Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
Online Event Judging System CRITICAL 9.8
CVE-2025-10104

A security vulnerability has been detected in code-projects Online Event Judging System 1.0. Affected is an unknown function of the file /review_sear…

Mitigation only
Fix from $2,300 2025-09-08
Weiphp HIGH 8.4
CVE-2025-55849

WeiPHP v5.0 and before is vulnerable to SQL Injection via the SucaiController.class.php file and the cancelTemplatee

Fix: after 5.0
Fix from $1,950 2025-09-08
Online Event Judging System CRITICAL 9.8
CVE-2025-10102

A security flaw has been discovered in code-projects Online Event Judging System 1.0. This affects an unknown function of the file /index.php. Perfor…

Mitigation only
Fix from $2,300 2025-09-08
Online Event Judging System CRITICAL 9.8
CVE-2025-10103

A weakness has been identified in code-projects Online Event Judging System 1.0. This impacts an unknown function of the file /home.php. Executing ma…

Mitigation only
Fix from $2,300 2025-09-08
Simple Forum\/discussion System CRITICAL 9.8
CVE-2025-10100

A vulnerability was detected in SourceCodester Simple Forum Discussion System 1.0. This impacts an unknown function of the file /admin_class.php?acti…

Mitigation only
Fix from $2,300 2025-09-08
User Management System HIGH 8.8
CVE-2025-10098

A security flaw has been discovered in PHPGurukul User Management System 1.0. Affected is an unknown function of the file /admin/edit-user-profile.ph…

No fix yet
Fix from $1,950 2025-09-08
Foxcms HIGH 7.3
CVE-2025-56630

FoxCMS v1.2.5 and before is vulnerable to SQL Injection via the column_model parameter in the app/admin/controller/Column.php file.

Fix: after 1.2.5
Fix from $1,950 2025-09-08
Jinher Oa CRITICAL 9.8
CVE-2025-10090

A flaw has been found in Jinher OA up to 1.2. The impacted element is an unknown function of the file /C6/Jhsoft.Web.departments/GetTreeDate.aspx. Ex…

Fix: after 1.2
Fix from $2,300 2025-09-08
Pet Grooming Management Software HIGH 7.2
CVE-2025-10087

A security vulnerability has been detected in SourceCodester Pet Grooming Management Software 1.0. Impacted is an unknown function of the file /admin…

No fix yet
Fix from $1,950 2025-09-08
Online Polling System CRITICAL 9.8
CVE-2025-10082

A vulnerability has been found in SourceCodester Online Polling System 1.0. Affected is an unknown function of the file /admin/manage-admins.php. Suc…

Mitigation only
Fix from $2,300 2025-09-08
Online Polling System CRITICAL 9.8
CVE-2025-10078

A vulnerability was detected in SourceCodester Online Polling System 1.0. Affected is an unknown function of the file /admin/candidates.php. Performi…

Mitigation only
Fix from $2,300 2025-09-08
Small Crm CRITICAL 9.8
CVE-2025-10079

A flaw has been found in PHPGurukul Small CRM 4.0. Affected by this vulnerability is an unknown functionality of the file /get-quote.php. Executing m…

Mitigation only
Fix from $2,300 2025-09-08
Online Polling System CRITICAL 9.8
CVE-2025-10077

A security vulnerability has been detected in SourceCodester Online Polling System 1.0. This impacts an unknown function of the file /registeracc.php…

Mitigation only
Fix from $2,300 2025-09-08
Online Polling System CRITICAL 9.8
CVE-2025-10076

A weakness has been identified in SourceCodester Online Polling System 1.0. This affects an unknown function of the file /manage-profile.php. This ma…

Mitigation only
Fix from $2,300 2025-09-08
Online Discussion Forum CRITICAL 9.8
CVE-2025-10068

A flaw has been found in itsourcecode Online Discussion Forum 1.0. This affects an unknown function of the file /admin/admin_forum/add_views.php. Exe…

Mitigation only
Fix from $2,300 2025-09-07
Student Information Management System CRITICAL 9.8
CVE-2025-10062

A vulnerability was determined in itsourcecode Student Information Management System 1.0. This affects an unknown part of the file /admin/login.php. …

Mitigation only
Fix from $2,300 2025-09-06
Online Discussion Forum CRITICAL 9.8
CVE-2025-10033

A vulnerability has been found in itsourcecode Online Discussion Forum 1.0. This affects an unknown function of the file /admin. Such manipulation of…

Mitigation only
Fix from $2,300 2025-09-06
Grocery Sales And Inventory System CRITICAL 9.8
CVE-2025-10031

A security vulnerability has been detected in Campcodes Grocery Sales and Inventory System 1.0. Impacted is an unknown function of the file /ajax.php…

Mitigation only
Fix from $2,300 2025-09-06
Grocery Sales And Inventory System CRITICAL 9.8
CVE-2025-10030

A weakness has been identified in Campcodes Grocery Sales and Inventory System 1.0. This issue affects some unknown processing of the file /ajax.php?…

Mitigation only
Fix from $2,300 2025-09-06
Unclassified MEDIUM 6.5
CVE-2025-10003

The UsersWP – Front-end login form, User Registration, User Profile & Members Directory plugin for WordPress plugin for WordPress is vulnerable to ti…

Patch available
Fix from $1,600 2025-09-06
Erpnext CRITICAL 9.1
CVE-2025-58439

ERP is a free and open source Enterprise Resource Planning tool. In versions below 14.89.2 and 15.0.0 through 15.75.1, lack of validation of paramete…

Fix: 14.89.2 / 15.76.0+
Fix from $2,300 2025-09-06
Unclassified HIGH 8.1
CVE-2025-58375

Frappe is a full-stack web application framework. Versions 14.96.9 and below, and 15.0.0 through 15.71.0 have an insecure endpoint parameter that is …

Patch available
Fix from $1,950 2025-09-06
Online Course Registration CRITICAL 9.8
CVE-2025-10025

A vulnerability has been found in PHPGurukul Online Course Registration 3.1. Affected is an unknown function of the file /admin/semester.php. The man…

Mitigation only
Fix from $2,300 2025-09-05
Unclassified CRITICAL 9.3
CVE-2025-58628

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in kamleshyadav Miraculous miraculous allows Blind…

Mitigation only
Fix from $2,300 2025-09-05
Unclassified HIGH 7.2
CVE-2025-58780

index.em7 in ScienceLogic SL1 before 12.1.1 allows SQL Injection via a parameter in a request. NOTE: this is disputed by the Supplier because it "ina…

Mitigation only
Fix from $1,950 2025-09-05
I Educar HIGH 8.8
CVE-2025-10012

A security vulnerability has been detected in Portabilis i-Educar up to 2.10. The impacted element is an unknown function of the file educar_historic…

Fix: after 2.10.0
Fix from $1,950 2025-09-05
Unclassified HIGH 8.5
CVE-2025-58881

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in gopiplus New Simple Gallery new-simple-gallery …

Mitigation only
Fix from $1,950 2025-09-05
Unclassified HIGH 7.6
CVE-2025-58789

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Themeisle WP Full Stripe Free wp-full-stripe-fr…

Mitigation only
Fix from $1,950 2025-09-05
Unclassified HIGH 7.6
CVE-2025-58788

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Saad Iqbal License Manager for WooCommerce lice…

Mitigation only
Fix from $1,950 2025-09-05
I Educar HIGH 8.8
CVE-2025-10011

A weakness has been identified in Portabilis i-Educar up to 2.10. The affected element is an unknown function of the file /module/TabelaArredondament…

Fix: after 2.10.0
Fix from $1,950 2025-09-05