Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
Simple Php Cms HIGH 7.2
CVE-2025-15169

A weakness has been identified in BiggiDroid Simple PHP CMS 1.0. Affected by this issue is some unknown functionality of the file /admin/editsite.php…

No fix yet
Fix from $1,950 2025-12-29
Student Management System CRITICAL 9.8
CVE-2025-15168

A vulnerability was identified in itsourcecode Student Management System 1.0. Affected is an unknown function of the file /statistical.php. Such mani…

Mitigation only
Fix from $2,300 2025-12-29
Online Cake Ordering System CRITICAL 9.8
CVE-2025-15167

A vulnerability was determined in itsourcecode Online Cake Ordering System 1.0. This impacts an unknown function of the file /detailtransac.php. This…

Mitigation only
Fix from $2,300 2025-12-29
Online Cake Ordering System CRITICAL 9.8
CVE-2025-15166

A vulnerability was found in itsourcecode Online Cake Ordering System 1.0. This affects an unknown function of the file /updatesupplier.php?action=ed…

Mitigation only
Fix from $2,300 2025-12-29
Online Cake Ordering System CRITICAL 9.8
CVE-2025-15165

A vulnerability has been found in itsourcecode Online Cake Ordering System 1.0. The impacted element is an unknown function of the file /updatecustom…

Mitigation only
Fix from $2,300 2025-12-29
Eyoucms HIGH 7.2
CVE-2025-15143

A security flaw has been discovered in EyouCMS up to 1.7.6. The affected element is an unknown function of the file /application/admin/logic/Filemana…

Fix: after 1.7.6
Fix from $1,950 2025-12-28
Unclassified HIGH 7.3
CVE-2025-15142

A vulnerability was identified in 9786 phpok3w up to 901d96a06809fb28b17f3a4362c59e70411c933c. Impacted is an unknown function of the file show.php. …

Mitigation only
Fix from $1,950 2025-12-28
Unclassified HIGH 7.3
CVE-2025-15140

A vulnerability was found in saiftheboss7 onlinemcqexam up to 0e56806132971e49721db3ef01868098c7b42ada. This vulnerability affects unknown code of th…

Mitigation only
Fix from $1,950 2025-12-28
Hotels Server CRITICAL 9.8
CVE-2025-15127

A security vulnerability has been detected in FantasticLBP Hotels_Server up to 67b44df162fab26df209bd5d5d542875fcbec1d0. Affected by this issue is so…

Fix: after 2019-03-23
Fix from $2,300 2025-12-28
Cloudlog CRITICAL 9.8
CVE-2024-44065

Time-based blind SQL Injection vulnerability in Cloudlog v2.6.15 at the endpoint /index.php/logbookadvanced/search in the qsoresults parameter.

Mitigation only
Fix from $2,300 2025-12-26
Student Management System MEDIUM 6.5
CVE-2025-66947

SQL injection vulnerability in krishanmuraiji SMS v.1.0, within the /studentms/admin/edit-class-detail.php via the editid GET parameter. An attacker …

No fix yet
Fix from $1,600 2025-12-26
Unclassified MEDIUM 6.3
CVE-2025-15088

A vulnerability was detected in ketr JEPaaS up to 7.2.8. Affected by this vulnerability is the function postilService.loadPostils of the file /je/pos…

Mitigation only
Fix from $1,600 2025-12-25
Student Management System CRITICAL 9.8
CVE-2025-15078

A vulnerability was detected in itsourcecode Student Management System 1.0. The impacted element is an unknown function of the file /list_report.php.…

Mitigation only
Fix from $2,300 2025-12-25
Student Management System CRITICAL 9.8
CVE-2025-15077

A security vulnerability has been detected in itsourcecode Student Management System 1.0. The affected element is an unknown function of the file /fo…

Mitigation only
Fix from $2,300 2025-12-25
Student Management System CRITICAL 9.8
CVE-2025-15075

A security flaw has been discovered in itsourcecode Student Management System 1.0. This issue affects some unknown processing of the file /student_p.…

Mitigation only
Fix from $2,300 2025-12-25
Online Frozen Foods Ordering System CRITICAL 9.8
CVE-2025-15074

A vulnerability was identified in itsourcecode Online Frozen Foods Ordering System 1.0. This vulnerability affects unknown code of the file /customer…

Mitigation only
Fix from $2,300 2025-12-25
Online Frozen Foods Ordering System CRITICAL 9.8
CVE-2025-15073

A vulnerability was determined in itsourcecode Online Frozen Foods Ordering System 1.0. This affects an unknown part of the file /contact_us.php. Thi…

Mitigation only
Fix from $2,300 2025-12-24
Netman 208 MEDIUM 5.3
CVE-2025-68914

Riello UPS NetMan 208 Application before 1.12 allows cgi-bin/login.cgi username SQL Injection. For example, an attacker can delete the LOGINFAILEDTAB…

Fix: 1.12+
Fix from $1,600 2025-12-24
Unclassified HIGH 8.2
CVE-2018-25128

SOCA Access Control System 180612 contains multiple SQL injection vulnerabilities that allow attackers to manipulate database queries through unvalid…

No fix yet
Fix from $1,950 2025-12-24
Mynet MEDIUM 6.5
CVE-2024-39037

MyNET up to v26.08.316 was discovered to contain an Unauthenticated SQL Injection vulnerability via the intmenu parameter.

Fix: after 26.08.316
Fix from $1,600 2025-12-24
Unclassified HIGH 7.6
CVE-2025-68590

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in CRM Perks Integration for Contact Form 7 HubSpo…

Mitigation only
Fix from $1,950 2025-12-24
Unclassified HIGH 7.6
CVE-2025-68570

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in captivateaudio Captivate Sync captivatesync-tra…

Mitigation only
Fix from $1,950 2025-12-24
Unclassified HIGH 8.5
CVE-2025-68519

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in BeRocket Brands for WooCommerce brands-for-wooc…

Mitigation only
Fix from $1,950 2025-12-24
Unclassified HIGH 7.6
CVE-2025-68496

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Syed Balkhi User Feedback userfeedback-lite all…

Mitigation only
Fix from $1,950 2025-12-24
Unclassified HIGH 8.6
CVE-2023-36525

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPJobBoard allows Blind SQL Injection.This issu…

Mitigation only
Fix from $1,950 2025-12-24
Student Information System HIGH 7.3
CVE-2025-15053

A flaw has been found in code-projects Student Information System 1.0. This issue affects some unknown processing of the file /searchresults.php. Exe…

No fix yet
Fix from $1,950 2025-12-24
Online Farm System CRITICAL 9.8
CVE-2025-15049

A vulnerability was identified in code-projects Online Farm System 1.0. Affected is an unknown function of the file /addProduct.php. The manipulation…

Mitigation only
Fix from $2,300 2025-12-23
Pmb HIGH 7.5
CVE-2023-53982

PMB 7.4.6 contains a SQL injection vulnerability in the storage parameter of the ajax.php endpoint that allows remote attackers to manipulate databas…

No fix yet
Fix from $1,950 2025-12-23
Event Management CRITICAL 9.8
CVE-2025-65354

Improper input handling in /Grocery/search_products_itname.php inPuneethReddyHC event-management 1.0 permits SQL injection via the sitem_name POST pa…

Mitigation only
Fix from $2,300 2025-12-23
Orangescrum HIGH 7.1
CVE-2021-47720

Orangescrum 1.8.0 contains an authenticated SQL injection vulnerability that allows authorized users to manipulate database queries through multiple …

No fix yet
Fix from $1,950 2025-12-23