Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
Hospital Management System HIGH 7.1
CVE-2025-63497

The patient prescription viewing functionality in his_doc_view_single_patient.php of rickxy Hospital Management System version 1.0 contains an SQL in…

Mitigation only
Fix from $1,950 2025-11-10
Interview Management System CRITICAL 9.8
CVE-2025-12939

A security flaw has been discovered in SourceCodester Interview Management System up to 1.0. Affected by this issue is some unknown functionality of …

Mitigation only
Fix from $2,300 2025-11-10
Online Admission System CRITICAL 9.8
CVE-2025-12938

A vulnerability was identified in projectworlds Online Admission System 1.0. Affected by this vulnerability is an unknown functionality of the file /…

Mitigation only
Fix from $2,300 2025-11-10
Unclassified HIGH 7.3
CVE-2025-12409

A SQL injection vulnerability was discovered in Looker Studio that allowed for data exfiltration from BigQuery data sources. By creating a maliciou…

Mitigation only
Fix from $1,950 2025-11-10
Unclassified HIGH 7.6
CVE-2025-12397

A SQL injection vulnerability was found in Looker Studio. A Looker Studio user with report view access could inject malicious SQL that would execute…

Mitigation only
Fix from $1,950 2025-11-10
Baby Care System CRITICAL 9.8
CVE-2025-12933

A vulnerability was identified in SourceCodester Baby Care System 1.0. This affects an unknown part of the file /updatewelcome.php?id=siteoptions&act…

Mitigation only
Fix from $2,300 2025-11-10
Food Ordering System CRITICAL 9.8
CVE-2025-12931

A vulnerability was found in SourceCodester Food Ordering System 1.0. Affected by this vulnerability is an unknown functionality of the file /routers…

Mitigation only
Fix from $2,300 2025-11-10
Baby Care System CRITICAL 9.8
CVE-2025-12932

A vulnerability was determined in SourceCodester Baby Care System 1.0. Affected by this issue is some unknown functionality of the file /admin.php?id…

Mitigation only
Fix from $2,300 2025-11-10
Food Ordering System CRITICAL 9.8
CVE-2025-12930

A vulnerability has been found in SourceCodester Food Ordering System 1.0. Affected is an unknown function of the file /view-ticket.php. The manipula…

Mitigation only
Fix from $2,300 2025-11-10
Online Job Search Engine CRITICAL 9.8
CVE-2025-12928

A vulnerability was detected in code-projects Online Job Search Engine 1.0. This affects an unknown function of the file /login.php. Performing manip…

Mitigation only
Fix from $2,300 2025-11-10
Survey Application System CRITICAL 9.8
CVE-2025-12929

A flaw has been found in SourceCodester Survey Application System 1.0. This impacts the function save_user/update_user of the file /LoginRegistration…

Mitigation only
Fix from $2,300 2025-11-10
U Office Force HIGH 8.8
CVE-2025-12864

U-Office Force developed by e-Excellence has a SQL Injection vulnerability, allowing authenticated remote attacker to inject arbitrary SQL commands t…

Fix: 29.50+
Fix from $1,950 2025-11-10
U Office Force HIGH 8.8
CVE-2025-12865

U-Office Force developed by e-Excellence has a SQL Injection vulnerability, allowing authenticated remote attacker to inject arbitrary SQL commands t…

Fix: 29.50+
Fix from $1,950 2025-11-10
Farm Management System HIGH 8.8
CVE-2025-12926

A weakness has been identified in SourceCodester Farm Management System 1.0. The affected element is an unknown function of the file /review.php. Thi…

No fix yet
Fix from $1,950 2025-11-10
Dedebiz HIGH 7.2
CVE-2025-12927

A security vulnerability has been detected in DedeBIZ up to 6.3.2. The impacted element is an unknown function of the file /admin/archives_add.php. S…

Fix: after 6.3.2
Fix from $1,950 2025-11-10
Responsive Hotel Site CRITICAL 9.8
CVE-2025-12913

A flaw has been found in code-projects Responsive Hotel Site 1.0. This affects an unknown part of the file /admin/roomdel.php. Executing manipulation…

Mitigation only
Fix from $2,300 2025-11-08
Unclassified HIGH 7.5
CVE-2025-11452

The Asgaros Forum plugin for WordPress is vulnerable to SQL Injection via the '$_COOKIE['asgarosforum_unread_exclude']' cookie in all versions up to,…

Patch available
Fix from $1,950 2025-11-08
Suitecrm HIGH 8.8
CVE-2025-64492

SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. Versions 8.9.0 and below contain a time-bas…

Fix: 8.9.1+
Fix from $1,950 2025-11-08
Suitecrm MEDIUM 6.5
CVE-2025-64493

SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. In versions 8.6.0 through 8.9.0, there is a…

Fix: 8.9.1+
Fix from $1,600 2025-11-08
Suitecrm HIGH 8.8
CVE-2025-64488

SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. In versions 7.14.7 and below and 8.0.0-beta…

Fix: 7.14.8+
Fix from $1,950 2025-11-08
School File Management System CRITICAL 9.8
CVE-2025-12873

A security flaw has been discovered in Campcodes School File Management 1.0. This affects an unknown part of the file /admin/update_user.php. Perform…

Mitigation only
Fix from $2,300 2025-11-07
Patients Waiting Area Queue Management System MEDIUM 6.5
CVE-2025-63718

A SQL injection vulnerability exists in the SourceCodester PQMS (Patient Queue Management System) 1.0 in the api_patient_schedule.php endpoint. The a…

No fix yet
Fix from $1,600 2025-11-07
Money Pos CRITICAL 10.0
CVE-2025-63689

Multiple SQL injection vulnerabilitites in ycf1998 money-pos system before commit 11f276bd20a41f089298d804e43cb1c39d041e59 (2025-09-14) allows a remo…

Fix: 2025-09-14+
Fix from $2,300 2025-11-07
Dedebiz HIGH 7.2
CVE-2025-12861

A vulnerability was determined in DedeBIZ up to 6.3.2. Affected by this vulnerability is an unknown functionality of the file /admin/spec_add.php. Th…

Fix: after 6.3.2
Fix from $1,950 2025-11-07
Qumagie CRITICAL 9.8
CVE-2025-52425

An SQL injection vulnerability has been reported to affect QuMagie. A remote attacker can exploit the vulnerability to execute unauthorized code or c…

Fix: 2.7.0+
Fix from $2,300 2025-11-07
Dedebiz HIGH 7.2
CVE-2025-12860

A vulnerability was found in DedeBIZ up to 6.3.2. Affected is an unknown function of the file /admin/freelist_main.php. The manipulation of the argum…

Fix: after 6.3.2
Fix from $1,950 2025-11-07
Dedebiz HIGH 7.2
CVE-2025-12859

A vulnerability has been found in DedeBIZ up to 6.3.2. This impacts an unknown function of the file /admin/templets_one_edit.php. The manipulation of…

Fix: after 6.3.2
Fix from $1,950 2025-11-07
Responsive Hotel Site CRITICAL 9.8
CVE-2025-12855

A security flaw has been discovered in code-projects Responsive Hotel Site 1.0. This issue affects some unknown processing of the file /admin/newslet…

Mitigation only
Fix from $2,300 2025-11-07
Responsive Hotel Site CRITICAL 9.8
CVE-2025-12856

A weakness has been identified in code-projects Responsive Hotel Site 1.0. Impacted is an unknown function of the file /admin/reservation.php. This m…

Mitigation only
Fix from $2,300 2025-11-07
Responsive Hotel Site CRITICAL 9.8
CVE-2025-12857

A security vulnerability has been detected in code-projects Responsive Hotel Site 1.0. The affected element is an unknown function of the file /admin…

Mitigation only
Fix from $2,300 2025-11-07