Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
Library Cms CRITICAL 9.8
CVE-2018-25204

Library CMS 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to bypass authentication by injecting SQL code through …

Mitigation only
Fix from $2,300 2026-03-26
Unclassified HIGH 8.2
CVE-2018-25205

ASP.NET jVideo Kit 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to inject SQL commands through the 'query' param…

No fix yet
Fix from $1,950 2026-03-26
Unclassified HIGH 8.2
CVE-2018-25206

KomSeo Cart 1.3 contains an SQL injection vulnerability that allows attackers to inject SQL commands through the 'my_item_search' parameter in edit.p…

No fix yet
Fix from $1,950 2026-03-26
Unclassified HIGH 7.1
CVE-2018-25207

Online Quiz Maker 1.0 contains SQL injection vulnerabilities in the catid and usern parameters that allow authenticated attackers to execute arbitrar…

No fix yet
Fix from $1,950 2026-03-26
Restaurant Cms CRITICAL 9.8
CVE-2018-25185

Wecodex Restaurant CMS 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting …

Mitigation only
Fix from $2,300 2026-03-26
Hotel Cms CRITICAL 9.8
CVE-2018-25195

Wecodex Hotel CMS 1.0 contains an SQL injection vulnerability in the admin login functionality that allows unauthenticated attackers to bypass authen…

Mitigation only
Fix from $2,300 2026-03-26
School Management System Cms CRITICAL 9.8
CVE-2018-25201

School Management System CMS 1.0 contains an SQL injection vulnerability in the admin login functionality that allows attackers to bypass authenticat…

Mitigation only
Fix from $2,300 2026-03-26
Unclassified HIGH 8.2
CVE-2018-25202

SAT CFDI 3.3 contains an SQL injection vulnerability that allows attackers to manipulate database queries by injecting SQL code through the 'id' para…

No fix yet
Fix from $1,950 2026-03-26
Shipping System Cms CRITICAL 9.8
CVE-2018-25183

Shipping System CMS 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to bypass authentication by injecting SQL code …

Mitigation only
Fix from $2,300 2026-03-26
Simple Laundry System CRITICAL 9.8
CVE-2026-4850

A security flaw has been discovered in code-projects Simple Laundry System 1.0. Affected is an unknown function of the file /checkregisitem.php of th…

Mitigation only
Fix from $2,300 2026-03-26
Unclassified HIGH 7.3
CVE-2026-4841

A weakness has been identified in code-projects Online Food Ordering System 1.0. This affects an unknown part of the file form/cart.php of the compon…

Mitigation only
Fix from $1,950 2026-03-26
Unclassified HIGH 7.3
CVE-2026-4842

A security vulnerability has been detected in itsourcecode Online Enrollment System 1.0. This vulnerability affects unknown code of the file /sms/gra…

Mitigation only
Fix from $1,950 2026-03-26
Unclassified HIGH 7.3
CVE-2026-4844

A vulnerability was detected in code-projects Online Food Ordering System 1.0. This issue affects some unknown processing of the file /admin.php of t…

Mitigation only
Fix from $1,950 2026-03-26
Unclassified HIGH 7.3
CVE-2026-4839

A vulnerability has been found in SourceCodester Food Ordering System 1.0. This affects an unknown function of the file /purchase.php of the componen…

Mitigation only
Fix from $1,950 2026-03-26
Unclassified HIGH 7.3
CVE-2026-4838

A flaw has been found in SourceCodester Malawi Online Market 1.0. The impacted element is an unknown function of the file /display.php. Executing a m…

Mitigation only
Fix from $1,950 2026-03-26
Unclassified MEDIUM 6.3
CVE-2026-4836

A vulnerability was detected in code-projects Accounting System 1.0. The affected element is an unknown function of the file /my_account/delete.php. …

Mitigation only
Fix from $1,600 2026-03-26
Sales And Inventory System HIGH 8.8
CVE-2026-4826

A vulnerability was determined in SourceCodester Sales and Inventory System 1.0. This vulnerability affects unknown code of the file /update_stock.ph…

No fix yet
Fix from $1,950 2026-03-26
Openemr HIGH 7.2
CVE-2026-33914

OpenEMR is a free and open source electronic health records and medical practice management application. Prior to version 8.0.0.3, the PostCalendar m…

Fix: 8.0.0.3+
Fix from $1,950 2026-03-26
Openemr HIGH 8.8
CVE-2026-33917

OpenEMR is a free and open source electronic health records and medical practice management application. Versions prior to 8.0.0.3 contais a SQL inje…

Fix: 8.0.0.3+
Fix from $1,950 2026-03-26
Openemr MEDIUM 5.9
CVE-2026-33909

OpenEMR is a free and open source electronic health records and medical practice management application. Prior to version 8.0.0.3, several variables …

Fix: 8.0.0.3+
Fix from $1,600 2026-03-25
Openemr HIGH 8.8
CVE-2026-33910

OpenEMR is a free and open source electronic health records and medical practice management application. Versions up to and including 8.0.0.2 contain…

Fix: 8.0.0.3+
Fix from $1,950 2026-03-25
Sales And Inventory System MEDIUM 6.5
CVE-2026-4825

A vulnerability was found in SourceCodester Sales and Inventory System 1.0. This affects an unknown part of the file /update_sales.php of the compone…

No fix yet
Fix from $1,600 2026-03-25
Openemr HIGH 8.8
CVE-2026-29187

OpenEMR is a free and open source electronic health records and medical practice management application. Prior to version 8.0.0.3, a Blind SQL Inject…

Fix: 8.0.0.3+
Fix from $1,950 2026-03-25
N8n HIGH 8.8
CVE-2026-33660

n8n is an open source workflow automation platform. Prior to versions 2.14.1, 2.13.3, and 1.123.26, an authenticated user with permission to create o…

Fix: 1.123.27 / 2.13.3+
Fix from $1,950 2026-03-25
N8n HIGH 8.8
CVE-2026-33713

n8n is an open source workflow automation platform. Prior to versions 2.14.1, 2.13.3, and 1.123.26, an authenticated user with permission to create o…

Fix: 1.123.26 / 2.13.3+
Fix from $1,950 2026-03-25
Unclassified HIGH 8.5
CVE-2026-32534

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in JoomSky JS Help Desk js-support-ticket allows B…

Mitigation only
Fix from $1,950 2026-03-25
Unclassified CRITICAL 9.3
CVE-2026-32539

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in PublishPress PublishPress Revisions revisionary…

Mitigation only
Fix from $2,300 2026-03-25
Unclassified HIGH 8.5
CVE-2026-32516

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in kamleshyadav Miraculous Core Plugin miraculousc…

Mitigation only
Fix from $1,950 2026-03-25
Unclassified CRITICAL 9.3
CVE-2026-32499

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in QuantumCloud ChatBot chatbot allows Blind SQL I…

Mitigation only
Fix from $2,300 2026-03-25
Unclassified CRITICAL 9.3
CVE-2026-31920

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Devteam HaywoodTech Product Rearrange for WooCo…

Mitigation only
Fix from $2,300 2026-03-25