Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
Unclassified CRITICAL 9.8
CVE-2025-6169

The WIMP website co-construction management platform from HAMASTAR Technology has a SQL Injection vulnerability, allowing unauthenticated remote atta…

Mitigation only
Fix from $2,300 2025-06-16
Unclassified MEDIUM 6.3
CVE-2025-6100

A vulnerability was found in realguoshuai open-video-cms 1.0. It has been rated as critical. This issue affects some unknown processing of the file /…

No fix yet
Fix from $1,600 2025-06-16
Jasmin Ransomware HIGH 8.8
CVE-2025-6096

A vulnerability has been found in codesiddhant Jasmin Ransomware up to 1.0.1 and classified as critical. Affected by this vulnerability is an unknown…

No fix yet
Fix from $1,950 2025-06-16
Foxcms HIGH 8.8
CVE-2025-6094

A vulnerability, which was classified as critical, has been found in qianfox FoxCMS up to 1.2.5. This issue affects the function batchCope of the fil…

Fix: after 1.2.5
Fix from $1,950 2025-06-15
Jasmin Ransomware CRITICAL 9.8
CVE-2025-6095

A vulnerability, which was classified as critical, was found in codesiddhant Jasmin Ransomware 1.0.1. Affected is an unknown function of the file /ch…

Mitigation only
Fix from $2,300 2025-06-15
Unclassified HIGH 7.2
CVE-2025-5487

The AutomatorWP – Automator plugin for no-code automations, webhooks & custom integrations in WordPress plugin for WordPress is vulnerable to time-ba…

Mitigation only
Fix from $1,950 2025-06-14
Unclassified HIGH 8.6
CVE-2025-49468

A SQL injection vulnerability in No Boss Calendar component before 5.0.7 for Joomla was discovered. The vulnerability allows remote authenticated use…

Mitigation only
Fix from $1,950 2025-06-13
Unclassified MEDIUM 6.8
CVE-2025-41233

Description: VMware AVI Load Balancer contains an authenticated blind SQL Injection vulnerability. VMware has evaluated the severity of the issue to…

Mitigation only
Fix from $1,600 2025-06-12
Unclassified MEDIUM 5.4
CVE-2023-45256

Multiple SQL injection vulnerabilities in the EuroInformation MoneticoPaiement module before 1.1.1 for PrestaShop allow remote attackers to execute a…

Mitigation only
Fix from $1,600 2025-06-12
Unclassified CRITICAL 9.3
CVE-2025-49467

A SQL injection vulnerability in JEvents component before 3.6.88 and 3.6.82.1 for Joomla was discovered. The extension is vulnerable to SQL injection…

Mitigation only
Fix from $2,300 2025-06-12
Pg MEDIUM 6.5
CVE-2024-44905

go-pg pg v10.13.0 was discovered to contain a SQL injection vulnerability via the component /types/append_value.go.

No fix yet
Fix from $1,600 2025-06-12
Pgdriver MEDIUM 6.5
CVE-2024-44906

uptrace pgdriver v1.2.1 was discovered to contain a SQL injection vulnerability via the appendArg function in /pgdriver/format.go. The maintainer has…

No fix yet
Fix from $1,600 2025-06-12
Pg Promise MEDIUM 5.4
CVE-2025-29744

pg-promise before 11.5.5 is vulnerable to SQL Injection due to improper handling of negative numbers.

Fix: 11.5.5+
Fix from $1,600 2025-06-12
Xwiki CRITICAL 9.8
CVE-2024-56158

XWiki is a generic wiki platform. It's possible to execute any SQL query in Oracle by using the function like DBMS_XMLGEN or DBMS_XMLQUERY. The XWiki…

Fix: 15.10.16 / 16.4.7+
Fix from $2,300 2025-06-12
Like Girl HIGH 7.2
CVE-2025-6009

A vulnerability was found in kiCode111 like-girl 5.2.0 and classified as critical. Affected by this issue is some unknown functionality of the file /…

No fix yet
Fix from $1,950 2025-06-12
Like Girl HIGH 7.2
CVE-2025-6005

A vulnerability classified as critical was found in kiCode111 like-girl 5.2.0. This vulnerability affects unknown code of the file /admin/aboutPost.p…

No fix yet
Fix from $1,950 2025-06-12
Like Girl HIGH 7.2
CVE-2025-6006

A vulnerability, which was classified as critical, has been found in kiCode111 like-girl 5.2.0. This issue affects some unknown processing of the fil…

No fix yet
Fix from $1,950 2025-06-12
Like Girl HIGH 7.2
CVE-2025-6007

A vulnerability, which was classified as critical, was found in kiCode111 like-girl 5.2.0. Affected is an unknown function of the file /admin/Copyadm…

No fix yet
Fix from $1,950 2025-06-12
Like Girl HIGH 7.2
CVE-2025-6008

A vulnerability has been found in kiCode111 like-girl 5.2.0 and classified as critical. Affected by this vulnerability is an unknown functionality of…

No fix yet
Fix from $1,950 2025-06-12
Unclassified MEDIUM 6.7
CVE-2025-32466

A SQL injection vulnerability in RSMediaGallery! component 1.7.4 - 2.1.7 for Joomla was discovered. The issue occurs within the dashboard component,…

Mitigation only
Fix from $1,600 2025-06-11
Restaurant Order System CRITICAL 9.8
CVE-2025-5980

A vulnerability classified as critical was found in code-projects Restaurant Order System 1.0. This vulnerability affects unknown code of the file /o…

Mitigation only
Fix from $2,300 2025-06-10
School Fees Payment System CRITICAL 9.8
CVE-2025-5979

A vulnerability classified as critical has been found in code-projects School Fees Payment System 1.0. This affects an unknown part of the file /bran…

Mitigation only
Fix from $2,300 2025-06-10
School Fees Payment System CRITICAL 9.8
CVE-2025-5977

A vulnerability was found in code-projects School Fees Payment System 1.0 and classified as critical. This issue affects some unknown processing of t…

Mitigation only
Fix from $2,300 2025-06-10
School Fees Payment System HIGH 8.8
CVE-2025-5971

A vulnerability was found in code-projects School Fees Payment System 1.0. It has been classified as critical. This affects an unknown part of the fi…

No fix yet
Fix from $1,950 2025-06-10
Sharepoint Enterprise Server HIGH 8.8
CVE-2025-47172

Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft Office SharePoint allows an authorized attacker to …

Fix: after 16.0.18526.20396
Fix from $1,950 2025-06-10
Unclassified CRITICAL 9.3
CVE-2025-49455

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ClickandPledge WordPress-WPJobBoard click-pledg…

Mitigation only
Fix from $2,300 2025-06-10
Dm Corporative Cms CRITICAL 9.8
CVE-2025-40657

A SQL injection vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to retrieve, create, update and delete data…

Fix: 2025.01+
Fix from $2,300 2025-06-10
Dm Corporative Cms CRITICAL 9.8
CVE-2025-40655

A SQL injection vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to retrieve, create, update and delete data…

Fix: 2025.01+
Fix from $2,300 2025-06-10
Dm Corporative Cms CRITICAL 9.8
CVE-2025-40656

A SQL injection vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to retrieve, create, update and delete data…

Fix: 2025.01+
Fix from $2,300 2025-06-10
Dm Corporative Cms CRITICAL 9.8
CVE-2025-40654

A SQL injection vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to retrieve, create, update and delete data…

Fix: 2025.01+
Fix from $2,300 2025-06-10