Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
Land Record System HIGH 7.2
CVE-2025-25387

A SQL Injection vulnerability was found in /admin/manage-propertytype.php in PHPGurukul Land Record System v1.0, which allows remote attackers to exe…

No fix yet
Fix from $1,950 2025-02-13
Land Record System CRITICAL 9.8
CVE-2025-25388

A SQL Injection vulnerability was found in /admin/edit-propertytype.php in PHPGurukul Land Record System v1.0, which allows remote attackers to execu…

No fix yet
Fix from $2,300 2025-02-13
Land Record System CRITICAL 9.8
CVE-2025-25389

A SQL Injection vulnerability was found in /admin/forgot-password.php in Phpgurukul Land Record System v1.0, which allows remote attackers to execute…

No fix yet
Fix from $2,300 2025-02-13
Land Record System HIGH 7.2
CVE-2025-25352

A SQL Injection vulnerability was found in /admin/aboutus.php in PHPGurukul Land Record System v1.0, which allows remote attackers to execute arbitra…

No fix yet
Fix from $1,950 2025-02-13
Land Record System HIGH 7.2
CVE-2025-25354

A SQL Injection was found in /admin/admin-profile.php in PHPGurukul Land Record System v1.0, which allows remote attackers to execute arbitrary code …

No fix yet
Fix from $1,950 2025-02-13
Land Record System HIGH 7.2
CVE-2025-25355

A SQL Injection vulnerability was found in /admin/bwdates-reports-details.php in PHPGurukul Land Record System v1.0, which allows remote attackers to…

No fix yet
Fix from $1,950 2025-02-13
Land Record System HIGH 7.2
CVE-2025-25356

A SQL Injection vulnerability was found in /admin/bwdates-reports-details.php in PHPGurukul Land Record System v1.0, which allows remote attackers to…

No fix yet
Fix from $1,950 2025-02-13
Land Record System HIGH 7.2
CVE-2025-25357

A SQL Injection vulnerability was found in /admin/contactus.php in PHPGurukul Land Record System v1.0, which allows remote attackers to execute arbit…

No fix yet
Fix from $1,950 2025-02-13
Yimioa HIGH 8.8
CVE-2025-1227

A vulnerability was found in ywoa up to 2024.07.03. It has been rated as critical. This issue affects the function selectList of the file com/cloudwe…

Fix: 2024-07-04+
Fix from $1,950 2025-02-12
Yimioa HIGH 8.8
CVE-2025-1224

A vulnerability classified as critical was found in ywoa up to 2024.07.03. This vulnerability affects the function listNameBySql of the file com/clou…

Fix: 2024-07-04+
Fix from $1,950 2025-02-12
Yimioa HIGH 8.8
CVE-2025-1216

A vulnerability, which was classified as critical, has been found in ywoa up to 2024.07.03. This issue affects the function selectNoticeList of the f…

Fix: 2024-07-04+
Fix from $1,950 2025-02-12
Wazifa System HIGH 8.8
CVE-2025-1210

A vulnerability classified as critical was found in code-projects Wazifa System 1.0. Affected by this vulnerability is an unknown functionality of th…

No fix yet
Fix from $1,950 2025-02-12
Daily Expense Tracker System CRITICAL 9.8
CVE-2025-25349

PHPGurukul Daily Expense Tracker System v1.1 is vulnerable to SQL Injection in /dets/add-expense.php via the costitem parameter.

No fix yet
Fix from $2,300 2025-02-12
Daily Expense Tracker System CRITICAL 9.8
CVE-2025-25351

PHPGurukul Daily Expense Tracker System v1.1 is vulnerable to SQL Injection in /dets/add-expense.php via the dateexpense parameter.

No fix yet
Fix from $2,300 2025-02-12
Gym Management System HIGH 8.8
CVE-2025-1206

A vulnerability was found in Codezips Gym Management System 1.0. It has been classified as critical. This affects an unknown part of the file /dashbo…

No fix yet
Fix from $1,950 2025-02-12
Best Church Management Software MEDIUM 6.5
CVE-2025-1202

A vulnerability classified as critical has been found in SourceCodester Best Church Management Software 1.1. Affected is an unknown function of the f…

No fix yet
Fix from $1,600 2025-02-12
Maxtime HIGH 7.6
CVE-2025-26346

A CWE-89 "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')" in maxprofile/menu/model.lua (editUserGroupMenu endpo…

Fix: after 2.11.0
Fix from $1,950 2025-02-12
Maxtime HIGH 7.6
CVE-2025-26348

A CWE-89 "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')" in maxprofile/menu/model.lua (editUserMenu endpoint) …

Fix: after 2.11.0
Fix from $1,950 2025-02-12
Best Church Management Software HIGH 8.8
CVE-2025-1200

A vulnerability was found in SourceCodester Best Church Management Software 1.1. It has been declared as critical. This vulnerability affects unknown…

No fix yet
Fix from $1,950 2025-02-12
Best Church Management Software MEDIUM 6.5
CVE-2025-1201

A vulnerability was found in SourceCodester Best Church Management Software 1.1. It has been rated as critical. This issue affects some unknown proce…

No fix yet
Fix from $1,600 2025-02-12
Best Church Management Software MEDIUM 6.5
CVE-2025-1199

A vulnerability was found in SourceCodester Best Church Management Software 1.1. It has been classified as critical. This affects an unknown part of …

No fix yet
Fix from $1,600 2025-02-12
Real Estate Property Management System HIGH 7.5
CVE-2025-1197

A vulnerability has been found in code-projects Real Estate Property Management System 1.0 and classified as critical. Affected by this vulnerability…

No fix yet
Fix from $1,950 2025-02-12
Small Package Quotes HIGH 7.5
CVE-2024-13532

The Small Package Quotes – Purolator Edition plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' and 'dropship_edit_id' parameters …

Fix: 3.6.5+
Fix from $1,950 2025-02-12
Ltl Freight Quotes CRITICAL 9.8
CVE-2024-13477

The LTL Freight Quotes – Unishippers Edition plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' parameter in all versions up to, a…

Fix: 2.5.9+
Fix from $2,300 2025-02-12
Ltl Freight Quotes HIGH 7.5
CVE-2024-13480

The LTL Freight Quotes – For Customers of FedEx Freight plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' and 'dropship_edit_id' …

Fix: 3.4.2+
Fix from $1,950 2025-02-12
Multi Restaurant Table Reservation System HIGH 8.8
CVE-2025-1192

A vulnerability was found in SourceCodester Multi Restaurant Table Reservation System 1.0. It has been classified as critical. Affected is an unknown…

Mitigation only
Fix from $1,950 2025-02-12
Multi Restaurant Table Reservation System HIGH 8.8
CVE-2025-1191

A vulnerability was found in SourceCodester Multi Restaurant Table Reservation System 1.0 and classified as critical. This issue affects some unknown…

No fix yet
Fix from $1,950 2025-02-12
Attendance Tracking Management System HIGH 8.8
CVE-2025-1189

A vulnerability, which was classified as critical, was found in 1000 Projects Attendance Tracking Management System 1.0. This affects an unknown part…

No fix yet
Fix from $1,950 2025-02-12
Fineract HIGH 8.8
CVE-2024-32838

SQL Injection vulnerability in various API endpoints - offices, dashboards, etc. Apache Fineract versions 1.9 and before have a vulnerability that al…

Fix: 1.10.1+
Fix from $1,950 2025-02-12
Shipengine Shipping Quotes HIGH 7.5
CVE-2024-13531

The ShipEngine Shipping Quotes plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' parameter in all versions up to, and including, …

Fix: 1.0.8+
Fix from $1,950 2025-02-12