Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
Car Booking System Php CRITICAL 9.8
CVE-2025-63453

Car-Booking-System-PHP v.1.0 is vulnerable to SQL Injection in /carlux/contact.php.

Mitigation only
Fix from $2,300 2025-11-03
Unclassified MEDIUM 6.5
CVE-2025-12503

EasyFlow .NET and EasyFlow AiNet developed by Digiwin has a SQL Injection vulnerability, allowing authenticated remote attackers to inject arbitrary …

Mitigation only
Fix from $1,600 2025-11-03
Billing System CRITICAL 9.8
CVE-2025-12617

A flaw has been found in itsourcecode Billing System 1.0. This affects an unknown function of the file /admin/app/login_crud.php. Executing a manipul…

Mitigation only
Fix from $2,300 2025-11-03
School Fees Payment Management System CRITICAL 9.8
CVE-2025-12612

A security flaw has been discovered in Campcodes School Fees Payment Management System 1.0. This issue affects some unknown processing of the file /a…

Mitigation only
Fix from $2,300 2025-11-03
Best House Rental Management System CRITICAL 9.8
CVE-2025-12614

A weakness has been identified in SourceCodester Best House Rental Management System 1.0. Impacted is the function delete_payment of the file /admin_…

Mitigation only
Fix from $2,300 2025-11-03
Gym Management System HIGH 8.8
CVE-2025-12609

A vulnerability was found in CodeAstro Gym Management System 1.0. Affected by this issue is some unknown functionality of the file /admin/update-prog…

No fix yet
Fix from $1,950 2025-11-03
Gym Management System HIGH 7.2
CVE-2025-12610

A vulnerability was determined in CodeAstro Gym Management System 1.0. This affects an unknown part of the file /admin/view-progress-report.php. Exec…

No fix yet
Fix from $1,950 2025-11-03
Online Loan Management System CRITICAL 9.8
CVE-2025-12607

A vulnerability was identified in itsourcecode Online Loan Management System 1.0. Impacted is an unknown function of the file /manage_payment.php. Su…

Mitigation only
Fix from $2,300 2025-11-03
Online Loan Management System CRITICAL 9.8
CVE-2025-12608

A security flaw has been discovered in itsourcecode Online Loan Management System 1.0. The affected element is an unknown function of the file /manag…

Mitigation only
Fix from $2,300 2025-11-03
Online Loan Management System CRITICAL 9.8
CVE-2025-12606

A vulnerability was determined in itsourcecode Online Loan Management System 1.0. This issue affects some unknown processing of the file /manage_borr…

Mitigation only
Fix from $2,300 2025-11-03
Online Loan Management System CRITICAL 9.8
CVE-2025-12605

A vulnerability was found in itsourcecode Online Loan Management System 1.0. This vulnerability affects unknown code of the file /manage_loan.php. Th…

Mitigation only
Fix from $2,300 2025-11-02
Online Loan Management System CRITICAL 9.8
CVE-2025-12604

A vulnerability has been found in itsourcecode Online Loan Management System 1.0. This affects an unknown part of the file /load_fields.php. The mani…

Mitigation only
Fix from $2,300 2025-11-02
Best House Rental Management System CRITICAL 9.8
CVE-2025-12598

A flaw has been found in SourceCodester Best House Rental Management System 1.0. Affected by this issue is the function save_tenant of the file /admi…

Mitigation only
Fix from $2,300 2025-11-02
Best House Rental Management System CRITICAL 9.8
CVE-2025-12597

A vulnerability was detected in SourceCodester Best House Rental Management System 1.0. Affected by this vulnerability is the function save_category …

Mitigation only
Fix from $2,300 2025-11-02
Simple Online Hotel Reservation System HIGH 7.2
CVE-2025-12594

A security flaw has been discovered in code-projects Simple Online Hotel Reservation System 2.0. This affects an unknown function of the file /admin/…

No fix yet
Fix from $1,950 2025-11-02
Unclassified MEDIUM 6.5
CVE-2025-11740

The wpForo Forum plugin for WordPress is vulnerable to SQL Injection via the Subscriptions Manager in all versions up to, and including, 2.4.9 due to…

Mitigation only
Fix from $1,600 2025-11-01
Unclassified HIGH 7.6
CVE-2025-64366

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Stylemix MasterStudy LMS masterstudy-lms-learni…

Mitigation only
Fix from $1,950 2025-10-31
Unclassified CRITICAL 9.8
CVE-2025-6520

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Abis Technology BAPSIS allows Blind SQL Injecti…

Mitigation only
Fix from $2,300 2025-10-31
Revive Adserver HIGH 8.8
CVE-2025-52664

SQL injection in Revive Adserver 6.0.0 causes potential disruption or information access when specifically crafted payloads are sent by logged in use…

Patch available
Fix from $1,950 2025-10-31
Nagios Xi HIGH 8.8
CVE-2021-47693

The Core Config Manager (CCM) in Nagios XI versions prior to CCM 3.1.3 / Nagios XI 5.8.5 contains a SQL injection vulnerability in the search text ha…

Fix: 5.8.5+
Fix from $1,950 2025-10-30
Nagios Xi HIGH 7.2
CVE-2020-36869

Nagios XI versions prior to 5.7.5 contain a SQL injection vulnerability in the SNMP Trap Interface edit page. Exploitation requires an account with a…

Fix: 5.7.5+
Fix from $1,950 2025-10-30
Nagios Xi HIGH 7.2
CVE-2020-36857

Nagios XI versions prior to 5.6.14 contain a post-authentication SQL injection vulnerability in the SNMP Trap Interface page. Exploitation requires a…

Fix: 5.6.14+
Fix from $1,950 2025-10-30
Nagios Xi HIGH 8.8
CVE-2020-36859

The Core Config Manager (CCM) in Nagios XI versions prior to CCM 3.0.7 / Nagios XI 5.7.4 contains multiple SQL injection vulnerabilities in the objec…

Fix: 5.7.4+
Fix from $1,950 2025-10-30
Nagios Xi HIGH 8.8
CVE-2016-15050

Nagios XI versions prior to 5.2.4 contain a SQL injection vulnerability in the notification search functionality. User-supplied search parameters wer…

Fix: 5.2.4+
Fix from $1,950 2025-10-30
Nagios Xi CRITICAL 9.8
CVE-2012-10063

Nagios XI versions prior to 2012R1.3 contain a SQL injection vulnerability in the legacy Core Configuration Manager (CCM) interface. Authenticated us…

Fix: after 2011
Fix from $2,300 2025-10-30
Csz Cms MEDIUM 5.4
CVE-2025-63608

A SQL injection vulnerability exists in CSZ-CMS <=1.3.0 in the Form Builder view functionality. The vulnerability is located in the field parameter o…

Fix: after 1.3.0
Fix from $1,600 2025-10-30
Unclassified HIGH 7.3
CVE-2025-64104

LangGraph SQLite Checkpoint is an implementation of LangGraph CheckpointSaver that uses SQLite DB (both sync and async, via aiosqlite). Prior to 2.0.…

Patch available
Fix from $1,950 2025-10-29
Unclassified MEDIUM 6.5
CVE-2025-60542

SQL Injection vulnerability in TypeORM before 0.3.26 via crafted request to repository.save or repository.update due to the sqlstring call using stri…

Patch available
Fix from $1,600 2025-10-29
Online Complaint Site CRITICAL 9.8
CVE-2025-63622

A vulnerability was found in code-projects Online Complaint Site 1.0. This issue affects some unknown processing of the file /cms/admin/subcategory.p…

Mitigation only
Fix from $2,300 2025-10-29
Unclassified CRITICAL 9.6
CVE-2025-4665

WordPress plugin Contact Form CFDB7 versions up to and including 1.3.2 are affected by a pre-authentication SQL injection vulnerability that cascades…

Mitigation only
Fix from $2,300 2025-10-29