Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
Unclassified HIGH 8.5
CVE-2026-27039

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in AA-Team WZone woozone allows Blind SQL Injectio…

Mitigation only
Fix from $1,950 2026-03-25
Unclassified CRITICAL 9.3
CVE-2026-25377

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in eyecix Addon Jobsearch Chat addon-jobsearch-cha…

Mitigation only
Fix from $2,300 2026-03-25
Unclassified CRITICAL 9.3
CVE-2026-25371

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in King-Theme Lumise Product Designer lumise allow…

Mitigation only
Fix from $2,300 2026-03-25
Unclassified CRITICAL 9.3
CVE-2026-25340

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in NooTheme Jobmonster noo-jobmonster allows Blind…

Mitigation only
Fix from $2,300 2026-03-25
Unclassified CRITICAL 9.3
CVE-2026-24993

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPFactory Advanced WooCommerce Product Sales Re…

Mitigation only
Fix from $2,300 2026-03-25
Unclassified HIGH 8.5
CVE-2026-25007

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Element Invader ElementInvader Addons for Eleme…

Mitigation only
Fix from $1,950 2026-03-25
Unclassified HIGH 8.5
CVE-2026-24977

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in NooTheme Organici Library noo-organici-library …

Mitigation only
Fix from $1,950 2026-03-25
Unclassified CRITICAL 9.3
CVE-2026-22484

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in pebas Lisfinity Core lisfinity-core allows SQL …

Mitigation only
Fix from $2,300 2026-03-25
Opencart HIGH 8.2
CVE-2024-58341

OpenCart Core 4.0.2.3 contains a SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL co…

No fix yet
Fix from $1,950 2026-03-25
Support Board HIGH 8.8
CVE-2026-4815

A SQL Injection vulnerability has been found in Support Board v3.7.7. This vulnerability allows an attacker to retrieve, create, update and delete da…

Fix: 3.7.8+
Fix from $1,950 2026-03-25
Simple Laundry System CRITICAL 9.8
CVE-2026-4784

A vulnerability was found in code-projects Simple Laundry System 1.0. This affects an unknown function of the file /checkcheckout.php of the componen…

Mitigation only
Fix from $2,300 2026-03-25
Unclassified MEDIUM 6.3
CVE-2026-4783

A vulnerability has been found in itsourcecode College Management System 1.0. The impacted element is an unknown function of the file /admin/add-sing…

Mitigation only
Fix from $1,600 2026-03-25
Sales And Inventory System HIGH 8.8
CVE-2026-4780

A vulnerability was detected in SourceCodester Sales and Inventory System 1.0. Impacted is an unknown function of the file update_out_standing.php of…

No fix yet
Fix from $1,950 2026-03-25
Sales And Inventory System HIGH 8.8
CVE-2026-4781

A flaw has been found in SourceCodester Sales and Inventory System 1.0. The affected element is an unknown function of the file update_purchase.php o…

No fix yet
Fix from $1,950 2026-03-25
Sales And Inventory System MEDIUM 6.5
CVE-2026-4778

A weakness has been identified in SourceCodester Sales and Inventory System 1.0. This vulnerability affects unknown code of the file update_category.…

No fix yet
Fix from $1,600 2026-03-24
Sales And Inventory System HIGH 8.8
CVE-2026-4779

A security vulnerability has been detected in SourceCodester Sales and Inventory System 1.0. This issue affects some unknown processing of the file u…

No fix yet
Fix from $1,950 2026-03-24
Sales And Inventory System MEDIUM 6.5
CVE-2026-4777

A security flaw has been discovered in SourceCodester Sales and Inventory System 1.0. This affects an unknown part of the file view_supplier.php of t…

No fix yet
Fix from $1,600 2026-03-24
Parse Server HIGH 7.2
CVE-2026-33539

Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to versions 8.6.59 and 9.6.0-alpha.53, …

Fix: 8.6.59 / 9.6.0+
Fix from $1,950 2026-03-24
Unclassified HIGH 8.7
CVE-2026-23921

A low privilege Zabbix user with API access can exploit a blind SQL injection vulnerability in include/classes/api/CApiService.php to execute arbitra…

Mitigation only
Fix from $1,950 2026-03-24
Esiclivre MEDIUM 6.5
CVE-2026-30655

SQL injection in Solicitante::resetaSenha() in esiclivre/esiclivre v0.2.2 and earlier allows unauthenticated remote attackers to gain unauthorized ac…

Fix: after 0.2.2
Fix from $1,600 2026-03-24
Unclassified HIGH 8.2
CVE-2019-25641

Netartmedia Vlog System contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL…

No fix yet
Fix from $1,950 2026-03-24
Unclassified HIGH 8.2
CVE-2019-25642

Bootstrapy CMS contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to execute arbitrary SQL queries by injecting mal…

No fix yet
Fix from $1,950 2026-03-24
Unclassified HIGH 8.2
CVE-2019-25643

eNdonesia Portal v8.7 contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to execute arbitrary SQL queries by inject…

No fix yet
Fix from $1,950 2026-03-24
Unclassified HIGH 8.2
CVE-2019-25640

Inout Article Base CMS contains SQL injection vulnerabilities that allow unauthenticated attackers to manipulate database queries through the 'p' and…

No fix yet
Fix from $1,950 2026-03-24
Matrimony Cms HIGH 8.2
CVE-2019-25635

Zeeways Matrimony CMS contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to manipulate database queries through the…

No fix yet
Fix from $1,950 2026-03-24
Jobsite Cms HIGH 8.2
CVE-2019-25636

Zeeways Jobsite CMS contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL cod…

No fix yet
Fix from $1,950 2026-03-24
Unclassified HIGH 7.1
CVE-2019-25638

Meeplace Business Review Script contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by inj…

No fix yet
Fix from $1,950 2026-03-24
Unclassified HIGH 8.2
CVE-2019-25639

Matrimony Website Script M-Plus contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to manipulate database queries b…

No fix yet
Fix from $1,950 2026-03-24
Unclassified HIGH 7.5
CVE-2026-4662

The JetEngine plugin for WordPress is vulnerable to SQL Injection via the `listing_load_more` AJAX action in all versions up to, and including, 3.8.6…

Mitigation only
Fix from $1,950 2026-03-24
Unclassified HIGH 7.3
CVE-2026-4632

A weakness has been identified in itsourcecode Online Enrollment System 1.0. This vulnerability affects unknown code of the file /sms/user/index.php?…

Mitigation only
Fix from $1,950 2026-03-24