Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
Vehicle Parking Management System CRITICAL 9.8
CVE-2025-45885

PHPGURUKUL Vehicle Parking Management System v1.13 is vulnerable to SQL injection in the /vpms/users/login.php file. Attackers can inject malicious c…

No fix yet
Fix from $2,300 2025-05-09
Online Student Clearance System CRITICAL 9.8
CVE-2025-4467

A vulnerability was found in SourceCodester Online Student Clearance System 1.0. It has been declared as critical. This vulnerability affects unknown…

No fix yet
Fix from $2,300 2025-05-09
Gym Management System CRITICAL 9.8
CVE-2025-4464

A vulnerability has been found in itsourcecode Gym Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown fun…

No fix yet
Fix from $2,300 2025-05-09
Gym Management System CRITICAL 9.8
CVE-2025-4465

A vulnerability was found in itsourcecode Gym Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality …

No fix yet
Fix from $2,300 2025-05-09
Gym Management System CRITICAL 9.8
CVE-2025-4466

A vulnerability was found in itsourcecode Gym Management System 1.0. It has been classified as critical. This affects an unknown part of the file /aj…

No fix yet
Fix from $2,300 2025-05-09
Gym Management System CRITICAL 9.8
CVE-2025-4463

A vulnerability, which was classified as critical, was found in itsourcecode Gym Management System 1.0. Affected is an unknown function of the file /…

No fix yet
Fix from $2,300 2025-05-09
Patient Record Management System HIGH 8.8
CVE-2025-4458

A vulnerability was found in code-projects Patient Record Management System 1.0. It has been declared as critical. Affected by this vulnerability is …

No fix yet
Fix from $1,950 2025-05-09
Patient Record Management System HIGH 8.8
CVE-2025-4459

A vulnerability was found in code-projects Patient Record Management System 1.0. It has been rated as critical. Affected by this issue is some unknow…

No fix yet
Fix from $1,950 2025-05-09
Car Rental Project CRITICAL 9.8
CVE-2025-4456

A vulnerability classified as critical has been found in Project Worlds Car Rental Project 1.0. Affected is an unknown function of the file /signup.p…

No fix yet
Fix from $2,300 2025-05-09
Car Rental Project CRITICAL 9.8
CVE-2025-4457

A vulnerability classified as critical was found in Project Worlds Car Rental Project 1.0. Affected by this vulnerability is an unknown functionality…

No fix yet
Fix from $2,300 2025-05-09
Senayan Library Management System Bulian MEDIUM 6.5
CVE-2025-45818

Slims (Senayan Library Management Systems) 9 Bulian 9.6.1 is vulnerable to SQL Injection in admin/modules/master_file/item_status.php.

No fix yet
Fix from $1,600 2025-05-08
Senayan Library Management System Bulian MEDIUM 6.5
CVE-2025-45819

Slims (Senayan Library Management Systems) 9 Bulian 9.6.1 is vulnerable to SQL Injection in admin/modules/master_file/author.php.

No fix yet
Fix from $1,600 2025-05-08
Senayan Library Management System Bulian MEDIUM 6.5
CVE-2025-45820

Slims (Senayan Library Management Systems) 9 Bulian 9.6.1 is vulnerable to SQL Injection in admin/modules/bibliography/pop_author_edit.php.

No fix yet
Fix from $1,600 2025-05-08
Wegia CRITICAL 9.8
CVE-2025-46828

WeGIA is a web manager for charitable institutions. An unauthenticated SQL Injection vulnerability was identified in versions up to and including 3.…

Fix: 3.3.1+
Fix from $2,300 2025-05-07
Unclassified CRITICAL 9.3
CVE-2025-47657

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Productive Minds Productive Commerce productive…

Mitigation only
Fix from $2,300 2025-05-07
Unclassified HIGH 7.6
CVE-2025-47643

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ELEXtensions ELEX Product Feed for WooCommerce …

Mitigation only
Fix from $1,950 2025-05-07
Unclassified HIGH 7.6
CVE-2025-47587

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in YayCommerce YaySMTP yaysmtp allows Blind SQL In…

Mitigation only
Fix from $1,950 2025-05-07
Dynamic Pricing With Discount Rules For Woocommerce HIGH 7.2
CVE-2025-47544

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in acowebs Dynamic Pricing With Discount Rules for…

Fix: 4.5.9+
Fix from $1,950 2025-05-07
Unclassified HIGH 7.6
CVE-2025-47537

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in add-ons.org PDF Invoice Builder for WooCommerce…

Mitigation only
Fix from $1,950 2025-05-07
Cart Tracking For Woocommerce HIGH 7.2
CVE-2025-47538

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in wpdever Cart tracking for WooCommerce cart-trac…

Fix: after 1.0.17
Fix from $1,950 2025-05-07
Unclassified HIGH 8.5
CVE-2025-47490

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Rustaurius Ultimate WP Mail ultimate-wp-mail al…

Mitigation only
Fix from $1,950 2025-05-07
Unclassified HIGH 7.6
CVE-2025-47460

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TrackShip TrackShip for WooCommerce trackship-f…

Mitigation only
Fix from $1,950 2025-05-07
Galera MEDIUM 5.4
CVE-2025-29153

SQL Injection vulnerability in lemeconsultoria HCM galera.app v.4.58.0 allows an attacker to execute arbitrary code via the Data export, filters func…

No fix yet
Fix from $1,600 2025-05-07
Boinc Server CRITICAL 9.8
CVE-2025-0668

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in BOINC Server allows Stored XSS.This issu…

Fix: 1.4.5+
Fix from $2,300 2025-05-07
Unclassified HIGH 7.5
CVE-2025-0853

The PGS Core plugin for WordPress is vulnerable to SQL Injection via the 'event' parameter in the 'save_header_builder' function in all versions up t…

Mitigation only
Fix from $1,950 2025-05-06
Seacms CRITICAL 9.8
CVE-2025-44073

SeaCMS v13.3 was discovered to contain a SQL injection vulnerability via the component admin_comment_news.php.

No fix yet
Fix from $2,300 2025-05-06
Unclassified MEDIUM 5.1
CVE-2023-33770

Real Estate Management System v1.0 was discovered to contain a SQL injection vulnerability via the message parameter at /contact.php.

Mitigation only
Fix from $1,600 2025-05-06
Gym Management System CRITICAL 9.8
CVE-2025-4363

A vulnerability, which was classified as critical, has been found in itsourcecode Gym Management System 1.0. This issue affects some unknown processi…

No fix yet
Fix from $2,300 2025-05-06
Gym Management System CRITICAL 9.8
CVE-2025-4362

A vulnerability classified as critical was found in itsourcecode Gym Management System 1.0. This vulnerability affects unknown code of the file /ajax…

No fix yet
Fix from $2,300 2025-05-06
Gym Management System CRITICAL 9.8
CVE-2025-4360

A vulnerability, which was classified as critical, has been found in itsourcecode Gym Management System 1.0. Affected by this issue is some unknown f…

No fix yet
Fix from $2,300 2025-05-06