Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
HIGH 7.1 CVE-2025-63497 The patient prescription viewing functionality in his_doc_view_single_patient.php of rickxy Hospital Management System version 1.0 contains an SQL in… Hospital Management System Mitigation only Fix from $1,9502025-11-10 CRITICAL 9.8 CVE-2025-12939 A security flaw has been discovered in SourceCodester Interview Management System up to 1.0. Affected by this issue is some unknown functionality of … Interview Management System Mitigation only Fix from $2,3002025-11-10 CRITICAL 9.8 CVE-2025-12938 A vulnerability was identified in projectworlds Online Admission System 1.0. Affected by this vulnerability is an unknown functionality of the file /… Online Admission System Mitigation only Fix from $2,3002025-11-10 HIGH 7.3 CVE-2025-12409 A SQL injection vulnerability was discovered in Looker Studio that allowed for data exfiltration from BigQuery data sources. By creating a maliciou… Mitigation only Fix from $1,9502025-11-10 HIGH 7.6 CVE-2025-12397 A SQL injection vulnerability was found in Looker Studio. A Looker Studio user with report view access could inject malicious SQL that would execute… Mitigation only Fix from $1,9502025-11-10 CRITICAL 9.8 CVE-2025-12933 A vulnerability was identified in SourceCodester Baby Care System 1.0. This affects an unknown part of the file /updatewelcome.php?id=siteoptions&act… Baby Care System Mitigation only Fix from $2,3002025-11-10 CRITICAL 9.8 CVE-2025-12931 A vulnerability was found in SourceCodester Food Ordering System 1.0. Affected by this vulnerability is an unknown functionality of the file /routers… Food Ordering System Mitigation only Fix from $2,3002025-11-10 CRITICAL 9.8 CVE-2025-12932 A vulnerability was determined in SourceCodester Baby Care System 1.0. Affected by this issue is some unknown functionality of the file /admin.php?id… Baby Care System Mitigation only Fix from $2,3002025-11-10 CRITICAL 9.8 CVE-2025-12930 A vulnerability has been found in SourceCodester Food Ordering System 1.0. Affected is an unknown function of the file /view-ticket.php. The manipula… Food Ordering System Mitigation only Fix from $2,3002025-11-10 CRITICAL 9.8 CVE-2025-12928 A vulnerability was detected in code-projects Online Job Search Engine 1.0. This affects an unknown function of the file /login.php. Performing manip… Online Job Search Engine Mitigation only Fix from $2,3002025-11-10 CRITICAL 9.8 CVE-2025-12929 A flaw has been found in SourceCodester Survey Application System 1.0. This impacts the function save_user/update_user of the file /LoginRegistration… Survey Application System Mitigation only Fix from $2,3002025-11-10 HIGH 8.8 CVE-2025-12864 U-Office Force developed by e-Excellence has a SQL Injection vulnerability, allowing authenticated remote attacker to inject arbitrary SQL commands t… U Office Force 29.50+ Fix from $1,9502025-11-10 HIGH 8.8 CVE-2025-12865 U-Office Force developed by e-Excellence has a SQL Injection vulnerability, allowing authenticated remote attacker to inject arbitrary SQL commands t… U Office Force 29.50+ Fix from $1,9502025-11-10 HIGH 8.8 CVE-2025-12926 A weakness has been identified in SourceCodester Farm Management System 1.0. The affected element is an unknown function of the file /review.php. Thi… Farm Management System No fix yet Fix from $1,9502025-11-10 HIGH 7.2 CVE-2025-12927 A security vulnerability has been detected in DedeBIZ up to 6.3.2. The impacted element is an unknown function of the file /admin/archives_add.php. S… Dedebiz after 6.3.2 Fix from $1,9502025-11-10 CRITICAL 9.8 CVE-2025-12913 A flaw has been found in code-projects Responsive Hotel Site 1.0. This affects an unknown part of the file /admin/roomdel.php. Executing manipulation… Responsive Hotel Site Mitigation only Fix from $2,3002025-11-08 HIGH 7.5 CVE-2025-11452 The Asgaros Forum plugin for WordPress is vulnerable to SQL Injection via the '$_COOKIE['asgarosforum_unread_exclude']' cookie in all versions up to,… Patch available Fix from $1,9502025-11-08 HIGH 8.8 CVE-2025-64492 SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. Versions 8.9.0 and below contain a time-bas… Suitecrm 8.9.1+ Fix from $1,9502025-11-08 MEDIUM 6.5 CVE-2025-64493 SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. In versions 8.6.0 through 8.9.0, there is a… Suitecrm 8.9.1+ Fix from $1,6002025-11-08 HIGH 8.8 CVE-2025-64488 SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. In versions 7.14.7 and below and 8.0.0-beta… Suitecrm 7.14.8+ Fix from $1,9502025-11-08 CRITICAL 9.8 CVE-2025-12873 A security flaw has been discovered in Campcodes School File Management 1.0. This affects an unknown part of the file /admin/update_user.php. Perform… School File Management System Mitigation only Fix from $2,3002025-11-07 MEDIUM 6.5 CVE-2025-63718 A SQL injection vulnerability exists in the SourceCodester PQMS (Patient Queue Management System) 1.0 in the api_patient_schedule.php endpoint. The a… Patients Waiting Area Queue Management System No fix yet Fix from $1,6002025-11-07 CRITICAL 10.0 CVE-2025-63689 Multiple SQL injection vulnerabilitites in ycf1998 money-pos system before commit 11f276bd20a41f089298d804e43cb1c39d041e59 (2025-09-14) allows a remo… Money Pos 2025-09-14+ Fix from $2,3002025-11-07 HIGH 7.2 CVE-2025-12861 A vulnerability was determined in DedeBIZ up to 6.3.2. Affected by this vulnerability is an unknown functionality of the file /admin/spec_add.php. Th… Dedebiz after 6.3.2 Fix from $1,9502025-11-07 CRITICAL 9.8 CVE-2025-52425 An SQL injection vulnerability has been reported to affect QuMagie. A remote attacker can exploit the vulnerability to execute unauthorized code or c… Qumagie 2.7.0+ Fix from $2,3002025-11-07 HIGH 7.2 CVE-2025-12860 A vulnerability was found in DedeBIZ up to 6.3.2. Affected is an unknown function of the file /admin/freelist_main.php. The manipulation of the argum… Dedebiz after 6.3.2 Fix from $1,9502025-11-07 HIGH 7.2 CVE-2025-12859 A vulnerability has been found in DedeBIZ up to 6.3.2. This impacts an unknown function of the file /admin/templets_one_edit.php. The manipulation of… Dedebiz after 6.3.2 Fix from $1,9502025-11-07 CRITICAL 9.8 CVE-2025-12855 A security flaw has been discovered in code-projects Responsive Hotel Site 1.0. This issue affects some unknown processing of the file /admin/newslet… Responsive Hotel Site Mitigation only Fix from $2,3002025-11-07 CRITICAL 9.8 CVE-2025-12856 A weakness has been identified in code-projects Responsive Hotel Site 1.0. Impacted is an unknown function of the file /admin/reservation.php. This m… Responsive Hotel Site Mitigation only Fix from $2,3002025-11-07 CRITICAL 9.8 CVE-2025-12857 A security vulnerability has been detected in code-projects Responsive Hotel Site 1.0. The affected element is an unknown function of the file /admin… Responsive Hotel Site Mitigation only Fix from $2,3002025-11-07