Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
Unclassified HIGH 7.3
CVE-2026-6152

A vulnerability was determined in code-projects Vehicle Showroom Management System 1.0. This issue affects some unknown processing of the file /util/…

Mitigation only
Fix from $1,950 2026-04-13
Unclassified HIGH 7.3
CVE-2026-6151

A vulnerability was found in code-projects Vehicle Showroom Management System 1.0. This vulnerability affects unknown code of the file /util/PaymentS…

Mitigation only
Fix from $1,950 2026-04-13
Unclassified HIGH 7.3
CVE-2026-6148

A vulnerability was detected in code-projects Vehicle Showroom Management System 1.0. Affected by this vulnerability is an unknown functionality of t…

Mitigation only
Fix from $1,950 2026-04-13
Unclassified HIGH 7.3
CVE-2026-6149

A flaw has been found in code-projects Vehicle Showroom Management System 1.0. Affected by this issue is some unknown functionality of the file /util…

Mitigation only
Fix from $1,950 2026-04-13
Unclassified HIGH 7.3
CVE-2026-6142

A vulnerability was identified in tushar-2223 Hotel Management System up to bb1f3b3666124b888f1e4bcf51b6fba9fbb01d15. Affected by this vulnerability …

Mitigation only
Fix from $1,950 2026-04-13
Dolibarr Erp\/crm CRITICAL 9.1
CVE-2019-25710

Dolibarr ERP-CRM 8.0.4 contains an SQL injection vulnerability in the rowid parameter of the admin dict.php endpoint that allows attackers to execute…

Fix: after 8.0.4
Fix from $2,300 2026-04-12
Myt HIGH 8.1
CVE-2019-25713

MyT-PM 1.5.1 contains an SQL injection vulnerability that allows authenticated attackers to execute arbitrary SQL queries by injecting malicious code…

No fix yet
Fix from $1,950 2026-04-12
Impresscms HIGH 8.8
CVE-2019-25703

ImpressCMS 1.3.11 contains a time-based blind SQL injection vulnerability that allows authenticated attackers to manipulate database queries by injec…

No fix yet
Fix from $1,950 2026-04-12
Ebrigade HIGH 7.1
CVE-2019-25707

eBrigade ERP 4.5 contains an SQL injection vulnerability that allows authenticated attackers to execute arbitrary SQL queries by injecting malicious …

No fix yet
Fix from $1,950 2026-04-12
Resourcespace HIGH 7.1
CVE-2019-25693

ResourceSpace 8.6 contains an SQL injection vulnerability that allows authenticated attackers to execute arbitrary SQL queries by injecting malicious…

No fix yet
Fix from $1,950 2026-04-12
Cmssite CRITICAL 9.8
CVE-2019-25697

CMSsite 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code throug…

Mitigation only
Fix from $2,300 2026-04-12
Newsbull HIGH 7.1
CVE-2019-25699

Newsbull Haber Script 1.0.0 contains multiple SQL injection vulnerabilities in the search parameter that allow authenticated attackers to extract dat…

No fix yet
Fix from $1,950 2026-04-12
Unclassified HIGH 7.1
CVE-2018-25257

Adianti Framework 5.5.0 and 5.6.0 contains an SQL injection vulnerability that allows authenticated users to manipulate database queries by injecting…

No fix yet
Fix from $1,950 2026-04-12
Unclassified MEDIUM 6.5
CVE-2026-5207

The LifterLMS plugin for WordPress is vulnerable to SQL Injection via the 'order' parameter in all versions up to, and including, 9.2.1. This is due …

Mitigation only
Fix from $1,600 2026-04-11
Online Student Enrollment System CRITICAL 9.8
CVE-2026-36235

A SQL injection vulnerability was found in the scheduleSubList.php file of itsourcecode Online Student Enrollment System v1.0. The reason for this is…

Mitigation only
Fix from $2,300 2026-04-10
Engineers Online Portal CRITICAL 9.8
CVE-2026-36236

SourceCodester Engineers Online Portal v1.0 is vulnerable to SQL Injection in update_password.php via the new_password parameter.

Mitigation only
Fix from $2,300 2026-04-10
Online Student Enrollment System CRITICAL 9.8
CVE-2026-36232

A SQL injection vulnerability was found in the instructorClasses.php file of itsourcecode Online Student Enrollment System v1.0. The reason for this …

Mitigation only
Fix from $2,300 2026-04-10
Online Student Enrollment System CRITICAL 9.8
CVE-2026-36233

A SQL injection vulnerability was found in the assignInstructorSubjects.php file of itsourcecode Online Student Enrollment System v1.0. The reason fo…

Mitigation only
Fix from $2,300 2026-04-10
Online Student Enrollment System CRITICAL 9.8
CVE-2026-36234

itsourcecode Online Student Enrollment System v1.0 is vulnerable to SQL Injection in newCourse.php via the 'coursename' parameter.

Mitigation only
Fix from $2,300 2026-04-10
Control M\/managed File Transfer HIGH 8.8
CVE-2026-23780

An issue was discovered in BMC Control-M/MFT 9.0.20 through 9.0.22. A SQL injection vulnerability in the MFT API's debug interface allows an authenti…

Fix: after 9.0.22
Fix from $1,950 2026-04-10
Unclassified CRITICAL 9.8
CVE-2026-29861

PHP-MYSQL-User-Login-System v1.0 was discovered to contain a SQL injection vulnerability via the username parameter at login.php.

Mitigation only
Fix from $2,300 2026-04-10
Unclassified HIGH 7.3
CVE-2026-6037

A vulnerability was determined in code-projects Vehicle Showroom Management System 1.0. This affects an unknown function of the file /util/AddVehicle…

Mitigation only
Fix from $1,950 2026-04-10
Unclassified HIGH 7.3
CVE-2026-6038

A vulnerability was identified in code-projects Vehicle Showroom Management System 1.0. This impacts an unknown function of the file /util/RegisterCu…

Mitigation only
Fix from $1,950 2026-04-10
Unclassified HIGH 7.3
CVE-2026-6036

A vulnerability was found in code-projects Vehicle Showroom Management System 1.0. The impacted element is an unknown function of the file /util/Vehi…

Mitigation only
Fix from $1,950 2026-04-10
Unclassified HIGH 7.3
CVE-2026-6031

A vulnerability has been found in code-projects Simple IT Discussion Forum 1.0. This affects an unknown function of the file /add-category-function.p…

Mitigation only
Fix from $1,950 2026-04-10
Unclassified MEDIUM 6.3
CVE-2026-6033

A vulnerability was determined in CodeAstro Online Classroom 1.0. Affected is an unknown function of the file /updatedetailsfromstudent.php?eno=14689…

Mitigation only
Fix from $1,600 2026-04-10
Unclassified MEDIUM 6.3
CVE-2026-6030

A flaw has been found in itsourcecode Construction Management System 1.0. The impacted element is an unknown function of the file /del1.php. This man…

Mitigation only
Fix from $1,600 2026-04-10
Unclassified MEDIUM 6.3
CVE-2026-6010

A security flaw has been discovered in CodeAstro Online Classroom 1.0/2.php. Affected by this vulnerability is an unknown functionality of the file /…

Mitigation only
Fix from $1,600 2026-04-10
Unclassified MEDIUM 6.3
CVE-2026-6006

A vulnerability has been found in code-projects Patient Record Management System 1.0. The impacted element is an unknown function of the file /edit_h…

Mitigation only
Fix from $1,600 2026-04-10
Unclassified MEDIUM 6.3
CVE-2026-6007

A vulnerability was found in itsourcecode Construction Management System 1.0. This affects an unknown function of the file /del.php. The manipulation…

Mitigation only
Fix from $1,600 2026-04-10