Vulnerability index

Browse CVEs

4,966 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness InjectionCWE-74 × clear
CRITICAL 9.8 CVE-2026-1589 A vulnerability was determined in itsourcecode School Management System 1.0. This affects an unknown function of the file /ramonsys/inquiry/index.php… School Management System Mitigation only Fix from $2,3002026-01-29 CRITICAL 9.8 CVE-2026-1590 A vulnerability was identified in itsourcecode School Management System 1.0. This impacts an unknown function of the file /ramonsys/faculty/index.php… School Management System Mitigation only Fix from $2,3002026-01-29 CRITICAL 9.8 CVE-2026-1593 A weakness has been identified in itsourcecode Society Management System 1.0. Affected by this vulnerability is an unknown functionality of the file … Society Management System Mitigation only Fix from $2,3002026-01-29 CRITICAL 9.8 CVE-2026-1594 A security vulnerability has been detected in itsourcecode Society Management System 1.0. Affected by this issue is some unknown functionality of the… Society Management System Mitigation only Fix from $2,3002026-01-29 CRITICAL 9.8 CVE-2026-1552 A security vulnerability has been detected in SEMCMS 5.0. This vulnerability affects unknown code of the file /SEMCMS_Info.php. The manipulation of t… Semcms Mitigation only Fix from $2,3002026-01-29 HIGH 8.8 CVE-2026-1551 A weakness has been identified in itsourcecode School Management System 1.0. This affects an unknown part of the file /ramonsys/course/controller.php… School Management System No fix yet Fix from $1,9502026-01-29 HIGH 8.8 CVE-2026-1548 A flaw has been found in Totolink A7000R 4.1cu.4154. This impacts the function CloudACMunualUpdateUserdata of the file /cgi-bin/cstecgi.cgi. This man… A7000r Firmware No fix yet Fix from $1,9502026-01-28 CRITICAL 9.8 CVE-2026-1545 A weakness has been identified in itsourcecode School Management System 1.0. The affected element is an unknown function of the file /course/index.ph… School Management System Mitigation only Fix from $2,3002026-01-28 CRITICAL 9.8 CVE-2026-1546 A security vulnerability has been detected in jishenghua jshERP up to 3.6. The impacted element is the function getBillItemByParam of the file /jshER… Jsherp after 3.6 Fix from $2,3002026-01-28 CRITICAL 9.8 CVE-2026-1547 A vulnerability was detected in Totolink A7000R 4.1cu.4154. This affects the function setUnloadUserData of the file /cgi-bin/cstecgi.cgi. The manipul… A7000r Firmware Mitigation only Fix from $2,3002026-01-28 CRITICAL 9.8 CVE-2026-1534 A weakness has been identified in code-projects Online Music Site 1.0. This affects an unknown function of the file /Administrator/PHP/AdminEditUser.… Online Music Site Mitigation only Fix from $2,3002026-01-28 CRITICAL 9.8 CVE-2026-1535 A security vulnerability has been detected in code-projects Online Music Site 1.0. This impacts an unknown function of the file /Administrator/PHP/Ad… Online Music Site Mitigation only Fix from $2,3002026-01-28 CRITICAL 9.8 CVE-2026-1533 A security flaw has been discovered in code-projects Online Music Site 1.0. The impacted element is an unknown function of the file /Administrator/PH… Online Music Site Mitigation only Fix from $2,3002026-01-28 HIGH 7.3 CVE-2026-1449 A flaw has been found in Hisense TransTech Smart Bus Management System up to 20260113. Affected is the function Page_Load of the file YZSoft/Forms/XF… Mitigation only Fix from $1,9502026-01-27 CRITICAL 9.8 CVE-2026-1443 A flaw has been found in code-projects Online Music Site 1.0. Affected by this issue is some unknown functionality of the file /Administrator/PHP/Adm… Online Music Site Mitigation only Fix from $2,3002026-01-26 MEDIUM 5.1 CVE-2025-41083 Vulnerability in Altitude Authentication Service and Altitude Communication Server v8.5.3290.0 by Altitude, where manipulation of Host header in HTTP… Mitigation only Fix from $1,6002026-01-26 CRITICAL 9.8 CVE-2026-1422 A vulnerability was found in code-projects Online Examination System 1.0. Affected by this vulnerability is an unknown functionality of the file /ind… Online Examination System Mitigation only Fix from $2,3002026-01-26 HIGH 7.2 CVE-2026-1419EPSS 15% A weakness has been identified in D-Link DCS700l 1.03.09. Affected is an unknown function of the file /setDayNightMode of the component Web Form Hand… Dcs 700l Firmware No fix yet Fix from $1,9502026-01-26 CRITICAL 9.8 CVE-2026-1414 A vulnerability was determined in Sangfor Operation and Maintenance Security Management System up to 3.0.12. This impacts the function getInformation… Operation And Maintenance Security Management System after 3.0.12 Fix from $2,3002026-01-26 CRITICAL 9.8 CVE-2026-1413 A vulnerability was found in Sangfor Operation and Maintenance Security Management System up to 3.0.12. This affects the function portValidate of the… Operation And Maintenance Security Management System after 3.0.12 Fix from $2,3002026-01-26 CRITICAL 9.8 CVE-2026-1412 A vulnerability has been found in Sangfor Operation and Maintenance Security Management System up to 3.0.12. The impacted element is an unknown funct… Operation And Maintenance Security Management System after 3.0.12 Fix from $2,3002026-01-26 HIGH 8.8 CVE-2026-1326 A weakness has been identified in Totolink NR1800X 9.1.0u.6279_B20210910. This vulnerability affects the function setWanCfg of the file /cgi-bin/cste… Nr1800x Firmware No fix yet Fix from $1,9502026-01-22 HIGH 8.8 CVE-2026-1327 A security vulnerability has been detected in Totolink NR1800X 9.1.0u.6279_B20210910. This issue affects the function setTracerouteCfg of the file /c… Nr1800x Firmware No fix yet Fix from $1,9502026-01-22 HIGH 8.0 CVE-2026-24010 Horilla is a free and open source Human Resource Management System (HRMS). A critical File Upload vulnerability in versions prior to 1.5.0, with Soci… Horilla 1.5.0+ Fix from $1,9502026-01-22 CRITICAL 9.6 CVE-2026-24002 Grist is spreadsheet software using Python as its formula language. Grist offers several methods for running those formulas in a sandbox, for cases w… Grist Core 1.7.9+ Fix from $2,3002026-01-22 MEDIUM 5.9 CVE-2026-0865 User-controlled header names and values containing newlines can allow injecting HTTP headers. Patch available Fix from $1,6002026-01-20 HIGH 7.3 CVE-2026-1192EPSS 6% A vulnerability was determined in Tosei Online Store Management System ネット店舗管理システム 1.01. The affected element is an unknown function of th… Online Store Management System No fix yet Fix from $1,9502026-01-19 CRITICAL 9.8 CVE-2026-1179 A vulnerability was detected in Yonyou KSOA 9.0. This affects an unknown part of the file /kmf/user_popedom.jsp of the component HTTP GET Parameter H… Ksoa Mitigation only Fix from $2,3002026-01-19 CRITICAL 9.8 CVE-2026-1177 A weakness has been identified in Yonyou KSOA 9.0. Affected by this vulnerability is an unknown functionality of the file /kmf/save_folder.jsp of the… Ksoa Mitigation only Fix from $2,3002026-01-19 CRITICAL 9.8 CVE-2026-1178 A security vulnerability has been detected in Yonyou KSOA 9.0. Affected by this issue is some unknown functionality of the file /kmf/select.jsp of th… Ksoa Mitigation only Fix from $2,3002026-01-19