Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
Native Php Cms CRITICAL 9.8
CVE-2025-0486

A vulnerability was found in Fanli2012 native-php-cms 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionali…

No fix yet
Fix from $2,300 2025-01-15
Unclassified HIGH 8.5
CVE-2025-22799

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in vertim Neon Product Designer neon-product-desig…

Mitigation only
Fix from $1,950 2025-01-15
Unclassified CRITICAL 9.3
CVE-2025-22785

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ComMotion Course Booking System course-booking-…

Mitigation only
Fix from $2,300 2025-01-15
Mysiteforme HIGH 7.5
CVE-2024-57765

MSFM before 2025.01.01 was discovered to contain a SQL injection vulnerability via the s_name parameter at table/list.

Fix: 2025-01-01+
Fix from $1,950 2025-01-15
Jeewms MEDIUM 6.5
CVE-2024-57760

JeeWMS before v2025.01.01 was discovered to contain a SQL injection vulnerability via the ReportId parameter at /core/CGReportDao.java.

Fix: 2025.01.01+
Fix from $1,600 2025-01-15
Endpoint Manager HIGH 7.2
CVE-2024-13162EPSS 64%

SQL injection in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Update allows a remote authenticated atta…

Fix: 2022+
Fix from $1,950 2025-01-14
Lingdang Crm CRITICAL 9.8
CVE-2025-0462

A vulnerability was found in Shanghai Lingdang Information Technology Lingdang CRM up to 8.6.0.0 and classified as critical. This issue affects some …

Mitigation only
Fix from $2,300 2025-01-14
Fortisiem MEDIUM 6.5
CVE-2024-52969

An Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability [CWE-89] in FortiSIEM ersion 7.1.7 and below, v…

Fix: after 7.1.7
Fix from $1,600 2025-01-14
Fortianalyzer HIGH 8.8
CVE-2024-35275

A improper neutralization of special elements used in an sql command ('sql injection') in Fortinet FortiAnalyzer version 7.4.0 through 7.4.2, FortiMa…

Fix: 7.4.3 / 7.4.4+
Fix from $1,950 2025-01-14
Fortivoice HIGH 8.8
CVE-2023-37931

An improper neutralization of special elements used in an sql command ('sql injection') vulnerability [CWE-88] in FortiVoice Entreprise version 7.0.0…

Fix: 6.4.9 / 7.0.2+
Fix from $1,950 2025-01-14
Unclassified HIGH 7.5
CVE-2025-20620

SQL Injection vulnerability exists in STEALTHONE D220/D340 provided by Y'S corporation. An attacker who can access the affected product may obtain th…

Mitigation only
Fix from $1,950 2025-01-14
Sap Basis HIGH 8.8
CVE-2025-0063

SAP NetWeaver AS ABAP and ABAP Platform does not check for authorization when a user executes some RFC function modules. This could lead to an attack…

Patch available
Fix from $1,950 2025-01-14
Virtuoso HIGH 7.5
CVE-2024-57653

An issue in the qst_vec_set_copy component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafted SQ…

No fix yet
Fix from $1,950 2025-01-14
Virtuoso HIGH 7.5
CVE-2024-57656

An issue in the sqlc_add_distinct_node component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via craf…

No fix yet
Fix from $1,950 2025-01-14
Virtuoso HIGH 7.5
CVE-2024-57657

An issue in the sqlg_vec_upd component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafted SQL st…

No fix yet
Fix from $1,950 2025-01-14
Virtuoso HIGH 7.5
CVE-2024-57658

An issue in the sql_tree_hash_1 component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafted SQL…

No fix yet
Fix from $1,950 2025-01-14
Virtuoso HIGH 7.5
CVE-2024-57660

An issue in the sqlo_expand_jts component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafted SQL…

No fix yet
Fix from $1,950 2025-01-14
Virtuoso HIGH 7.5
CVE-2024-57644

An issue in the itc_hash_compare component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafted SQ…

No fix yet
Fix from $1,950 2025-01-14
Virtuoso HIGH 7.5
CVE-2024-57645

An issue in the qi_inst_state_free component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafted …

No fix yet
Fix from $1,950 2025-01-14
Virtuoso HIGH 7.5
CVE-2024-57646

An issue in the psiginfo component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafted SQL statem…

No fix yet
Fix from $1,950 2025-01-14
Virtuoso HIGH 7.5
CVE-2024-57647

An issue in the row_insert_cast component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafted SQL…

No fix yet
Fix from $1,950 2025-01-14
Virtuoso HIGH 7.5
CVE-2024-57648

An issue in the itc_set_param_row component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafted S…

No fix yet
Fix from $1,950 2025-01-14
Virtuoso HIGH 7.5
CVE-2024-57649

An issue in the qst_vec_set component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafted SQL sta…

No fix yet
Fix from $1,950 2025-01-14
Virtuoso HIGH 7.5
CVE-2024-57650

An issue in the qi_inst_state_free component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafted …

No fix yet
Fix from $1,950 2025-01-14
Virtuoso HIGH 7.5
CVE-2024-57651

An issue in the jp_add component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafted SQL statemen…

No fix yet
Fix from $1,950 2025-01-14
Virtuoso HIGH 7.5
CVE-2024-57652

An issue in the numeric_to_dv component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafted SQL s…

No fix yet
Fix from $1,950 2025-01-14
Virtuoso HIGH 7.5
CVE-2024-57635

An issue in the chash_array component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafted SQL sta…

No fix yet
Fix from $1,950 2025-01-14
Virtuoso HIGH 7.5
CVE-2024-57636

An issue in the itc_sample_row_check component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafte…

No fix yet
Fix from $1,950 2025-01-14
Virtuoso HIGH 7.5
CVE-2024-57637

An issue in the dfe_unit_gb_dependant component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via craft…

No fix yet
Fix from $1,950 2025-01-14
Virtuoso HIGH 7.5
CVE-2024-57638

An issue in the dfe_body_copy component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafted SQL s…

No fix yet
Fix from $1,950 2025-01-14