Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
Advanced Library Management System CRITICAL 9.8
CVE-2025-13572

A vulnerability was identified in projectworlds Advanced Library Management System 1.0. This affects an unknown part of the file /delete_admin.php. T…

Mitigation only
Fix from $2,300 2025-11-23
Simple Cafe Ordering System HIGH 8.8
CVE-2025-13571

A vulnerability was determined in code-projects Simple Food Ordering System 1.0. Affected by this issue is some unknown functionality of the file /li…

No fix yet
Fix from $1,950 2025-11-23
Covid Tracking System HIGH 8.8
CVE-2025-13570

A vulnerability was found in itsourcecode COVID Tracking System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/?p…

No fix yet
Fix from $1,950 2025-11-23
Covid Tracking System HIGH 8.8
CVE-2025-13568

A flaw has been found in itsourcecode COVID Tracking System 1.0. This impacts an unknown function of the file /admin/?page=people. This manipulation …

No fix yet
Fix from $1,950 2025-11-23
Covid Tracking System HIGH 8.8
CVE-2025-13569

A vulnerability has been found in itsourcecode COVID Tracking System 1.0. Affected is an unknown function of the file /admin/?page=city. Such manipul…

No fix yet
Fix from $1,950 2025-11-23
Covid Tracking System HIGH 8.8
CVE-2025-13567

A vulnerability was detected in itsourcecode COVID Tracking System 1.0. This affects an unknown function of the file /admin/?page=establishment. The …

No fix yet
Fix from $1,950 2025-11-23
Company Website Cms CRITICAL 9.8
CVE-2025-13561

A vulnerability was determined in SourceCodester Company Website CMS 1.0. This vulnerability affects unknown code of the file /admin/index.php. This …

Mitigation only
Fix from $2,300 2025-11-23
Online Polling System CRITICAL 9.8
CVE-2025-13557

A vulnerability has been found in Campcodes Online Polling System 1.0. Affected by this issue is some unknown functionality of the file /registeracc.…

Mitigation only
Fix from $2,300 2025-11-23
Company Website Cms CRITICAL 9.8
CVE-2025-13560

A vulnerability was found in SourceCodester Company Website CMS 1.0. This affects an unknown part of the file /admin/reset-password.php. The manipula…

Mitigation only
Fix from $2,300 2025-11-23
Online Polling System CRITICAL 9.8
CVE-2025-13556

A flaw has been found in Campcodes Online Polling System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/checklogi…

Mitigation only
Fix from $2,300 2025-11-23
School File Management System CRITICAL 9.8
CVE-2025-13555

A vulnerability was detected in Campcodes School File Management System 1.0. Affected is an unknown function of the file /index.php of the component …

Mitigation only
Fix from $2,300 2025-11-23
Supplier Management System CRITICAL 9.8
CVE-2025-13554

A security vulnerability has been detected in Campcodes Supplier Management System 1.0. This impacts an unknown function of the file /index.php of th…

Mitigation only
Fix from $2,300 2025-11-23
Travel Agency CRITICAL 9.8
CVE-2025-13546

A vulnerability was detected in ashraf-kabir travel-agency up to 1f25aa03544bc5fb7a9e846f8a7879cecdb0cad3. Affected by this issue is some unknown fun…

Fix: after 2025-07-05
Fix from $2,300 2025-11-23
Travel Agency HIGH 7.2
CVE-2025-13545

A security vulnerability has been detected in ashraf-kabir travel-agency up to 1f25aa03544bc5fb7a9e846f8a7879cecdb0cad3. Affected by this vulnerabili…

Fix: after 2025-07-05
Fix from $1,950 2025-11-23
Unclassified HIGH 8.5
CVE-2025-66095

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Iqonic Design KiviCare kivicare-clinic-manageme…

Mitigation only
Fix from $1,950 2025-11-21
Unclassified HIGH 7.5
CVE-2025-13138

The WP Directory Kit plugin for WordPress is vulnerable to SQL Injection via the 'columns_search' parameter of the select_2_ajax() function in all ve…

Mitigation only
Fix from $1,950 2025-11-21
File Management System CRITICAL 9.8
CVE-2025-13485

A security flaw has been discovered in itsourcecode Online File Management System 1.0. This issue affects some unknown processing of the file /ajax.p…

Mitigation only
Fix from $2,300 2025-11-21
Institute Of Current Students CRITICAL 9.8
CVE-2025-52410

Institute-of-Current-Students v1.0 contains a time-based blind SQL injection vulnerability in the mydetailsstudent.php endpoint. The `myds` GET param…

Mitigation only
Fix from $2,300 2025-11-20
Phppgadmin MEDIUM 6.5
CVE-2025-60797

phpPgAdmin 7.13.0 and earlier contains a SQL injection vulnerability in dataexport.php at line 118. The application directly executes user-supplied S…

Fix: after 7.13.0
Fix from $1,600 2025-11-20
Phppgadmin MEDIUM 6.5
CVE-2025-60798

phpPgAdmin 7.13.0 and earlier contains a SQL injection vulnerability in display.php at line 396. The application passes user-controlled input from $_…

Fix: after 7.13.0
Fix from $1,600 2025-11-20
Online Shop Project CRITICAL 9.8
CVE-2025-13451

A vulnerability was identified in SourceCodester Online Shop Project 1.0. The affected element is an unknown function of the file /action.php. Such m…

Mitigation only
Fix from $2,300 2025-11-20
Online Shop Project CRITICAL 9.8
CVE-2025-13449

A vulnerability was found in code-projects Online Shop Project 1.0. This issue affects some unknown processing of the file /login.php. The manipulati…

Mitigation only
Fix from $2,300 2025-11-20
Sports Club Management System CRITICAL 9.8
CVE-2025-13422

A vulnerability was detected in freeprojectscodes Sports Club Management System 1.0. The affected element is an unknown function of the file /dashboa…

Mitigation only
Fix from $2,300 2025-11-20
Supplier Management System CRITICAL 9.8
CVE-2025-13424

A vulnerability has been found in Campcodes Supplier Management System 1.0. This affects an unknown function of the file /admin/add_product.php. The …

Mitigation only
Fix from $2,300 2025-11-20
Human Resource Management System CRITICAL 9.8
CVE-2025-13421

A security vulnerability has been detected in itsourcecode Human Resource Management System 1.0. Impacted is an unknown function of the file /src/sto…

Mitigation only
Fix from $2,300 2025-11-19
Human Resource Management System CRITICAL 9.8
CVE-2025-13420

A weakness has been identified in itsourcecode Human Resource Management System 1.0. This issue affects some unknown processing of the file /src/stor…

Mitigation only
Fix from $2,300 2025-11-19
Online Hospital Management System HIGH 7.3
CVE-2025-63719

Campcodes Online Hospital Management System 1.0 is vulnerable to SQL Injection in /admin/index.php via the parameter username.

No fix yet
Fix from $1,950 2025-11-19
Retro Basketball Shoes Online Store CRITICAL 9.8
CVE-2025-13410

A vulnerability has been found in Campcodes Retro Basketball Shoes Online Store 1.0. Affected is an unknown function of the file /admin/receipt.php. …

Mitigation only
Fix from $2,300 2025-11-19
Unclassified HIGH 8.8
CVE-2025-65103

OpenSTAManager is an open source management software for technical assistance and invoicing. Prior to version 2.9.5, an authenticated SQL Injection v…

Mitigation only
Fix from $1,950 2025-11-19
Unclassified MEDIUM 6.0
CVE-2025-12743

The Looker endpoint for generating new projects from database connections allows users to specify "looker" as a connection name, which is a reserved …

No fix yet
Fix from $1,600 2025-11-19