Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
Apartment Visitor Management System HIGH 8.8
CVE-2025-3143

A vulnerability classified as critical has been found in SourceCodester Apartment Visitor Management System 1.0. Affected is an unknown function of t…

No fix yet
Fix from $1,950 2025-04-03
Online Medicine Ordering System CRITICAL 9.8
CVE-2025-3141

A vulnerability was found in SourceCodester Online Medicine Ordering System 1.0. It has been declared as critical. This vulnerability affects unknown…

No fix yet
Fix from $2,300 2025-04-03
Online Medicine Ordering System CRITICAL 9.8
CVE-2025-3140

A vulnerability was found in SourceCodester Online Medicine Ordering System 1.0. It has been classified as critical. This affects an unknown part of …

No fix yet
Fix from $2,300 2025-04-03
Online Security Guards Hiring System CRITICAL 9.8
CVE-2025-3137

A vulnerability, which was classified as critical, was found in PHPGurukul Online Security Guards Hiring System 1.0. Affected is an unknown function …

No fix yet
Fix from $2,300 2025-04-03
Online Security Guards Hiring System CRITICAL 9.8
CVE-2025-3138

A vulnerability has been found in PHPGurukul Online Security Guards Hiring System 1.0 and classified as critical. Affected by this vulnerability is a…

No fix yet
Fix from $2,300 2025-04-03
Payroll Management System HIGH 8.8
CVE-2025-3134

A vulnerability classified as critical has been found in code-projects Payroll Management System 1.0. This affects an unknown part of the file /add_o…

No fix yet
Fix from $1,950 2025-04-03
Smart Park Management System CRITICAL 9.8
CVE-2025-3135

A vulnerability classified as critical was found in fcba_zzm ics-park Smart Park Management System 2.1. This vulnerability affects unknown code of th…

Mitigation only
Fix from $2,300 2025-04-03
Apartment Visitors Management System CRITICAL 9.8
CVE-2025-3120

A vulnerability was found in SourceCodester Apartment Visitors Management System 1.0. It has been rated as critical. This issue affects some unknown …

No fix yet
Fix from $2,300 2025-04-02
Online Tutor Portal CRITICAL 9.8
CVE-2025-3119

A vulnerability was found in SourceCodester Online Tutor Portal 1.0. It has been declared as critical. This vulnerability affects unknown code of the…

No fix yet
Fix from $2,300 2025-04-02
Online Tutor Portal CRITICAL 9.8
CVE-2025-3118

A vulnerability was found in SourceCodester Online Tutor Portal 1.0. It has been classified as critical. This affects an unknown part of the file /tu…

No fix yet
Fix from $2,300 2025-04-02
Opensis HIGH 8.8
CVE-2025-22924

OS4ED openSIS v7.0 through v9.1 contains a SQL injection vulnerability via the stu_id parameter at /modules/students/Student.php.

Fix: after 9.1
Fix from $1,950 2025-04-02
Opensis HIGH 7.5
CVE-2025-22925

OS4ED openSIS v7.0 to v9.1 was discovered to contain a SQL injection vulnerability via the table parameter at /attendance/AttendanceCodes.php. The re…

Fix: after 9.1
Fix from $1,950 2025-04-02
Unclassified CRITICAL 9.8
CVE-2025-29085EPSS 28%

SQL injection vulnerability in vipshop Saturn v.3.5.1 and before allows a remote attacker to execute arbitrary code via /console/dashboard/executorCo…

Mitigation only
Fix from $2,300 2025-04-02
Zabbix HIGH 8.8
CVE-2024-36465EPSS 26%

A low privilege (regular) Zabbix user with API access can use SQL injection vulnerability in include/classes/api/CApiService.php to execute arbitrary…

Fix: 7.2.2+
Fix from $1,950 2025-04-02
Unclassified CRITICAL 9.3
CVE-2025-31579

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in EXEIdeas International WP AutoKeyword wp-autoke…

Mitigation only
Fix from $2,300 2025-04-01
Unclassified HIGH 8.5
CVE-2025-31619

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in marcoingraiti Actionwear products sync actionwe…

Mitigation only
Fix from $1,950 2025-04-01
Unclassified HIGH 8.5
CVE-2025-31561

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in CodeSolz Ultimate Push Notifications ultimate-p…

Mitigation only
Fix from $1,950 2025-04-01
Unclassified HIGH 8.5
CVE-2025-31564

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in aitool Ai Auto Tool Content Writing Assistant (…

Mitigation only
Fix from $1,950 2025-04-01
Unclassified CRITICAL 9.3
CVE-2025-31534

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in shopperdotcom Shopper shopper allows SQL Inject…

Mitigation only
Fix from $2,300 2025-04-01
Unclassified CRITICAL 9.3
CVE-2025-31551

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Salesmate.io Salesmate Add-On for Gravity Forms…

Mitigation only
Fix from $2,300 2025-04-01
Unclassified CRITICAL 9.3
CVE-2025-31552

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in davidfcarr RSVPMarker rsvpmaker allows SQL Inj…

Mitigation only
Fix from $2,300 2025-04-01
Unclassified CRITICAL 9.3
CVE-2025-31553

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPFactory Advanced WooCommerce Product Sales Re…

Mitigation only
Fix from $2,300 2025-04-01
Unclassified CRITICAL 9.3
CVE-2025-31531

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in click5 History Log by click5 history-log-by-cli…

Mitigation only
Fix from $2,300 2025-04-01
Unclassified HIGH 8.5
CVE-2025-31089

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Fahad Mahmood Order Splitter for WooCommerce wo…

Mitigation only
Fix from $1,950 2025-04-01
Unclassified CRITICAL 9.3
CVE-2025-30807

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Martin Nguyen Next-Cart Store to WooCommerce Mi…

Mitigation only
Fix from $2,300 2025-04-01
Unclassified CRITICAL 9.3
CVE-2025-3096

Clinic’s Patient Management System versions 2.0 suffers from a SQL injection vulnerability in the login page.

Mitigation only
Fix from $2,300 2025-04-01
Gym Management System MEDIUM 6.5
CVE-2025-29208

CodeZips Gym Management System v1.0 is vulnerable to SQL injection in the name parameter within /dashboard/admin/deleteroutine.php.

No fix yet
Fix from $1,600 2025-04-01
Bookingpress HIGH 7.6
CVE-2025-31910

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in reputeinfosystems BookingPress bookingpress-app…

Fix: 1.1.38+
Fix from $1,950 2025-04-01
Unclassified CRITICAL 9.3
CVE-2025-30971

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Xavi Ivars XV Random Quotes xv-random-quotes al…

Mitigation only
Fix from $2,300 2025-04-01
Unclassified HIGH 8.5
CVE-2025-31024

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in randyjensen RJ Quickcharts rj-quickcharts allow…

Mitigation only
Fix from $1,950 2025-04-01