Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
Simple Gym Management System CRITICAL 9.8
CVE-2026-26709

code-projects Simple Gym Management System v1.0 is vulnerable to SQL Injection in /gym/trainer_search.php.

Mitigation only
Fix from $2,300 2026-03-02
Simple Food Order System CRITICAL 9.8
CVE-2026-26710

code-projects Simple Food Order System v1.0 is vulnerable to SQL Injection in /food/routers/edit-orders.php.

Mitigation only
Fix from $2,300 2026-03-02
Simple Food Order System CRITICAL 9.8
CVE-2026-26711

code-projects Simple Food Order System v1.0 is vulnerable to SQL Injection in /food/view-ticket.php.

Mitigation only
Fix from $2,300 2026-03-02
Android HIGH 8.4
CVE-2025-48650

In multiple locations, there is a possible information disclosure due to SQL injection. This could lead to local escalation of privilege with no addi…

Mitigation only
Fix from $1,950 2026-03-02
Unclassified HIGH 7.5
CVE-2026-3180

The Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe plugin for WordPress is vulnerable to blind SQL Injection via the ‘cgLos…

Mitigation only
Fix from $1,950 2026-03-02
Pharmacy Point Of Sale System CRITICAL 9.8
CVE-2026-26704

sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/view_category.php.

Mitigation only
Fix from $2,300 2026-03-02
Pharmacy Point Of Sale System CRITICAL 9.8
CVE-2026-26705

sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/view_product.php.

Mitigation only
Fix from $2,300 2026-03-02
Pharmacy Point Of Sale System CRITICAL 9.8
CVE-2026-26706

sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/view_receipt.php.

Mitigation only
Fix from $2,300 2026-03-02
Pharmacy Point Of Sale System CRITICAL 9.8
CVE-2026-26707

sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/view_supplier.php.

Mitigation only
Fix from $2,300 2026-03-02
Nocodb HIGH 8.8
CVE-2026-28399

NocoDB is software for building databases as spreadsheets. Prior to version 0.301.3, an authenticated user with Creator role can inject arbitrary SQL…

Fix: 0.301.3+
Fix from $1,950 2026-03-02
Personnel Property Equipment System CRITICAL 9.8
CVE-2026-26700

sourcecodester Personnel Property Equipment System v1.0 is vulnerable to SQL Injection in /ppes/admin/edit_employee.php.

Mitigation only
Fix from $2,300 2026-03-02
Pharmacy Point Of Sale System CRITICAL 9.8
CVE-2026-26708

sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/manage_user.php.

Mitigation only
Fix from $2,300 2026-03-02
Personnel Property Equipment System CRITICAL 9.8
CVE-2026-26701

sourcecodester Personnel Property Equipment System v1.0 is vulnerable to SQL Injection in /ppes/admin/edit_tecnical_user.php.

Mitigation only
Fix from $2,300 2026-03-02
Simple Student Alumni System CRITICAL 9.8
CVE-2026-26694

code-projects Simple Student Alumni System v1.0 is vulnerale to SQL Injection in /TracerStudy/modal_view.php.

Mitigation only
Fix from $2,300 2026-03-02
Simple Student Alumni System CRITICAL 9.8
CVE-2026-26695

code-projects Simple Student Alumni System v1.0 is vulnerable to SQL Injection in /TracerStudy/recordstudent_edit.php.

Mitigation only
Fix from $2,300 2026-03-02
Simple Student Alumni System CRITICAL 9.8
CVE-2026-26696

code-projects Simple Student Alumni System v1.0 is vulnerable to SQL Injection in /TracerStudy/recordteacher_edit.php.

Mitigation only
Fix from $2,300 2026-03-02
Personnel Property Equipment System CRITICAL 9.8
CVE-2026-26702

sourcecodester Personnel Property Equipment System v1.0 is vulnerable to SQL Injection in /ppes/admin/myitem_reuse.php.

Mitigation only
Fix from $2,300 2026-03-02
Personnel Property Equipment System CRITICAL 9.8
CVE-2026-26703

sourcecodester Personnel Property Equipment System v1.0 is vulnerable to SQL Injection in /ppes/admin/advance_search.php.

Mitigation only
Fix from $2,300 2026-03-02
Chamilo Lms HIGH 7.2
CVE-2025-50188

Chamilo is a learning management system. Prior to version 1.11.30, the application performs insufficient validation of data coming from the user from…

Fix: 1.11.30+
Fix from $1,950 2026-03-02
Chamilo Lms HIGH 8.8
CVE-2025-50189

Chamilo is a learning management system. Prior to version 1.11.30, the application performs insufficient validation of data coming from the user from…

Fix: 1.11.30+
Fix from $1,950 2026-03-02
Chamilo Lms CRITICAL 9.8
CVE-2025-50190

Chamilo is a learning management system. Prior to version 1.11.30, there is an error-based SQL Injection via the GET openid.assoc_handle parameter wi…

Fix: 1.11.30+
Fix from $2,300 2026-03-02
Chamilo Lms HIGH 7.2
CVE-2025-50191

Chamilo is a learning management system. Prior to version 1.11.30, there is an error-based SQL Injection via POST userFile with the /main/exercise/ho…

Fix: 1.11.30+
Fix from $1,950 2026-03-02
Chamilo Lms CRITICAL 9.8
CVE-2025-50192

Chamilo is a learning management system. Prior to version 1.11.30, there is a time-based SQL Injection in found in /main/webservices/registration.soa…

Fix: 1.11.30+
Fix from $2,300 2026-03-02
Unclassified CRITICAL 9.3
CVE-2025-12462

A Blind SQL injection vulnerability has been identified in DobryCMS.  A remote unauthenticated attacker is able to inject SQL syntax into URL path in…

Mitigation only
Fix from $2,300 2026-03-02
Unclassified MEDIUM 6.9
CVE-2025-30062

In the "CheckUnitCodeAndKey.pl" service, the "validateOrgUnit" function is vulnerable to SQL injection.

Mitigation only
Fix from $1,600 2026-03-02
Unclassified HIGH 8.8
CVE-2025-10350

SQL Injection vulnerability in "imageserver" module when processing C-FIND queries in CGM NETRAAD software allows attacker connected to PACS gaining …

Mitigation only
Fix from $1,950 2026-03-02
Unclassified CRITICAL 9.3
CVE-2026-2584

A critical SQL Injection (SQLi) vulnerability has been identified in the authentication module of the system. An unauthenticated, remote attacker (AV…

Mitigation only
Fix from $2,300 2026-03-02
University Management System CRITICAL 9.8
CVE-2026-3413

A flaw has been found in itsourcecode University Management System 1.0. This vulnerability affects unknown code of the file /admin_single_student.php…

Mitigation only
Fix from $2,300 2026-03-02
Society Management System CRITICAL 9.8
CVE-2026-3410

A weakness has been identified in itsourcecode Society Management System 1.0. Affected by this vulnerability is an unknown functionality of the file …

Mitigation only
Fix from $2,300 2026-03-02
University Management System CRITICAL 9.8
CVE-2026-3411

A security vulnerability has been detected in itsourcecode University Management System 1.0. Affected by this issue is some unknown functionality of …

Mitigation only
Fix from $2,300 2026-03-02