITICAL 9.6
CVE-2026-24002

Grist is spreadsheet software using Python as its formula language. Grist offers several methods for running those formulas in a sandbox, for cases w…

Fix: 1.7.9+
Fix from $2,300 2026-01-22
Unclassified MEDIUM 5.9
CVE-2026-0865

User-controlled header names and values containing newlines can allow injecting HTTP headers.

Patch available
Fix from $1,600 2026-01-20
Online Store Management System HIGH 7.3
CVE-2026-1192EPSS 6%

A vulnerability was determined in Tosei Online Store Management System ネット店舗管理システム 1.01. The affected element is an unknown function of th…

No fix yet
Fix from $1,950 2026-01-19
Ksoa CRITICAL 9.8
CVE-2026-1179

A vulnerability was detected in Yonyou KSOA 9.0. This affects an unknown part of the file /kmf/user_popedom.jsp of the component HTTP GET Parameter H…

Mitigation only
Fix from $2,300 2026-01-19
Ksoa CRITICAL 9.8
CVE-2026-1177

A weakness has been identified in Yonyou KSOA 9.0. Affected by this vulnerability is an unknown functionality of the file /kmf/save_folder.jsp of the…

Mitigation only
Fix from $2,300 2026-01-19
Ksoa CRITICAL 9.8
CVE-2026-1178

A security vulnerability has been detected in Yonyou KSOA 9.0. Affected by this issue is some unknown functionality of the file /kmf/select.jsp of th…

Mitigation only
Fix from $2,300 2026-01-19