Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
Wegia CRITICAL 9.8
CVE-2024-57035

WeGIA v3.2.0 is vulnerable to SQL Injection viathe nextPage parameter in /controle/control.php.

No fix yet
Fix from $2,300 2025-01-17
Wegia CRITICAL 9.8
CVE-2024-57034

WeGIA < 3.2.0 is vulnerable to SQL Injection in query_geracao_auto.php via the query parameter.

Fix: 3.2.0+
Fix from $2,300 2025-01-17
Attendance Tracking Management System CRITICAL 9.8
CVE-2025-0536

A vulnerability classified as critical was found in 1000 Projects Attendance Tracking Management System 1.0. This vulnerability affects unknown code …

No fix yet
Fix from $2,300 2025-01-17
Wegia CRITICAL 9.8
CVE-2024-57031

WeGIA < 3.2.0 is vulnerable to SQL Injection in /funcionario/remuneracao.php via the id_funcionario parameter.

Fix: 3.2.0+
Fix from $2,300 2025-01-17
Campaign Management System Platform For Women CRITICAL 9.8
CVE-2025-0534

A vulnerability was found in 1000 Projects Campaign Management System Platform for Women 1.0. It has been rated as critical. Affected by this issue i…

No fix yet
Fix from $2,300 2025-01-17
Gym Management System CRITICAL 9.8
CVE-2025-0535

A vulnerability classified as critical has been found in Codezips Gym Management System 1.0. This affects an unknown part of the file /dashboard/admi…

No fix yet
Fix from $2,300 2025-01-17
Gym Management System CRITICAL 9.8
CVE-2025-0532

A vulnerability was found in Codezips Gym Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /das…

No fix yet
Fix from $2,300 2025-01-17
Campaign Management System Platform For Women CRITICAL 9.8
CVE-2025-0533

A vulnerability was found in 1000 Projects Campaign Management System Platform for Women 1.0. It has been declared as critical. Affected by this vuln…

No fix yet
Fix from $2,300 2025-01-17
Chat System HIGH 7.5
CVE-2025-0531

A vulnerability was found in code-projects Chat System 1.0 and classified as critical. This issue affects some unknown processing of the file /user/l…

No fix yet
Fix from $1,950 2025-01-17
Admission Management System CRITICAL 9.8
CVE-2025-0527

A vulnerability classified as critical was found in code-projects Admission Management System 1.0. Affected by this vulnerability is an unknown funct…

No fix yet
Fix from $2,300 2025-01-17
Unclassified HIGH 8.5
CVE-2025-23913

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in pankajpragma WordPress Google Map Professional …

Mitigation only
Fix from $1,950 2025-01-16
Unclassified HIGH 8.5
CVE-2025-23911

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in solidres Solidres – Hotel booking plugin solidr…

Mitigation only
Fix from $1,950 2025-01-16
Unclassified HIGH 8.5
CVE-2025-23912

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Philipp Speck WordPress Custom Sidebar wordpres…

Mitigation only
Fix from $1,950 2025-01-16
Unclassified HIGH 7.6
CVE-2025-23779

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in web-mv ResAds resads allows SQL Injection.This …

Mitigation only
Fix from $1,950 2025-01-16
Unclassified HIGH 7.6
CVE-2025-23780

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Alpha BPO Easy Code Snippets easy-code-snippets…

Mitigation only
Fix from $1,950 2025-01-16
Jfinaloa HIGH 8.8
CVE-2024-57775

JFinalOA before v2025.01.01 was discovered to contain a SQL injection vulnerability via the component getWorkFlowHis?insid.

Fix: 2025-01-01+
Fix from $1,950 2025-01-16
Jfinaloa CRITICAL 9.8
CVE-2024-57768

JFinalOA before v2025.01.01 was discovered to contain a SQL injection vulnerability via the component validRoleKey?sysRole.key.

Fix: 2025-01-01+
Fix from $2,300 2025-01-16
Jfinaloa HIGH 8.8
CVE-2024-57769

JFinalOA before v2025.01.01 was discovered to contain a SQL injection vulnerability via the component borrowmoney/listData?applyUser.

Fix: 2025-01-01+
Fix from $1,950 2025-01-16
Jfinaloa HIGH 8.8
CVE-2024-57770

JFinalOA before v2025.01.01 was discovered to contain a SQL injection vulnerability via the component apply/save#oaContractApply.id.

Fix: 2025-01-01+
Fix from $1,950 2025-01-16
Cybercafe Management System HIGH 7.2
CVE-2024-57162

Campcodes Cybercafe Management System v1.0 is vulnerable to SQL Injection in /ccms/view-user-detail.php.

No fix yet
Fix from $1,950 2025-01-16
Passwords Manager MEDIUM 6.5
CVE-2024-12615

The Passwords Manager plugin for WordPress is vulnerable to SQL Injection via the $wpdb->prefix value in several AJAX actions in all versions up to, …

Fix: 1.5.1+
Fix from $1,600 2025-01-16
Passwords Manager HIGH 7.5
CVE-2024-12613

The Passwords Manager plugin for WordPress is vulnerable to SQL Injection via the $wpdb->prefix value in several AJAX fuctions in all versions up to,…

Fix: 1.5.1+
Fix from $1,950 2025-01-16
Unclassified CRITICAL 9.8
CVE-2025-0455

The airPASS from NetVision Information has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary SQL commands …

Mitigation only
Fix from $2,300 2025-01-16
Cm3 Acora Content Management System HIGH 8.1
CVE-2025-22964

DDSN Interactive cm3 Acora CMS version 10.1.1 has an unauthenticated time-based blind SQL Injection vulnerability caused by insufficient input saniti…

Mitigation only
Fix from $1,950 2025-01-15
Unclassified HIGH 7.1
CVE-2025-22976

SQL Injection vulnerability in dingfanzuCMS v.1.0 allows a local attacker to execute arbitrary code via not filtering the content correctly at the "c…

Mitigation only
Fix from $1,950 2025-01-15
Native Php Cms HIGH 8.8
CVE-2025-0489

A vulnerability classified as critical was found in Fanli2012 native-php-cms 1.0. This vulnerability affects unknown code of the file /fladmin/friend…

No fix yet
Fix from $1,950 2025-01-15
Native Php Cms HIGH 8.8
CVE-2025-0490

A vulnerability, which was classified as critical, has been found in Fanli2012 native-php-cms 1.0. This issue affects some unknown processing of the …

No fix yet
Fix from $1,950 2025-01-15
Native Php Cms CRITICAL 9.8
CVE-2025-0491

A vulnerability, which was classified as critical, was found in Fanli2012 native-php-cms 1.0. Affected is an unknown function of the file /fladmin/ca…

No fix yet
Fix from $2,300 2025-01-15
Native Php Cms CRITICAL 9.8
CVE-2025-0487

A vulnerability was found in Fanli2012 native-php-cms 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the…

No fix yet
Fix from $2,300 2025-01-15
Native Php Cms HIGH 8.8
CVE-2025-0488

A vulnerability classified as critical has been found in Fanli2012 native-php-cms 1.0. This affects an unknown part of the file product_list.php. The…

No fix yet
Fix from $1,950 2025-01-15