Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
CRITICAL 9.8 CVE-2025-63453 Car-Booking-System-PHP v.1.0 is vulnerable to SQL Injection in /carlux/contact.php. Car Booking System Php Mitigation only Fix from $2,3002025-11-03 MEDIUM 6.5 CVE-2025-12503 EasyFlow .NET and EasyFlow AiNet developed by Digiwin has a SQL Injection vulnerability, allowing authenticated remote attackers to inject arbitrary … Mitigation only Fix from $1,6002025-11-03 CRITICAL 9.8 CVE-2025-12617 A flaw has been found in itsourcecode Billing System 1.0. This affects an unknown function of the file /admin/app/login_crud.php. Executing a manipul… Billing System Mitigation only Fix from $2,3002025-11-03 CRITICAL 9.8 CVE-2025-12612 A security flaw has been discovered in Campcodes School Fees Payment Management System 1.0. This issue affects some unknown processing of the file /a… School Fees Payment Management System Mitigation only Fix from $2,3002025-11-03 CRITICAL 9.8 CVE-2025-12614 A weakness has been identified in SourceCodester Best House Rental Management System 1.0. Impacted is the function delete_payment of the file /admin_… Best House Rental Management System Mitigation only Fix from $2,3002025-11-03 HIGH 8.8 CVE-2025-12609 A vulnerability was found in CodeAstro Gym Management System 1.0. Affected by this issue is some unknown functionality of the file /admin/update-prog… Gym Management System No fix yet Fix from $1,9502025-11-03 HIGH 7.2 CVE-2025-12610 A vulnerability was determined in CodeAstro Gym Management System 1.0. This affects an unknown part of the file /admin/view-progress-report.php. Exec… Gym Management System No fix yet Fix from $1,9502025-11-03 CRITICAL 9.8 CVE-2025-12607 A vulnerability was identified in itsourcecode Online Loan Management System 1.0. Impacted is an unknown function of the file /manage_payment.php. Su… Online Loan Management System Mitigation only Fix from $2,3002025-11-03 CRITICAL 9.8 CVE-2025-12608 A security flaw has been discovered in itsourcecode Online Loan Management System 1.0. The affected element is an unknown function of the file /manag… Online Loan Management System Mitigation only Fix from $2,3002025-11-03 CRITICAL 9.8 CVE-2025-12606 A vulnerability was determined in itsourcecode Online Loan Management System 1.0. This issue affects some unknown processing of the file /manage_borr… Online Loan Management System Mitigation only Fix from $2,3002025-11-03 CRITICAL 9.8 CVE-2025-12605 A vulnerability was found in itsourcecode Online Loan Management System 1.0. This vulnerability affects unknown code of the file /manage_loan.php. Th… Online Loan Management System Mitigation only Fix from $2,3002025-11-02 CRITICAL 9.8 CVE-2025-12604 A vulnerability has been found in itsourcecode Online Loan Management System 1.0. This affects an unknown part of the file /load_fields.php. The mani… Online Loan Management System Mitigation only Fix from $2,3002025-11-02 CRITICAL 9.8 CVE-2025-12598 A flaw has been found in SourceCodester Best House Rental Management System 1.0. Affected by this issue is the function save_tenant of the file /admi… Best House Rental Management System Mitigation only Fix from $2,3002025-11-02 CRITICAL 9.8 CVE-2025-12597 A vulnerability was detected in SourceCodester Best House Rental Management System 1.0. Affected by this vulnerability is the function save_category … Best House Rental Management System Mitigation only Fix from $2,3002025-11-02 HIGH 7.2 CVE-2025-12594 A security flaw has been discovered in code-projects Simple Online Hotel Reservation System 2.0. This affects an unknown function of the file /admin/… Simple Online Hotel Reservation System No fix yet Fix from $1,9502025-11-02 MEDIUM 6.5 CVE-2025-11740 The wpForo Forum plugin for WordPress is vulnerable to SQL Injection via the Subscriptions Manager in all versions up to, and including, 2.4.9 due to… Mitigation only Fix from $1,6002025-11-01 HIGH 7.6 CVE-2025-64366 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Stylemix MasterStudy LMS masterstudy-lms-learni… Mitigation only Fix from $1,9502025-10-31 CRITICAL 9.8 CVE-2025-6520 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Abis Technology BAPSIS allows Blind SQL Injecti… Mitigation only Fix from $2,3002025-10-31 HIGH 8.8 CVE-2025-52664 SQL injection in Revive Adserver 6.0.0 causes potential disruption or information access when specifically crafted payloads are sent by logged in use… Revive Adserver Patch available Fix from $1,9502025-10-31 HIGH 8.8 CVE-2021-47693 The Core Config Manager (CCM) in Nagios XI versions prior to CCM 3.1.3 / Nagios XI 5.8.5 contains a SQL injection vulnerability in the search text ha… Nagios Xi 5.8.5+ Fix from $1,9502025-10-30 HIGH 7.2 CVE-2020-36869 Nagios XI versions prior to 5.7.5 contain a SQL injection vulnerability in the SNMP Trap Interface edit page. Exploitation requires an account with a… Nagios Xi 5.7.5+ Fix from $1,9502025-10-30 HIGH 7.2 CVE-2020-36857 Nagios XI versions prior to 5.6.14 contain a post-authentication SQL injection vulnerability in the SNMP Trap Interface page. Exploitation requires a… Nagios Xi 5.6.14+ Fix from $1,9502025-10-30 HIGH 8.8 CVE-2020-36859 The Core Config Manager (CCM) in Nagios XI versions prior to CCM 3.0.7 / Nagios XI 5.7.4 contains multiple SQL injection vulnerabilities in the objec… Nagios Xi 5.7.4+ Fix from $1,9502025-10-30 HIGH 8.8 CVE-2016-15050 Nagios XI versions prior to 5.2.4 contain a SQL injection vulnerability in the notification search functionality. User-supplied search parameters wer… Nagios Xi 5.2.4+ Fix from $1,9502025-10-30 CRITICAL 9.8 CVE-2012-10063 Nagios XI versions prior to 2012R1.3 contain a SQL injection vulnerability in the legacy Core Configuration Manager (CCM) interface. Authenticated us… Nagios Xi after 2011 Fix from $2,3002025-10-30 MEDIUM 5.4 CVE-2025-63608 A SQL injection vulnerability exists in CSZ-CMS <=1.3.0 in the Form Builder view functionality. The vulnerability is located in the field parameter o… Csz Cms after 1.3.0 Fix from $1,6002025-10-30 HIGH 7.3 CVE-2025-64104 LangGraph SQLite Checkpoint is an implementation of LangGraph CheckpointSaver that uses SQLite DB (both sync and async, via aiosqlite). Prior to 2.0.… Patch available Fix from $1,9502025-10-29 MEDIUM 6.5 CVE-2025-60542 SQL Injection vulnerability in TypeORM before 0.3.26 via crafted request to repository.save or repository.update due to the sqlstring call using stri… Patch available Fix from $1,6002025-10-29 CRITICAL 9.8 CVE-2025-63622 A vulnerability was found in code-projects Online Complaint Site 1.0. This issue affects some unknown processing of the file /cms/admin/subcategory.p… Online Complaint Site Mitigation only Fix from $2,3002025-10-29 CRITICAL 9.6 CVE-2025-4665 WordPress plugin Contact Form CFDB7 versions up to and including 1.3.2 are affected by a pre-authentication SQL injection vulnerability that cascades… Mitigation only Fix from $2,3002025-10-29