Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
HIGH 8.8 CVE-2025-11330 A vulnerability has been found in PHPGurukul Beauty Parlour Management System 1.1. The affected element is an unknown function of the file /admin/sal… Beauty Parlour Management System No fix yet Fix from $1,9502025-10-06 CRITICAL 9.8 CVE-2025-11329 A flaw has been found in code-projects Online Course Registration 1.0. Impacted is an unknown function of the file /admin/manage-students.php. This m… Online Course Registration Site Mitigation only Fix from $2,3002025-10-06 MEDIUM 6.3 CVE-2025-11319 A weakness has been identified in nahiduddinahammed Hospital-Management-System-Website up to e6562429e14b2f88bd2139cae16e87b965024097. This issue aff… Mitigation only Fix from $1,6002025-10-06 CRITICAL 9.8 CVE-2025-11316 A vulnerability was determined in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. Affected by this issue is … Data Leakage Prevention System Mitigation only Fix from $2,3002025-10-06 CRITICAL 9.8 CVE-2025-11317 A vulnerability was identified in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. This affects the function … Data Leakage Prevention System Mitigation only Fix from $2,3002025-10-06 CRITICAL 9.8 CVE-2025-11313 A flaw has been found in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. This impacts the function findRoleP… Data Leakage Prevention System Mitigation only Fix from $2,3002025-10-06 CRITICAL 9.8 CVE-2025-11314 A vulnerability has been found in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. Affected is the function f… Data Leakage Prevention System Mitigation only Fix from $2,3002025-10-06 CRITICAL 9.8 CVE-2025-11315 A vulnerability was found in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. Affected by this vulnerability … Data Leakage Prevention System Mitigation only Fix from $2,3002025-10-06 CRITICAL 9.8 CVE-2025-11312 A vulnerability was detected in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. This affects the function fi… Data Leakage Prevention System Mitigation only Fix from $2,3002025-10-06 CRITICAL 9.8 CVE-2025-11310 A weakness has been identified in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. The affected element is th… Data Leakage Prevention System Mitigation only Fix from $2,3002025-10-06 CRITICAL 9.8 CVE-2025-11311 A security vulnerability has been detected in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. The impacted e… Data Leakage Prevention System Mitigation only Fix from $2,3002025-10-06 CRITICAL 9.8 CVE-2025-11309 A security flaw has been discovered in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. Impacted is the funct… Data Leakage Prevention System Mitigation only Fix from $2,3002025-10-05 HIGH 8.8 CVE-2025-11288 A security flaw has been discovered in CRMEB up to 5.6. This issue affects some unknown processing of the file /adminapi/product/product of the compo… Crmeb after 5.6 Fix from $1,9502025-10-05 HIGH 7.1 CVE-2025-10692 The endpoint POST /api/staff/get-new-tickets concatenates the user-controlled parameter departmentId directly into the SQL WHERE clause without param… Mitigation only Fix from $1,9502025-10-03 HIGH 8.8 CVE-2025-53595 An SQL injection vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, they can then exploit the vulner… Qsync Central 5.0.0.2+ Fix from $1,9502025-10-03 HIGH 8.8 CVE-2025-54153 An SQL injection vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, they can then exploit the vulner… Qsync Central 5.0.0.2+ Fix from $1,9502025-10-03 HIGH 8.8 CVE-2024-56804 An SQL injection vulnerability has been reported to affect Video Station. If a remote attacker gains a user account, they can then exploit the vulner… Video Station 5.8.4+ Fix from $1,9502025-10-03 MEDIUM 6.5 CVE-2025-57423 A SQL injection vulnerability was discovered in the /articles endpoint of MyClub 0.5, affecting the query parameters Content, GroupName, PersonName, … Patch available Fix from $1,6002025-10-03 MEDIUM 6.5 CVE-2025-9198 The Wp cycle text announcement plugin for WordPress is vulnerable to SQL Injection via the 'cycle-text' shortcode in all versions up to, and includin… Mitigation only Fix from $1,6002025-10-03 MEDIUM 6.5 CVE-2025-9199 The Woo superb slideshow transition gallery with random effect plugin for WordPress is vulnerable to SQL Injection via the 'woo-superb-slideshow' sho… Mitigation only Fix from $1,6002025-10-03 HIGH 7.5 CVE-2025-9200 The Blappsta Mobile App Plugin – Your native, mobile iPhone App and Android App plugin for WordPress is vulnerable to SQL Injection via the nh_ynaa_c… Mitigation only Fix from $1,9502025-10-03 CRITICAL 9.3 CVE-2025-40636 SQL injection vulnerability in Joomla module mod_vvisit_counter v2.0.4j3. This vulnerability allows an attacker to retrieve database content via the … Mitigation only Fix from $2,3002025-10-03 HIGH 8.8 CVE-2025-10582 The WP Dispatcher plugin for WordPress is vulnerable to SQL Injection via the ‘id’ parameter in all versions up to, and including, 1.2.0 due to insuf… Mitigation only Fix from $1,9502025-10-03 CRITICAL 9.1 CVE-2025-10726 The WPRecovery plugin for WordPress is vulnerable to SQL Injection via the 'data[id]' parameter in all versions up to, and including, 2.0. This is du… Mitigation only Fix from $2,3002025-10-03 HIGH 8.2 CVE-2025-0616 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Teknolojik Center Telecommunication Industry Tr… Mitigation only Fix from $1,9502025-10-03 CRITICAL 9.8 CVE-2025-61605 WeGIA is an open source web manager with a focus on charitable institutions. Versions 3.4.12 and below contain an SQL Injection vulnerability which w… Wegia 3.5.0+ Fix from $2,3002025-10-02 CRITICAL 9.8 CVE-2025-61603 WeGIA is a Web manager for charitable institutions. Versions 3.4.12 and below include an SQL Injection vulnerability which was identified in the /con… Wegia 3.5.0+ Fix from $2,3002025-10-02 MEDIUM 6.5 CVE-2025-56162 YOSHOP 2.0 suffers from an unauthenticated SQL injection in the goodsIds parameter of the /api/goods/listByIds endpoint. The getListByIds function co… Firefly Mall No fix yet Fix from $1,6002025-10-02 MEDIUM 6.5 CVE-2025-61096 PHPGurukul Online Shopping Portal Project v2.1 is vulnerable to SQL Injection in /shopping/login.php via the fullname parameter. Online Shopping Portal Project No fix yet Fix from $1,6002025-10-02 CRITICAL 9.8 CVE-2025-59742 SQL injection vulnerability in AndSoft's e-TMS v25.03. This vulnerability could allow an attacker to retrieve, create, update, and delete databases b… E Tms Mitigation only Fix from $2,3002025-10-02