Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
Employee Management System HIGH 7.2
CVE-2025-7125

A vulnerability classified as critical was found in itsourcecode Employee Management System up to 1.0. Affected by this vulnerability is an unknown f…

No fix yet
Fix from $1,950 2025-07-07
Complaint Management System CRITICAL 9.8
CVE-2025-7122

A vulnerability was found in Campcodes Complaint Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of …

Mitigation only
Fix from $2,300 2025-07-07
Complaint Management System HIGH 7.2
CVE-2025-7123

A vulnerability was found in Campcodes Complaint Management System 1.0. It has been rated as critical. This issue affects some unknown processing of …

No fix yet
Fix from $1,950 2025-07-07
Complaint Management System CRITICAL 9.8
CVE-2025-7120

A vulnerability was found in Campcodes Complaint Management System 1.0 and classified as critical. Affected by this issue is some unknown functionali…

Mitigation only
Fix from $2,300 2025-07-07
Complaint Management System HIGH 8.8
CVE-2025-7121

A vulnerability was found in Campcodes Complaint Management System 1.0. It has been classified as critical. This affects an unknown part of the file …

No fix yet
Fix from $1,950 2025-07-07
Complaint Management System CRITICAL 9.8
CVE-2025-7119

A vulnerability has been found in Campcodes Complaint Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown …

Mitigation only
Fix from $2,300 2025-07-07
Boyuncms CRITICAL 9.8
CVE-2025-7102

A vulnerability was found in BoyunCMS up to 1.4.20. It has been declared as critical. This vulnerability affects unknown code of the file application…

Fix: after 1.4.20
Fix from $2,300 2025-07-07
Unclassified CRITICAL 9.3
CVE-2025-52832

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in wpo-HR NGG Smart Image Search ngg-smart-image-s…

Mitigation only
Fix from $2,300 2025-07-04
Unclassified CRITICAL 9.3
CVE-2025-52833

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in designthemes LMS lms allows SQL Injection.This …

Mitigation only
Fix from $2,300 2025-07-04
Unclassified CRITICAL 9.3
CVE-2025-52830

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in bSecure – Your Universal Checkout bSecure – You…

Mitigation only
Fix from $2,300 2025-07-04
Unclassified CRITICAL 9.3
CVE-2025-52831

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in thanhtungtnt Video List Manager video-list-mana…

Mitigation only
Fix from $2,300 2025-07-04
Unclassified HIGH 7.5
CVE-2025-49870

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Cozmoslabs Paid Member Subscriptions paid-membe…

Mitigation only
Fix from $1,950 2025-07-04
Unclassified CRITICAL 9.8
CVE-2025-28983

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ClickandPledge Click & Pledge Connect allows Pr…

Mitigation only
Fix from $2,300 2025-07-04
Unclassified HIGH 8.5
CVE-2025-32297

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in quantumcloud Simple Link Directory qc-simple-li…

Mitigation only
Fix from $1,950 2025-07-04
Unclassified HIGH 8.5
CVE-2025-24780

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in printcart Printcart Web to Print Product Design…

Mitigation only
Fix from $1,950 2025-07-04
Unclassified HIGH 8.5
CVE-2025-30947

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in gopiplus Cool fade popup cool-fade-popup allows…

Mitigation only
Fix from $1,950 2025-07-04
Unclassified HIGH 8.5
CVE-2025-30969

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in gopiplus iFrame Images Gallery wp-iframe-images…

Mitigation only
Fix from $1,950 2025-07-04
Unclassified HIGH 8.5
CVE-2025-30979

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in gopiplus Pixelating image slideshow gallery pix…

Mitigation only
Fix from $1,950 2025-07-04
Unclassified HIGH 8.5
CVE-2025-28969

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in cybio Gallery Widget gallery-widget allows SQL …

Mitigation only
Fix from $1,950 2025-07-04
Unclassified HIGH 8.5
CVE-2025-28967

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Steve Truman Contact Us page - Contact people L…

Mitigation only
Fix from $1,950 2025-07-04
Gozen Forms HIGH 7.5
CVE-2025-6783

The GoZen Forms plugin for WordPress is vulnerable to SQL Injection via the 'forms-id' parameter of the emdedSc() function in all versions up to, and…

Fix: after 1.1.5
Fix from $1,950 2025-07-04
Wpquiz MEDIUM 6.5
CVE-2025-6739

The WPQuiz plugin for WordPress is vulnerable to SQL Injection via the 'id' attribute of the 'wpquiz' shortcode in all versions up to, and including,…

Fix: after 0.4.2
Fix from $1,600 2025-07-04
Gozen Forms HIGH 7.5
CVE-2025-6782

The GoZen Forms plugin for WordPress is vulnerable to SQL Injection via the 'forms-id' parameter of the dirGZActiveForm() function in all versions up…

Fix: after 1.1.5
Fix from $1,950 2025-07-04
Litellm MEDIUM 5.4
CVE-2025-45809

SQL Injection vulnerability in BerriAI LiteLLM before 1.81.0 allows attackers to execute arbitrary commands via the key parameter to the "/key/block"…

No fix yet
Fix from $1,600 2025-07-03
Meac300 Fnade4 Firmware HIGH 7.5
CVE-2025-1708

The application is vulnerable to SQL injection attacks. An attacker is able to dump the PostgreSQL database and read its content.

Fix: after 0.16.0
Fix from $1,950 2025-07-03
Ads Pro HIGH 7.5
CVE-2025-6437

The Ads Pro Plugin - Multi-Purpose WordPress Advertising Manager plugin for WordPress is vulnerable to SQL Injection via the ‘oid’ parameter in all v…

Fix: after 4.89
Fix from $1,950 2025-07-02
Ads Pro HIGH 7.5
CVE-2025-5339

The Ads Pro Plugin - Multi-Purpose WordPress Advertising Manager plugin for WordPress is vulnerable to time-based SQL Injection via the ‘bsa_pro_id’ …

Fix: after 4.89
Fix from $1,950 2025-07-02
Ads Pro HIGH 7.5
CVE-2025-4381

The Ads Pro Plugin - Multi-Purpose WordPress Advertising Manager plugin for WordPress is vulnerable to SQL Injection via the ‘$id’ variable of the ge…

Fix: after 4.89
Fix from $1,950 2025-07-02
Employee Management System CRITICAL 9.8
CVE-2025-6962

A vulnerability, which was classified as critical, was found in Campcodes Employee Management System 1.0. This affects an unknown part of the file /m…

Mitigation only
Fix from $2,300 2025-07-01
Employee Management System CRITICAL 9.8
CVE-2025-6963

A vulnerability has been found in Campcodes Employee Management System 1.0 and classified as critical. This vulnerability affects unknown code of the…

Mitigation only
Fix from $2,300 2025-07-01