Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
Unclassified HIGH 7.3
CVE-2026-10184

A security flaw has been discovered in SourceCodester Hospitals Patient Records Management System 1.0. This impacts an unknown function of the file /…

Mitigation only
Fix from $1,950 2026-05-31
Unclassified HIGH 7.3
CVE-2026-10185

A weakness has been identified in SourceCodester Hospitals Patient Records Management System 1.0. Affected is an unknown function of the file /classe…

Mitigation only
Fix from $1,950 2026-05-31
Unclassified HIGH 8.5
CVE-2026-49489

OpenCATS through 0.9.7.4 contains a sql injection vulnerability in the sortDirection parameter of the DataGrid component that allows authenticated us…

No fix yet
Fix from $1,950 2026-05-31
Unclassified HIGH 8.1
CVE-2026-49490

OpenCATS from version 0.9.1a contains an SQL injection vulnerability in DataGrid filter handling that allows authenticated attackers to inject SQL th…

Mitigation only
Fix from $1,950 2026-05-31
Unclassified HIGH 7.3
CVE-2026-10178

A vulnerability was detected in code-projects Online Music Site 1.0. This vulnerability affects unknown code of the file /Administrator/PHP/AdminEdit…

Mitigation only
Fix from $1,950 2026-05-31
Unclassified MEDIUM 6.3
CVE-2026-10176

A weakness has been identified in Aider-AI Aider 0.86.3. Affected by this issue is some unknown functionality of the component Code Generation Workfl…

Mitigation only
Fix from $1,600 2026-05-31
Unclassified MEDIUM 6.3
CVE-2026-10170

A flaw has been found in code-projects Visitor Management System 1.0. Affected by this issue is some unknown functionality of the file /vms/php/phone…

Mitigation only
Fix from $1,600 2026-05-31
Unclassified HIGH 8.2
CVE-2018-25420

AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malic…

No fix yet
Fix from $1,950 2026-05-30
Unclassified HIGH 8.2
CVE-2018-25422

MOGG web simulator Script contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL commands by injectin…

No fix yet
Fix from $1,950 2026-05-30
Unclassified HIGH 8.2
CVE-2018-25424

Gate Pass Management System 2.1 contains an SQL injection vulnerability that allows unauthenticated attackers to bypass authentication by injecting S…

No fix yet
Fix from $1,950 2026-05-30
Unclassified HIGH 8.2
CVE-2018-25425

Yot CMS 3.3.1 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious c…

No fix yet
Fix from $1,950 2026-05-30
Unclassified HIGH 8.2
CVE-2018-25413

AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malic…

No fix yet
Fix from $1,950 2026-05-30
Unclassified HIGH 8.2
CVE-2018-25414

AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malic…

No fix yet
Fix from $1,950 2026-05-30
Unclassified HIGH 8.2
CVE-2018-25415

AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malic…

No fix yet
Fix from $1,950 2026-05-30
Unclassified HIGH 8.2
CVE-2018-25416

AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malic…

No fix yet
Fix from $1,950 2026-05-30
Unclassified HIGH 8.2
CVE-2018-25417

AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malic…

No fix yet
Fix from $1,950 2026-05-30
Unclassified HIGH 8.2
CVE-2018-25418

AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malic…

No fix yet
Fix from $1,950 2026-05-30
Unclassified HIGH 8.2
CVE-2018-25419

AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malic…

No fix yet
Fix from $1,950 2026-05-30
Unclassified HIGH 8.2
CVE-2018-25407

eNdonesia Portal 8.7 contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to execute arbitrary SQL queries by injecti…

No fix yet
Fix from $1,950 2026-05-30
Unclassified HIGH 7.1
CVE-2018-25410

SIM-PKH 2.4.1 contains an SQL injection vulnerability that allows authenticated attackers to execute arbitrary SQL queries by injecting malicious cod…

No fix yet
Fix from $1,950 2026-05-30
Unclassified HIGH 8.2
CVE-2018-25411

MGB OpenSource Guestbook 0.7.0.2 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by in…

No fix yet
Fix from $1,950 2026-05-30
Unclassified HIGH 8.2
CVE-2018-25406

eNdonesia Portal 8.7 contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to execute arbitrary SQL queries by injecti…

No fix yet
Fix from $1,950 2026-05-30
Unclassified HIGH 8.2
CVE-2018-25405

eNdonesia Portal 8.7 contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to execute arbitrary SQL queries by injecti…

No fix yet
Fix from $1,950 2026-05-30
Unclassified HIGH 7.5
CVE-2026-9757

The GEO my WP plugin for WordPress is vulnerable to SQL Injection via the 'swlatlng' and 'nelatlng' parameters in all versions up to, and including, …

Mitigation only
Fix from $1,950 2026-05-30
Unclassified HIGH 7.3
CVE-2026-10111

A flaw has been found in sambitraj STUDENT-MANAGEMENT-SYSTEM 1.0. This impacts an unknown function of the component Login Page. Executing a manipulat…

Mitigation only
Fix from $1,950 2026-05-30
Unclassified HIGH 7.3
CVE-2026-10110

A vulnerability was detected in code-projects Student Details Management System 1.0. This affects an unknown function of the file /index.php. Perform…

Mitigation only
Fix from $1,950 2026-05-30
Unclassified HIGH 8.3
CVE-2026-10105

agno 2.6.5 contains a SQL injection vulnerability in the ClickHouse vector database backend that allows attackers to inject arbitrary SQL expressions…

Patch available
Fix from $1,950 2026-05-29
Unclassified MEDIUM 6.5
CVE-2026-39229

Bolt CMS through 3.7.0 allows SQL Injection in the 'order' parameter of the content listing pages. An authenticated attacker with low-level privilege…

Mitigation only
Fix from $1,600 2026-05-29
Unclassified HIGH 8.2
CVE-2018-25403

The Open ISES Project 3.30A contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecti…

No fix yet
Fix from $1,950 2026-05-29
Unclassified HIGH 8.2
CVE-2018-25404

The Open ISES Project 3.30A contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecti…

No fix yet
Fix from $1,950 2026-05-29