Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
Beauty Parlour Management System HIGH 8.8
CVE-2025-11330

A vulnerability has been found in PHPGurukul Beauty Parlour Management System 1.1. The affected element is an unknown function of the file /admin/sal…

No fix yet
Fix from $1,950 2025-10-06
Online Course Registration Site CRITICAL 9.8
CVE-2025-11329

A flaw has been found in code-projects Online Course Registration 1.0. Impacted is an unknown function of the file /admin/manage-students.php. This m…

Mitigation only
Fix from $2,300 2025-10-06
Unclassified MEDIUM 6.3
CVE-2025-11319

A weakness has been identified in nahiduddinahammed Hospital-Management-System-Website up to e6562429e14b2f88bd2139cae16e87b965024097. This issue aff…

Mitigation only
Fix from $1,600 2025-10-06
Data Leakage Prevention System CRITICAL 9.8
CVE-2025-11316

A vulnerability was determined in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. Affected by this issue is …

Mitigation only
Fix from $2,300 2025-10-06
Data Leakage Prevention System CRITICAL 9.8
CVE-2025-11317

A vulnerability was identified in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. This affects the function …

Mitigation only
Fix from $2,300 2025-10-06
Data Leakage Prevention System CRITICAL 9.8
CVE-2025-11313

A flaw has been found in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. This impacts the function findRoleP…

Mitigation only
Fix from $2,300 2025-10-06
Data Leakage Prevention System CRITICAL 9.8
CVE-2025-11314

A vulnerability has been found in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. Affected is the function f…

Mitigation only
Fix from $2,300 2025-10-06
Data Leakage Prevention System CRITICAL 9.8
CVE-2025-11315

A vulnerability was found in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. Affected by this vulnerability …

Mitigation only
Fix from $2,300 2025-10-06
Data Leakage Prevention System CRITICAL 9.8
CVE-2025-11312

A vulnerability was detected in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. This affects the function fi…

Mitigation only
Fix from $2,300 2025-10-06
Data Leakage Prevention System CRITICAL 9.8
CVE-2025-11310

A weakness has been identified in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. The affected element is th…

Mitigation only
Fix from $2,300 2025-10-06
Data Leakage Prevention System CRITICAL 9.8
CVE-2025-11311

A security vulnerability has been detected in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. The impacted e…

Mitigation only
Fix from $2,300 2025-10-06
Data Leakage Prevention System CRITICAL 9.8
CVE-2025-11309

A security flaw has been discovered in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. Impacted is the funct…

Mitigation only
Fix from $2,300 2025-10-05
Crmeb HIGH 8.8
CVE-2025-11288

A security flaw has been discovered in CRMEB up to 5.6. This issue affects some unknown processing of the file /adminapi/product/product of the compo…

Fix: after 5.6
Fix from $1,950 2025-10-05
Unclassified HIGH 7.1
CVE-2025-10692

The endpoint POST /api/staff/get-new-tickets concatenates the user-controlled parameter departmentId directly into the SQL WHERE clause without param…

Mitigation only
Fix from $1,950 2025-10-03
Qsync Central HIGH 8.8
CVE-2025-53595

An SQL injection vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, they can then exploit the vulner…

Fix: 5.0.0.2+
Fix from $1,950 2025-10-03
Qsync Central HIGH 8.8
CVE-2025-54153

An SQL injection vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, they can then exploit the vulner…

Fix: 5.0.0.2+
Fix from $1,950 2025-10-03
Video Station HIGH 8.8
CVE-2024-56804

An SQL injection vulnerability has been reported to affect Video Station. If a remote attacker gains a user account, they can then exploit the vulner…

Fix: 5.8.4+
Fix from $1,950 2025-10-03
Unclassified MEDIUM 6.5
CVE-2025-57423

A SQL injection vulnerability was discovered in the /articles endpoint of MyClub 0.5, affecting the query parameters Content, GroupName, PersonName, …

Patch available
Fix from $1,600 2025-10-03
Unclassified MEDIUM 6.5
CVE-2025-9198

The Wp cycle text announcement plugin for WordPress is vulnerable to SQL Injection via the 'cycle-text' shortcode in all versions up to, and includin…

Mitigation only
Fix from $1,600 2025-10-03
Unclassified MEDIUM 6.5
CVE-2025-9199

The Woo superb slideshow transition gallery with random effect plugin for WordPress is vulnerable to SQL Injection via the 'woo-superb-slideshow' sho…

Mitigation only
Fix from $1,600 2025-10-03
Unclassified HIGH 7.5
CVE-2025-9200

The Blappsta Mobile App Plugin – Your native, mobile iPhone App and Android App plugin for WordPress is vulnerable to SQL Injection via the nh_ynaa_c…

Mitigation only
Fix from $1,950 2025-10-03
Unclassified CRITICAL 9.3
CVE-2025-40636

SQL injection vulnerability in Joomla module mod_vvisit_counter v2.0.4j3. This vulnerability allows an attacker to retrieve database content via the …

Mitigation only
Fix from $2,300 2025-10-03
Unclassified HIGH 8.8
CVE-2025-10582

The WP Dispatcher plugin for WordPress is vulnerable to SQL Injection via the ‘id’ parameter in all versions up to, and including, 1.2.0 due to insuf…

Mitigation only
Fix from $1,950 2025-10-03
Unclassified CRITICAL 9.1
CVE-2025-10726

The WPRecovery plugin for WordPress is vulnerable to SQL Injection via the 'data[id]' parameter in all versions up to, and including, 2.0. This is du…

Mitigation only
Fix from $2,300 2025-10-03
Unclassified HIGH 8.2
CVE-2025-0616

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Teknolojik Center Telecommunication Industry Tr…

Mitigation only
Fix from $1,950 2025-10-03
Wegia CRITICAL 9.8
CVE-2025-61605

WeGIA is an open source web manager with a focus on charitable institutions. Versions 3.4.12 and below contain an SQL Injection vulnerability which w…

Fix: 3.5.0+
Fix from $2,300 2025-10-02
Wegia CRITICAL 9.8
CVE-2025-61603

WeGIA is a Web manager for charitable institutions. Versions 3.4.12 and below include an SQL Injection vulnerability which was identified in the /con…

Fix: 3.5.0+
Fix from $2,300 2025-10-02
Firefly Mall MEDIUM 6.5
CVE-2025-56162

YOSHOP 2.0 suffers from an unauthenticated SQL injection in the goodsIds parameter of the /api/goods/listByIds endpoint. The getListByIds function co…

No fix yet
Fix from $1,600 2025-10-02
Online Shopping Portal Project MEDIUM 6.5
CVE-2025-61096

PHPGurukul Online Shopping Portal Project v2.1 is vulnerable to SQL Injection in /shopping/login.php via the fullname parameter.

No fix yet
Fix from $1,600 2025-10-02
E Tms CRITICAL 9.8
CVE-2025-59742

SQL injection vulnerability in AndSoft's e-TMS v25.03. This vulnerability could allow an attacker to retrieve, create, update, and delete databases b…

Mitigation only
Fix from $2,300 2025-10-02