Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
Files MEDIUM 6.5
CVE-2025-54790

Files is a module for managing files inside spaces and user profiles. In versions 0.16.9 and below, Files does not have logic to prevent the exploita…

Fix: 0.16.10+
Fix from $1,600 2025-08-02
Openemr HIGH 8.8
CVE-2013-10044

An authenticated SQL injection vulnerability exists in OpenEMR ≤ 4.1.1 Patch 14 that allows a low-privileged attacker to extract administrator creden…

Fix: after 4.1.1
Fix from $1,950 2025-08-01
Unclassified MEDIUM 6.5
CVE-2025-50868

A SQL Injection vulnerability exists in the takeassessment2.php file of CloudClassroom-PHP-Project 1.0. The Q4 POST parameter is not properly sanitiz…

Mitigation only
Fix from $1,600 2025-08-01
Unclassified CRITICAL 9.1
CVE-2025-52390

Saurus CMS Community Edition since commit d886e5b0 (2010-04-23) is vulnerable to a SQL Injection vulnerability in the `prepareSearchQuery()` method i…

Mitigation only
Fix from $2,300 2025-08-01
Restaurant Order System HIGH 7.8
CVE-2025-52327

SQL Injection vulnerability in Restaurant Order System 1.0 allows a local attacker to obtain sensitive information via the payment.php file

Mitigation only
Fix from $1,950 2025-08-01
Gandia Integra Total HIGH 8.8
CVE-2025-41374

A SQL injection vulnerability has been found in Gandia Integra Total of TESI from version 2.1.2217.3 to v4.4.2236.1. The vulnerability allows an auth…

Fix: after 4.4.2236.1
Fix from $1,950 2025-08-01
Limesurvey CRITICAL 9.8
CVE-2025-41375

SQL Injection vulnerability in Limesurvey v2.65.1+170522. This vulnerability allows an attacker to retrieve, create, update and delete database via '…

Fix: 3.0.0+
Fix from $2,300 2025-08-01
Gandia Integra Total HIGH 8.8
CVE-2025-41371

A SQL injection vulnerability has been found in Gandia Integra Total of TESI from version 2.1.2217.3 to v4.4.2236.1. The vulnerability allows an auth…

Fix: after 4.4.2236.1
Fix from $1,950 2025-08-01
Gandia Integra Total HIGH 8.8
CVE-2025-41372

A SQL injection vulnerability has been found in Gandia Integra Total of TESI from version 2.1.2217.3 to v4.4.2236.1. The vulnerability allows an auth…

Fix: after 4.4.2236.1
Fix from $1,950 2025-08-01
Gandia Integra Total HIGH 8.8
CVE-2025-41373

A SQL injection vulnerability has been found in Gandia Integra Total of TESI from version 2.1.2217.3 to v4.4.2236.1. The vulnerability allows an auth…

Fix: after 4.4.2236.1
Fix from $1,950 2025-08-01
Gandia Integra Total HIGH 8.8
CVE-2025-41370

A SQL injection vulnerability has been found in Gandia Integra Total of TESI from version 2.1.2217.3 to v4.4.2236.1. The vulnerability allows an auth…

Fix: after 4.4.2236.1
Fix from $1,950 2025-08-01
Online Medicine Guide CRITICAL 9.8
CVE-2025-8443

A vulnerability was found in code-projects Online Medicine Guide 1.0 and classified as critical. Affected by this issue is some unknown functionality…

Mitigation only
Fix from $2,300 2025-08-01
Online Medicine Guide CRITICAL 9.8
CVE-2025-8441

A vulnerability, which was classified as critical, was found in code-projects Online Medicine Guide 1.0. Affected is an unknown function of the file …

Mitigation only
Fix from $2,300 2025-08-01
Online Medicine Guide CRITICAL 9.8
CVE-2025-8442

A vulnerability has been found in code-projects Online Medicine Guide 1.0 and classified as critical. Affected by this vulnerability is an unknown fu…

Mitigation only
Fix from $2,300 2025-08-01
Kitchen Treasure CRITICAL 9.8
CVE-2025-8437

A vulnerability classified as critical has been found in code-projects Kitchen Treasure 1.0. This affects an unknown part of the file /userregistrati…

Mitigation only
Fix from $2,300 2025-08-01
Wazifa System CRITICAL 9.8
CVE-2025-8438

A vulnerability classified as critical was found in code-projects Wazifa System 1.0. This vulnerability affects unknown code of the file /controllers…

Mitigation only
Fix from $2,300 2025-08-01
Wazifa System CRITICAL 9.8
CVE-2025-8439

A vulnerability, which was classified as critical, has been found in code-projects Wazifa System 1.0. This issue affects some unknown processing of t…

Mitigation only
Fix from $2,300 2025-08-01
Online Admission System CRITICAL 9.8
CVE-2025-8436

A vulnerability was found in projectworlds Online Admission System 1.0. It has been rated as critical. Affected by this issue is some unknown functio…

Mitigation only
Fix from $2,300 2025-08-01
Boat Booking System CRITICAL 9.8
CVE-2025-8431

A vulnerability has been found in PHPGurukul Boat Booking System 1.0 and classified as critical. This vulnerability affects unknown code of the file …

Mitigation only
Fix from $2,300 2025-08-01
Anyware MEDIUM 6.5
CVE-2024-34327

Sielox AnyWare v2.1.2 was discovered to contain a SQL injection vulnerability via the email address field of the password reset form.

No fix yet
Fix from $1,600 2025-07-31
Vehicle Management CRITICAL 9.8
CVE-2025-8409

A vulnerability has been found in code-projects Vehicle Management 1.0 and classified as critical. Affected by this vulnerability is an unknown funct…

Mitigation only
Fix from $2,300 2025-07-31
Cloudclassroom MEDIUM 6.5
CVE-2025-50867

A SQL Injection vulnerability exists in the takeassessment2.php endpoint of the CloudClassroom-PHP-Project 1.0, where the Q5 POST parameter is direct…

Mitigation only
Fix from $1,600 2025-07-31
Vehicle Management CRITICAL 9.8
CVE-2025-8408

A vulnerability, which was classified as critical, was found in code-projects Vehicle Management 1.0. Affected is an unknown function of the file /fi…

Mitigation only
Fix from $2,300 2025-07-31
Unclassified CRITICAL 9.5
CVE-2013-10043

A vulnerability exists in OAstium VoIP PBX astium-confweb-2.1-25399 and earlier, where improper input validation in the logon.php script allows an at…

No fix yet
Fix from $2,300 2025-07-31
Unclassified CRITICAL 10.0
CVE-2014-125123

An unauthenticated SQL injection vulnerability exists in the Kloxo web hosting control panel (developed by LXCenter) prior to version 6.1.12. The fla…

Mitigation only
Fix from $2,300 2025-07-31
Unclassified CRITICAL 9.3
CVE-2013-10033

An unauthenticated SQL injection vulnerability exists in Kimai version 0.9.2.x via the db_restore.php endpoint. The flaw allows attackers to inject a…

No fix yet
Fix from $2,300 2025-07-31
Vehicle Management CRITICAL 9.8
CVE-2025-8407

A vulnerability, which was classified as critical, has been found in code-projects Vehicle Management 1.0. This issue affects some unknown processing…

Mitigation only
Fix from $2,300 2025-07-31
Online Hotel Reservation System HIGH 8.8
CVE-2025-8381

A vulnerability, which was classified as critical, has been found in Campcodes Online Hotel Reservation System 1.0. This issue affects some unknown p…

No fix yet
Fix from $1,950 2025-07-31
Online Hotel Reservation System HIGH 8.8
CVE-2025-8382

A vulnerability, which was classified as critical, was found in Campcodes Online Hotel Reservation System 1.0. Affected is an unknown function of the…

No fix yet
Fix from $1,950 2025-07-31
Vehicle Management CRITICAL 9.8
CVE-2025-8376

A vulnerability classified as critical has been found in code-projects Vehicle Management 1.0. Affected is an unknown function of the file /updatebal…

Mitigation only
Fix from $2,300 2025-07-31