Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
Chat System HIGH 7.5
CVE-2025-0882

A vulnerability was found in code-projects Chat System up to 1.0. It has been declared as critical. Affected by this vulnerability is an unknown func…

No fix yet
Fix from $1,950 2025-01-30
Simple Car Rental System CRITICAL 9.8
CVE-2025-0874

A vulnerability, which was classified as critical, has been found in code-projects Simple Plugins Car Rental Management 1.0. Affected by this issue i…

No fix yet
Fix from $2,300 2025-01-30
Tailoring Management System CRITICAL 9.8
CVE-2025-0873

A vulnerability classified as critical was found in itsourcecode Tailoring Management System 1.0. Affected by this vulnerability is an unknown functi…

No fix yet
Fix from $2,300 2025-01-30
Tailoring Management System CRITICAL 9.8
CVE-2025-0872

A vulnerability classified as critical has been found in itsourcecode Tailoring Management System 1.0. Affected is an unknown function of the file /a…

No fix yet
Fix from $2,300 2025-01-30
Wordpress Survey And Poll MEDIUM 6.5
CVE-2024-13596

The WordPress Survey & Poll – Quiz, Survey and Poll Plugin for WordPress plugin for WordPress is vulnerable to SQL Injection via the 'id' attribute o…

Fix: after 1.7.5
Fix from $1,600 2025-01-30
Vr Frases HIGH 7.2
CVE-2025-0861

The VR-Frases (collect & share quotes) plugin for WordPress is vulnerable to SQL Injection via several parameters in all versions up to, and includin…

Fix: after 3.0.1
Fix from $1,950 2025-01-30
Employee Task Management System CRITICAL 9.8
CVE-2025-0847

A vulnerability was found in 1000 Projects Employee Task Management System 1.0. It has been declared as critical. This vulnerability affects unknown …

No fix yet
Fix from $2,300 2025-01-30
Employee Task Management System CRITICAL 9.8
CVE-2025-0846

A vulnerability was found in 1000 Projects Employee Task Management System 1.0. It has been classified as critical. This affects an unknown part of t…

Mitigation only
Fix from $2,300 2025-01-30
Library Card System CRITICAL 9.8
CVE-2025-0843

A vulnerability was found in needyamin Library Card System 1.0. It has been classified as critical. Affected is an unknown function of the file admin…

No fix yet
Fix from $2,300 2025-01-29
Jfinalcms CRITICAL 9.8
CVE-2024-57665

JFinalCMS 1.0 is vulnerable to SQL Injection in rc/main/java/com/cms/entity/Content.java. The cause of the vulnerability is that the title parameter …

No fix yet
Fix from $2,300 2025-01-29
Library Card System CRITICAL 9.8
CVE-2025-0842

A vulnerability was found in needyamin Library Card System 1.0 and classified as critical. This issue affects some unknown processing of the file adm…

No fix yet
Fix from $2,300 2025-01-29
Snowflake Connector HIGH 7.0
CVE-2025-24793

The Snowflake Connector for Python provides an interface for developing Python applications that can connect to Snowflake and perform all standard op…

Fix: 3.13.1+
Fix from $1,950 2025-01-29
Ruoyi MEDIUM 6.5
CVE-2024-57437

RuoYi v4.8.0 was discovered to contain a SQL injection vulnerability via the orderby parameter at /monitor/online/list.

No fix yet
Fix from $1,600 2025-01-29
Gym Management System CRITICAL 9.8
CVE-2025-0803

A vulnerability, which was classified as critical, has been found in Codezips Gym Management System 1.0. Affected by this issue is some unknown funct…

No fix yet
Fix from $2,300 2025-01-29
Cdg CRITICAL 9.8
CVE-2025-0793

A vulnerability has been found in ESAFENET CDG V5 and classified as critical. Affected by this vulnerability is an unknown functionality of the file …

No fix yet
Fix from $2,300 2025-01-29
Cdg CRITICAL 9.8
CVE-2025-0791

A vulnerability, which was classified as critical, has been found in ESAFENET CDG V5. This issue affects some unknown processing of the file /sdDoneD…

No fix yet
Fix from $2,300 2025-01-29
Cdg CRITICAL 9.8
CVE-2025-0792

A vulnerability, which was classified as critical, was found in ESAFENET CDG V5. Affected is an unknown function of the file /sdTodoDetail.jsp. The m…

No fix yet
Fix from $2,300 2025-01-29
Cdg HIGH 8.8
CVE-2025-0788

A vulnerability was found in ESAFENET CDG V5. It has been rated as critical. Affected by this issue is some unknown functionality of the file /conten…

Mitigation only
Fix from $1,950 2025-01-28
Cdg HIGH 8.8
CVE-2025-0789

A vulnerability classified as critical has been found in ESAFENET CDG V5. This affects an unknown part of the file /doneDetail.jsp. The manipulation …

No fix yet
Fix from $1,950 2025-01-28
Cdg HIGH 8.8
CVE-2025-0786

A vulnerability was found in ESAFENET CDG V5. It has been classified as critical. Affected is an unknown function of the file /appDetail.jsp. The man…

Mitigation only
Fix from $1,950 2025-01-28
Unclassified HIGH 8.6
CVE-2025-22217

Avi Load Balancer contains an unauthenticated blind SQL Injection vulnerability which was privately reported to VMware. Patches are available to reme…

Mitigation only
Fix from $1,950 2025-01-28
Pimcore HIGH 7.2
CVE-2024-11956

A vulnerability, which was classified as critical, has been found in Pimcore customer-data-framework up to 4.2.0. Affected by this issue is some unkn…

Fix: 4.2.1+
Fix from $1,950 2025-01-28
Eventer HIGH 7.5
CVE-2024-11135

The Eventer plugin for WordPress is vulnerable to SQL Injection via the 'event' parameter in the 'eventer_get_attendees' function in all versions up …

Fix: 3.9.9+
Fix from $1,950 2025-01-28
Sterling B2b Integrator CRITICAL 9.8
CVE-2023-50316

IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.1 is vulnerable to SQL injection. A remote attacker could send speciall…

Fix: after 6.2.0.1
Fix from $2,300 2025-01-28
Cacti HIGH 7.5
CVE-2025-24368

Cacti is an open source performance and fault management framework. Some of the data stored in automation_tree_rules.php is not thoroughly checked an…

Fix: 1.2.29+
Fix from $1,950 2025-01-27
Cacti HIGH 8.8
CVE-2024-54145

Cacti is an open source performance and fault management framework. Cacti has a SQL injection vulnerability in the get_discovery_results function of …

Fix: 1.2.29+
Fix from $1,950 2025-01-27
Cacti HIGH 8.8
CVE-2024-54146EPSS 41%

Cacti is an open source performance and fault management framework. Cacti has a SQL injection vulnerability in the template function of host_template…

Fix: 1.2.29+
Fix from $1,950 2025-01-27
Unclassified CRITICAL 9.3
CVE-2025-24665

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in enituretechnology Small Package Quotes – Unishi…

Mitigation only
Fix from $2,300 2025-01-27
Unclassified CRITICAL 9.3
CVE-2025-24667

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in enituretechnology Small Package Quotes – Worldw…

Mitigation only
Fix from $2,300 2025-01-27
Unclassified CRITICAL 9.3
CVE-2025-24612

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Ihor Kit Shipping for Nova Poshta nova-poshta-t…

Mitigation only
Fix from $2,300 2025-01-27