Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
Agri Trading Online Shopping System CRITICAL 9.8
CVE-2026-2865

A vulnerability was found in itsourcecode Agri-Trading Online Shopping System 1.0. This impacts an unknown function of the file admin/productcontroll…

Mitigation only
Fix from $2,300 2026-02-21
Labcollector HIGH 7.5
CVE-2019-25438

LabCollector 5.423 contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to execute arbitrary SQL commands by injectin…

No fix yet
Fix from $1,950 2026-02-20
Unclassified HIGH 8.2
CVE-2019-25431

delpino73 Blue-Smiley-Organizer 1.32 contains an SQL injection vulnerability in the datetime parameter that allows unauthenticated attackers to manip…

No fix yet
Fix from $1,950 2026-02-20
Unclassified HIGH 7.5
CVE-2019-25432

Part-DB 0.4 contains an authentication bypass vulnerability that allows unauthenticated attackers to login by injecting SQL syntax into authenticatio…

No fix yet
Fix from $1,950 2026-02-20
Fiverr Clone Script CRITICAL 9.1
CVE-2019-25444

Fiverr Clone Script 1.2.2 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting S…

No fix yet
Fix from $2,300 2026-02-20
Simple Responsive Tourism Website CRITICAL 9.8
CVE-2026-2848

A flaw has been found in SourceCodester Simple Responsive Tourism Website 1.0. Affected by this vulnerability is an unknown functionality of the file…

Mitigation only
Fix from $2,300 2026-02-20
Open Source Point Of Sale MEDIUM 5.3
CVE-2026-26745

OpenSourcePOS 3.4.1 has a second order SQL Injection vulnerability in the handling of the currency_symbol configuration field. Although the input is …

No fix yet
Fix from $1,600 2026-02-20
Unclassified CRITICAL 9.3
CVE-2026-24956

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Shahjada Download Manager Addons for Elementor …

Mitigation only
Fix from $2,300 2026-02-20
Unclassified HIGH 8.5
CVE-2026-24959

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in JoomSky JS Help Desk js-support-ticket allows B…

Mitigation only
Fix from $1,950 2026-02-20
Unclassified CRITICAL 9.3
CVE-2025-69337

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in don-themes Wolmart Core wolmart-core allows Bli…

Mitigation only
Fix from $2,300 2026-02-20
Unclassified CRITICAL 9.3
CVE-2025-69365

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Uroan Core uroan-core allows Blind…

Mitigation only
Fix from $2,300 2026-02-20
Unclassified CRITICAL 9.3
CVE-2025-69366

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Emerce Core emerce-core allows Bli…

Mitigation only
Fix from $2,300 2026-02-20
Unclassified CRITICAL 9.3
CVE-2025-69308

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Nestbyte Core nestbyte-core allows…

Mitigation only
Fix from $2,300 2026-02-20
Unclassified CRITICAL 9.3
CVE-2025-69309

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Saasplate Core saasplate-core allo…

Mitigation only
Fix from $2,300 2026-02-20
Unclassified CRITICAL 9.3
CVE-2025-69310

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Woodly Core woodly-core allows Bli…

Mitigation only
Fix from $2,300 2026-02-20
Unclassified CRITICAL 9.3
CVE-2025-69304

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Allmart allmart-core allows Blind …

Mitigation only
Fix from $2,300 2026-02-20
Unclassified CRITICAL 9.3
CVE-2025-69305

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Crete Core crete-core allows Blind…

Mitigation only
Fix from $2,300 2026-02-20
Unclassified CRITICAL 9.3
CVE-2025-69306

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Electio Core electio-core allows B…

Mitigation only
Fix from $2,300 2026-02-20
Unclassified CRITICAL 9.3
CVE-2025-69307

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Medinik Core medinik-core allows B…

Mitigation only
Fix from $2,300 2026-02-20
Unclassified CRITICAL 9.3
CVE-2025-69295

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Coven Core coven-core allows Blind…

Mitigation only
Fix from $2,300 2026-02-20
Unclassified HIGH 8.5
CVE-2025-67987

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ExpressTech Systems Quiz And Survey Master quiz…

Mitigation only
Fix from $1,950 2026-02-20
Unclassified CRITICAL 9.8
CVE-2025-10970

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Kolay Software Inc. Talentics allows Blind SQL …

Mitigation only
Fix from $2,300 2026-02-20
Jeecg Boot HIGH 8.8
CVE-2026-2822

A security vulnerability has been detected in JeecgBoot up to 3.9.1. The affected element is an unknown function of the file /jeecgboot/sys/dict/load…

Fix: after 3.9.1
Fix from $1,950 2026-02-20
Unclassified HIGH 7.3
CVE-2026-2821

A weakness has been identified in Fujian Smart Integrated Management Platform System up to 7.5. Impacted is an unknown function of the file /Module/C…

No fix yet
Fix from $1,950 2026-02-20
Unclassified HIGH 7.3
CVE-2026-2820

A security flaw has been discovered in Fujian Smart Integrated Management Platform System up to 7.5. This issue affects some unknown processing of th…

No fix yet
Fix from $1,950 2026-02-20
Ghost HIGH 7.5
CVE-2026-26980EPSS 69%

Ghost is a Node.js content management system. Versions 3.24.0 through 6.19.0 allow unauthenticated attackers to perform arbitrary reads from the data…

Fix: 6.19.1+
Fix from $1,950 2026-02-20
Librenms CRITICAL 9.1
CVE-2026-26988EPSS 7%

LibreNMS is an auto-discovering PHP/MySQL/SNMP based network monitoring tool. Versions 25.12.0 and below contain an SQL Injection vulnerability in th…

Fix: 26.2.0+
Fix from $2,300 2026-02-20
Librenms HIGH 8.8
CVE-2026-26990

LibreNMS is an auto-discovering PHP/MySQL/SNMP based network monitoring tool. Versions 25.12.0 and below have a Time-Based Blind SQL Injection vulner…

Fix: 26.2.0+
Fix from $1,950 2026-02-20
Asset HIGH 8.8
CVE-2026-2435

Tanium addressed a SQL injection vulnerability in Asset.

Fix: 1.32.179 / 1.33.269+
Fix from $1,950 2026-02-20
Unclassified CRITICAL 9.3
CVE-2026-2409

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Delinea Cloud Suite allows Argument Injection.T…

Mitigation only
Fix from $2,300 2026-02-19