Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
Student Grading System HIGH 8.8
CVE-2025-10418

A weakness has been identified in SourceCodester Student Grading System 1.0. Affected by this vulnerability is an unknown functionality of the file /…

No fix yet
Fix from $1,950 2025-09-15
Student Grading System HIGH 8.8
CVE-2025-10419

A security vulnerability has been detected in SourceCodester Student Grading System 1.0. Affected by this issue is some unknown functionality of the …

No fix yet
Fix from $1,950 2025-09-15
Grocery Sales And Inventory System CRITICAL 9.8
CVE-2025-10417

A security flaw has been discovered in Campcodes Grocery Sales and Inventory System 1.0. Affected is an unknown function of the file /ajax.php?action…

Mitigation only
Fix from $2,300 2025-09-15
Grocery Sales And Inventory System CRITICAL 9.8
CVE-2025-10416

A vulnerability was identified in Campcodes Grocery Sales and Inventory System 1.0. This impacts an unknown function of the file /ajax.php?action=del…

Mitigation only
Fix from $2,300 2025-09-15
Grocery Sales And Inventory System CRITICAL 9.8
CVE-2025-10415

A vulnerability was determined in Campcodes Grocery Sales and Inventory System 1.0. This affects an unknown function of the file /ajax.php?action=sav…

Mitigation only
Fix from $2,300 2025-09-14
Grocery Sales And Inventory System CRITICAL 9.8
CVE-2025-10414

A vulnerability was found in Campcodes Grocery Sales and Inventory System 1.0. The impacted element is an unknown function of the file /ajax.php?acti…

Mitigation only
Fix from $2,300 2025-09-14
Grocery Sales And Inventory System CRITICAL 9.8
CVE-2025-10413

A vulnerability has been found in Campcodes Grocery Sales and Inventory System 1.0. The affected element is an unknown function of the file /ajax.php…

Mitigation only
Fix from $2,300 2025-09-14
Student Grading System HIGH 8.8
CVE-2025-10409

A weakness has been identified in SourceCodester Student Grading System 1.0. This affects an unknown part of the file /rms.php?page=users. Executing …

No fix yet
Fix from $1,950 2025-09-14
Student Grading System HIGH 8.8
CVE-2025-10407

A vulnerability was identified in SourceCodester Student Grading System 1.0. Affected by this vulnerability is an unknown functionality of the file /…

No fix yet
Fix from $1,950 2025-09-14
Student Grading System HIGH 8.8
CVE-2025-10408

A security flaw has been discovered in SourceCodester Student Grading System 1.0. Affected by this issue is some unknown functionality of the file /e…

No fix yet
Fix from $1,950 2025-09-14
Baptism Information Management System CRITICAL 9.8
CVE-2025-10405

A vulnerability was determined in itsourcecode Baptism Information Management System 1.0. Affected is an unknown function of the file /listbaptism.ph…

Mitigation only
Fix from $2,300 2025-09-14
Baptism Information Management System CRITICAL 9.8
CVE-2025-10404

A vulnerability was found in itsourcecode Baptism Information Management System 1.0. This impacts an unknown function of the file /rptbaptismal.php. …

Mitigation only
Fix from $2,300 2025-09-14
Beauty Parlour Management System CRITICAL 9.8
CVE-2025-10403

A vulnerability has been found in PHPGurukul Beauty Parlour Management System 1.1. This affects an unknown function of the file /admin/view-enquiry.p…

Mitigation only
Fix from $2,300 2025-09-14
Beauty Parlour Management System CRITICAL 9.8
CVE-2025-10402

A flaw has been found in PHPGurukul Beauty Parlour Management System 1.1. The impacted element is an unknown function of the file /admin/readenq.php.…

Mitigation only
Fix from $2,300 2025-09-14
Food Ordering Management System HIGH 8.8
CVE-2025-10400

A security vulnerability has been detected in SourceCodester Food Ordering Management System 1.0. Impacted is an unknown function of the file /router…

No fix yet
Fix from $1,950 2025-09-14
Unclassified MEDIUM 6.3
CVE-2025-10399

A weakness has been identified in Korzh EasyQuery up to 7.4.0. This issue affects some unknown processing of the file /api/easyquery/models/nwind/fet…

Mitigation only
Fix from $1,600 2025-09-14
Pet Grooming Management Software CRITICAL 9.8
CVE-2025-10396

A vulnerability was determined in SourceCodester Pet Grooming Management Software 1.0. Affected by this issue is some unknown functionality of the fi…

Mitigation only
Fix from $2,300 2025-09-14
Jasmin Ransomware HIGH 8.8
CVE-2025-10387

A vulnerability was determined in codesiddhant Jasmin Ransomware up to 1.0.1. This vulnerability affects unknown code of the file /handshake.php. Thi…

No fix yet
Fix from $1,950 2025-09-14
Zabbix HIGH 7.2
CVE-2025-27240

A Zabbix adminitrator can inject arbitrary SQL during the autoremoval of hosts by inserting malicious SQL in the 'Visible name' field.

Fix: 6.0.34 / 6.4.19+
Fix from $1,950 2025-09-12
Unclassified CRITICAL 9.8
CVE-2025-10266

NUP Pro developed by NewType Infortech has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary SQL commands …

Mitigation only
Fix from $2,300 2025-09-12
Unclassified HIGH 7.5
CVE-2025-9807

The The Events Calendar plugin for WordPress is vulnerable to time-based SQL Injection via the ‘s’ parameter in all versions up to, and including, 6.…

Mitigation only
Fix from $1,950 2025-09-12
Foxcms CRITICAL 9.8
CVE-2025-10251

A vulnerability was detected in FoxCMS up to 1.24. Affected by this issue is the function batchCope of the file /app/admin/controller/Images.php. The…

Fix: after 1.24
Fix from $2,300 2025-09-11
Online Fire Reporting System CRITICAL 9.8
CVE-2025-40690

SQL Injection in Online Fire Reporting System v1.2 by PHPGurukul. This vulnerability allows an attacker to retrieve, create, update and delete databa…

Mitigation only
Fix from $2,300 2025-09-11
Online Fire Reporting System CRITICAL 9.8
CVE-2025-40691

SQL Injection in Online Fire Reporting System v1.2 by PHPGurukul. This vulnerability allows an attacker to retrieve, create, update and delete databa…

Mitigation only
Fix from $2,300 2025-09-11
Online Fire Reporting System CRITICAL 9.8
CVE-2025-40692

SQL Injection in Online Fire Reporting System v1.2 by PHPGurukul. This vulnerability allows an attacker to retrieve, create, update and delete databa…

Mitigation only
Fix from $2,300 2025-09-11
Online Fire Reporting System CRITICAL 9.8
CVE-2025-40687

SQL Injection in Online Fire Reporting System v1.2 by PHPGurukul. This vulnerability allows an attacker to retrieve, create, update and delete databa…

Mitigation only
Fix from $2,300 2025-09-11
Online Fire Reporting System CRITICAL 9.8
CVE-2025-40689

SQL Injection in Online Fire Reporting System v1.2 by PHPGurukul. This vulnerability allows an attacker to retrieve, create, update and delete databa…

Mitigation only
Fix from $2,300 2025-09-11
Unclassified HIGH 7.5
CVE-2025-9073

The All in one Minifier plugin for WordPress is vulnerable to SQL Injection via the 'post_id' parameter in all versions up to, and including, 3.2 due…

Mitigation only
Fix from $1,950 2025-09-11
Unclassified MEDIUM 6.5
CVE-2025-9451

The Smartcat Translator for WPML plugin for WordPress is vulnerable to time-based SQL Injection via the ‘orderby’ parameter in all versions up to, an…

Mitigation only
Fix from $1,600 2025-09-11
Unclassified MEDIUM 6.5
CVE-2025-9776

The CatFolders – Tame Your WordPress Media Library by Category plugin for WordPress is vulnerable to time-based SQL Injection via the CSV Import cont…

Mitigation only
Fix from $1,600 2025-09-11