Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
Ruoyi CRITICAL 10.0
CVE-2024-57521

SQL Injection vulnerability in RuoYi v.4.7.9 and before allows a remote attacker to execute arbitrary code via the createTable function in SqlUtil.ja…

Fix: after 4.7.9
Fix from $2,300 2025-12-23
Unclassified HIGH 7.6
CVE-2025-68561

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Ruben Garcia AutomatorWP automatorwp allows SQL…

Mitigation only
Fix from $1,950 2025-12-23
Unclassified HIGH 7.6
CVE-2025-68550

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in VillaTheme WPBulky wpbulky-wp-bulk-edit-post-ty…

Mitigation only
Fix from $1,950 2025-12-23
Student Management System CRITICAL 9.8
CVE-2025-15034

A security flaw has been discovered in itsourcecode Student Management System 1.0. This affects an unknown part of the file /record.php. The manipula…

Mitigation only
Fix from $2,300 2025-12-23
Webtareas HIGH 7.5
CVE-2023-53972

WebTareas 2.4 contains a SQL injection vulnerability in the webTareasSID cookie parameter that allows unauthenticated attackers to manipulate databas…

No fix yet
Fix from $1,950 2025-12-22
Atomcms HIGH 7.5
CVE-2023-53975

Atom CMS 2.0 contains an unauthenticated SQL injection vulnerability that allows remote attackers to manipulate database queries through unvalidated …

No fix yet
Fix from $1,950 2025-12-22
First Firmware CRITICAL 9.8
CVE-2023-53960

SOUND4 IMPACT/FIRST/PULSE/Eco version 2.x contains an SQL injection vulnerability in the 'index.php' authentication mechanism that allows attackers t…

Mitigation only
Fix from $2,300 2025-12-22
Graphql Engine MEDIUM 5.5
CVE-2021-47714

Hasura GraphQL 1.3.3 contains a local file read vulnerability that allows attackers to access system files through SQL injection in the query endpoin…

No fix yet
Fix from $1,600 2025-12-22
Open Tickets HIGH 7.2
CVE-2025-12514

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Centreon Infra Monitoring - Open-tickets (Notif…

Fix: 23.10.4 / 24.04.5+
Fix from $1,950 2025-12-22
Unclassified MEDIUM 6.3
CVE-2025-15014

A security flaw has been discovered in loganhong php loganSite up to c035fb5c3edd0b2a5e32fd4051cbbc9e61a31426. This affects an unknown function of th…

Mitigation only
Fix from $1,600 2025-12-22
Refugee Food Management System CRITICAL 9.8
CVE-2025-15012

A vulnerability was determined in code-projects Refugee Food Management System 1.0. The affected element is an unknown function of the file /home/hom…

Mitigation only
Fix from $2,300 2025-12-22
Simple Stock System CRITICAL 9.8
CVE-2025-15011

A vulnerability was found in code-projects Simple Stock System 1.0. Impacted is an unknown function of the file /logout.php. The manipulation of the …

Mitigation only
Fix from $2,300 2025-12-22
Dedecms HIGH 8.8
CVE-2025-15004

A vulnerability was identified in DedeCMS up to 5.7.118. This impacts an unknown function of the file /freelist_main.php. The manipulation of the arg…

Fix: after 5.7.118
Fix from $1,950 2025-12-22
Seacms HIGH 7.2
CVE-2025-15003

A vulnerability was found in SeaCMS up to 13.3. The impacted element is an unknown function of the file admin_video.php. Performing a manipulation of…

Fix: after 13.3
Fix from $1,950 2025-12-22
Seacms CRITICAL 9.8
CVE-2025-15002

A vulnerability has been found in SeaCMS up to 13.3. The affected element is an unknown function of the file js/player/dmplayer/dmku/class/mysqli.cla…

Fix: after 13.3
Fix from $2,300 2025-12-21
Complete Online Beauty Parlor Management System CRITICAL 9.8
CVE-2025-14990

A security flaw has been discovered in Campcodes Complete Online Beauty Parlor Management System 1.0. Impacted is an unknown function of the file /ad…

Mitigation only
Fix from $2,300 2025-12-21
Complete Online Beauty Parlor Management System CRITICAL 9.8
CVE-2025-14989

A vulnerability was identified in Campcodes Complete Online Beauty Parlor Management System 1.0. This issue affects some unknown processing of the fi…

Mitigation only
Fix from $2,300 2025-12-21
Simple Stock System CRITICAL 9.8
CVE-2025-14968

A security flaw has been discovered in code-projects Simple Stock System 1.0. Affected by this issue is some unknown functionality of the file /marke…

Mitigation only
Fix from $2,300 2025-12-19
Student Management System CRITICAL 9.8
CVE-2025-14967

A vulnerability was identified in itsourcecode Student Management System 1.0. Affected by this vulnerability is an unknown functionality of the file …

Mitigation only
Fix from $2,300 2025-12-19
Fastadmin HIGH 7.2
CVE-2025-14966

A vulnerability was determined in FastAdmin up to 1.7.0.20250506. Affected is the function selectpage of the file application/common/controller/Backe…

Fix: after 1.6.1.20250430
Fix from $1,950 2025-12-19
Simple Blood Donor Management System CRITICAL 9.8
CVE-2025-14961

A vulnerability was detected in code-projects Simple Blood Donor Management System 1.0. The affected element is an unknown function of the file /edit…

Mitigation only
Fix from $2,300 2025-12-19
Simple Stock System CRITICAL 9.8
CVE-2025-14959

A weakness has been identified in code-projects Simple Stock System 1.0. This issue affects some unknown processing of the file /market/signup.php. E…

Mitigation only
Fix from $2,300 2025-12-19
Simple Blood Donor Management System CRITICAL 9.8
CVE-2025-14960

A security vulnerability has been detected in code-projects Simple Blood Donor Management System 1.0. Impacted is an unknown function of the file /ed…

Mitigation only
Fix from $2,300 2025-12-19
Scholars Tracking System CRITICAL 9.8
CVE-2025-14951

A security vulnerability has been detected in code-projects Scholars Tracking System 1.0. The impacted element is an unknown function of the file /ho…

Mitigation only
Fix from $2,300 2025-12-19
Supplier Management System CRITICAL 9.8
CVE-2025-14952

A vulnerability was detected in Campcodes Supplier Management System 1.0. This affects an unknown function of the file /admin/add_category.php. Perfo…

Mitigation only
Fix from $2,300 2025-12-19
Scholars Tracking System CRITICAL 9.8
CVE-2025-14950

A weakness has been identified in code-projects Scholars Tracking System 1.0. The affected element is an unknown function of the file /delete_post.ph…

Mitigation only
Fix from $2,300 2025-12-19
Online Appointment Booking System HIGH 7.2
CVE-2025-14939

A vulnerability was found in code-projects Online Appointment Booking System 1.0. Impacted is an unknown function of the file /admin/deletemanager.ph…

No fix yet
Fix from $1,950 2025-12-19
Scholars Tracking System CRITICAL 9.8
CVE-2025-14940

A vulnerability was determined in code-projects Scholars Tracking System 1.0. The affected element is an unknown function of the file /admin/delete_u…

Mitigation only
Fix from $2,300 2025-12-19
Real Estate Management System HIGH 7.2
CVE-2025-14899

A weakness has been identified in CodeAstro Real Estate Management System 1.0. This impacts an unknown function of the file /admin/stateadd.php of th…

No fix yet
Fix from $1,950 2025-12-19
Real Estate Management System HIGH 7.2
CVE-2025-14900

A security vulnerability has been detected in CodeAstro Real Estate Management System 1.0. Affected is an unknown function of the file /admin/userdel…

No fix yet
Fix from $1,950 2025-12-19