Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
Modernanet CRITICAL 9.8
CVE-2025-1641

A vulnerability was found in Benner ModernaNet up to 1.1.0. It has been classified as critical. This affects an unknown part of the file /AGE0000700/…

Fix: 1.1.1+
Fix from $2,300 2025-02-25
Seacms CRITICAL 9.8
CVE-2025-22974

SQL Injection vulnerability in SeaCMS v.13.2 and before allows a remote attacker to execute arbitrary code via the DoTranExecSql parameter in the pho…

Fix: after 13.2
Fix from $2,300 2025-02-24
Unclassified MEDIUM 5.4
CVE-2024-53543

NovaCHRON Zeitsysteme GmbH & Co. KG Smart Time Plus v8.x to v8.6 was discovered to contain a SQL injection vulnerability via the addProject method in…

Mitigation only
Fix from $1,600 2025-02-24
Unclassified CRITICAL 9.8
CVE-2024-53544

NovaCHRON Zeitsysteme GmbH & Co. KG Smart Time Plus v8.x to v8.6 was discovered to contain a SQL injection vulnerability via the getCookieNames metho…

Mitigation only
Fix from $2,300 2025-02-24
Seacms CRITICAL 9.8
CVE-2025-25513

Seacms <=13.3 is vulnerable to SQL Injection in admin_members.php.

Fix: after 13.3
Fix from $2,300 2025-02-24
Moodle CRITICAL 9.8
CVE-2025-26533

An SQL injection risk was identified in the module list filter within course search.

Fix: 4.1.16 / 4.3.10+
Fix from $2,300 2025-02-24
Wegia HIGH 8.8
CVE-2025-27133

WeGIA is a Web manager for charitable institutions. A SQL Injection vulnerability was discovered in the WeGIA application prior to version 3.2.15 at …

Fix: 3.2.15+
Fix from $1,950 2025-02-24
Unclassified CRITICAL 9.8
CVE-2024-54820

XOne Web Monitor v02.10.2024.530 framework 1.0.4.9 was discovered to contain a SQL injection vulnerability in the login page. This vulnerability allo…

Mitigation only
Fix from $2,300 2025-02-24
Senayan Library Management System HIGH 7.2
CVE-2025-26200

SQL injection in SLIMS v.9.6.1 allows a remote attacker to escalate privileges via the month parameter in the visitor_report_day.php component.

No fix yet
Fix from $1,950 2025-02-24
Unclassified HIGH 8.5
CVE-2025-27312

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Jenst WP Sitemap wp-sitemap allows SQL Injectio…

Mitigation only
Fix from $1,950 2025-02-24
Unclassified HIGH 7.6
CVE-2025-27297

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in guelben Bravo Search & Replace bravo-search-and…

Mitigation only
Fix from $1,950 2025-02-24
Unclassified HIGH 8.8
CVE-2024-12916

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Agito Computer Life4All allows SQL Injection. …

Mitigation only
Fix from $1,950 2025-02-24
Unclassified HIGH 8.8
CVE-2024-12918

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Agito Computer Health4All allows SQL Injection.…

Mitigation only
Fix from $1,950 2025-02-24
Mattermost Server MEDIUM 6.5
CVE-2025-24490

Mattermost versions 10.4.x <= 10.4.1, 9.11.x <= 9.11.7, 10.3.x <= 10.3.2, 10.2.x <= 10.2.2 fail to use prepared statements in the SQL query of boards…

Fix: 9.11.8 / 10.2.3+
Fix from $1,600 2025-02-24
Best Church Management Software CRITICAL 9.8
CVE-2025-1596

A vulnerability was found in SourceCodester Best Church Management Software 1.0 and classified as critical. This issue affects some unknown processin…

No fix yet
Fix from $2,300 2025-02-23
Online Nurse Hiring System CRITICAL 9.8
CVE-2025-1583

A vulnerability classified as critical has been found in PHPGurukul Online Nurse Hiring System 1.0. This affects an unknown part of the file /admin/s…

Mitigation only
Fix from $2,300 2025-02-23
Online Nurse Hiring System CRITICAL 9.8
CVE-2025-1582

A vulnerability was found in PHPGurukul Online Nurse Hiring System 1.0. It has been rated as critical. Affected by this issue is some unknown functio…

Mitigation only
Fix from $2,300 2025-02-23
Online Nurse Hiring System CRITICAL 9.8
CVE-2025-1581

A vulnerability was found in PHPGurukul Online Nurse Hiring System 1.0. It has been declared as critical. Affected by this vulnerability is an unknow…

Mitigation only
Fix from $2,300 2025-02-23
Nipah Virus Testing Management System CRITICAL 9.8
CVE-2025-1580

A vulnerability was found in PHPGurukul Nipah Virus Testing Management System 1.0. It has been classified as critical. Affected is an unknown functio…

Mitigation only
Fix from $2,300 2025-02-23
Online Shopping Portal HIGH 7.5
CVE-2025-1578

A vulnerability, which was classified as critical, was found in PHPGurukul/Campcodes Online Shopping Portal 2.1. This affects an unknown part of the …

No fix yet
Fix from $1,950 2025-02-23
Real Estate Property Management System CRITICAL 9.8
CVE-2025-1576

A vulnerability classified as critical was found in code-projects Real Estate Property Management System 1.0. Affected by this vulnerability is an un…

No fix yet
Fix from $2,300 2025-02-23
Unclassified HIGH 7.5
CVE-2024-13474

The LTL Freight Quotes – Purolator Edition plugin for WordPress is vulnerable to SQL Injection via the 'dropship_edit_id' and 'edit_id' parameters in…

No fix yet
Fix from $1,950 2025-02-22
Pbootcms MEDIUM 5.1
CVE-2020-19248

SQL Injection vulnerability in PbootCMS 1.4.1 in parsing if statements in templates, resulting in a malicious user's ability to contaminate template …

Fix: after 1.4.1
Fix from $1,600 2025-02-21
Simple Chatbox HIGH 7.2
CVE-2025-25876

A vulnerability was found in ITSourcecode Simple ChatBox up to 1.0. This vulnerability affects unknown code of the file /delete.php. The attack can u…

No fix yet
Fix from $1,950 2025-02-21
Simple Chatbox MEDIUM 6.4
CVE-2025-25875

A vulnerability was found in ITSourcecode Simple ChatBox up to 1.0. This vulnerability affects unknown code of the file /message.php. The attack can …

No fix yet
Fix from $1,600 2025-02-21
Unclassified MEDIUM 6.3
CVE-2025-1544

A vulnerability, which was classified as critical, was found in dingfanzu CMS up to 20250210. Affected is an unknown function of the file /ajax/loadS…

Mitigation only
Fix from $1,600 2025-02-21
Unclassified MEDIUM 6.3
CVE-2025-1537

A vulnerability was found in Harpia DiagSystem 12. It has been rated as critical. This issue affects some unknown processing of the file /diagsystem/…

Mitigation only
Fix from $1,600 2025-02-21
Exim CRITICAL 9.8
CVE-2025-26794EPSS 77%

Exim 4.98 before 4.98.1, when SQLite hints and ETRN serialization are used, allows remote SQL injection. (Resolving SQL injection requires an update …

Fix: 4.98.1+
Fix from $2,300 2025-02-21
Givewp Square MEDIUM 6.5
CVE-2024-13713

The WPExperts Square For GiveWP plugin for WordPress is vulnerable to SQL Injection via the 'post' parameter in all versions up to, and including, 1.…

Fix: 1.3.2+
Fix from $1,600 2025-02-21
Unclassified HIGH 7.3
CVE-2025-1535

A vulnerability was found in Baiyi Cloud Asset Management System 8.142.100.161. It has been classified as critical. This affects an unknown part of t…

Mitigation only
Fix from $1,950 2025-02-21