Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
CRITICAL 9.8 CVE-2026-62390 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Kylin. A backend API refreshing table ca… Kylin 5.0.4+ Fix from $2,3002026-07-14 CRITICAL 9.2 CVE-2026-15183 Multiple input validation vulnerabilities in the Snowflake Spark Connector (spark-snowflake) versions prior to 3.2.1 can allow attackers to exfiltrat… Mitigation only Fix from $2,3002026-07-14 HIGH 7.3 CVE-2026-15676 A security flaw has been discovered in code-projects Online Job Portal up to 1.0. The impacted element is an unknown function of the file /Admin/Dele… Mitigation only Fix from $1,9502026-07-14 HIGH 7.3 CVE-2026-15675 A vulnerability was identified in code-projects Online Job Portal 1.0. The affected element is an unknown function of the file /Admin/EditUser.php. S… Mitigation only Fix from $1,9502026-07-14 MEDIUM 6.3 CVE-2026-15672 A vulnerability was determined in itsourcecode Electronic Judging System 1.0. Impacted is an unknown function of the file /intrams/admin/add_judges.p… Mitigation only Fix from $1,6002026-07-14 MEDIUM 5.5 CVE-2026-44769 SAP S/4HANA application Project Management (PPM-PRO) allows an attacker with high privileges to execute crafted database queries, exposing the backen… Mitigation only Fix from $1,6002026-07-14 CRITICAL 9.8 CVE-2026-51821 SQL Injection vulnerability in Shenzhou Shihan Video Conference System v.1.0 allows a remote attacker to execute arbitrary code via the /user/getUser… Mitigation only Fix from $2,3002026-07-13 HIGH 7.3 CVE-2026-15597 A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0/2.php. This affects an unknown function of the file /edit… Mitigation only Fix from $1,9502026-07-13 MEDIUM 6.3 CVE-2026-15559 A vulnerability was detected in CodeAstro Simple Online Leave Management System 1.0. This affects an unknown part of the file /SimpleOnlineLeave/admi… Mitigation only Fix from $1,6002026-07-13 MEDIUM 6.3 CVE-2026-15558 A security vulnerability has been detected in CodeAstro Simple Online Leave Management System 1.0. Affected by this issue is some unknown functionali… Mitigation only Fix from $1,6002026-07-13 HIGH 7.6 CVE-2026-61955 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Hannan گرویتی فرم فارسی persian-gravity-forms a… Mitigation only Fix from $1,9502026-07-13 CRITICAL 9.3 CVE-2026-59515 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Sergey AIWU ai-copilot-content-generator allows… Mitigation only Fix from $2,3002026-07-13 HIGH 8.5 CVE-2026-57810 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Saad Iqbal APIExperts Square for WooCommerce wo… Mitigation only Fix from $1,9502026-07-13 HIGH 8.5 CVE-2026-57787 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in CreativeWS CWS SVGicons cws-svgicons allows Bli… Mitigation only Fix from $1,9502026-07-13 HIGH 8.5 CVE-2026-57771 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Milan Petrovic GD Rating System gd-rating-syste… Mitigation only Fix from $1,9502026-07-13 HIGH 8.5 CVE-2026-57772 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WP Inventory WP Inventory Manager wp-inventory-… Mitigation only Fix from $1,9502026-07-13 HIGH 7.6 CVE-2026-57773 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Zorem Advanced Shipment Tracking for WooCommerc… Mitigation only Fix from $1,9502026-07-13 CRITICAL 9.3 CVE-2026-57739 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in AcyMailing Newsletter Team AcyMailing SMTP News… Mitigation only Fix from $2,3002026-07-13 CRITICAL 9.3 CVE-2026-57726 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Themeum Kirki kirki allows Blind SQL Injection.… Mitigation only Fix from $2,3002026-07-13 CRITICAL 9.3 CVE-2026-57714 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in LatePoint LatePoint latepoint allows Blind SQL … No fix yet Fix from $2,3002026-07-13 CRITICAL 9.3 CVE-2026-57702 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Melograno Venture Studio Amelia ameliabooking a… Mitigation only Fix from $2,3002026-07-13 CRITICAL 9.3 CVE-2026-57707 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in quantumcloud Simple Business Directory Pro simp… Mitigation only Fix from $2,3002026-07-13 HIGH 8.5 CVE-2026-57385 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in appsbd Vitepos vitepos-lite allows Blind SQL In… Mitigation only Fix from $1,9502026-07-13 MEDIUM 6.3 CVE-2026-15536 A vulnerability was identified in itsourcecode Hospital Management System 1.0. This affects an unknown part of the file /patviewprescription.php. The… Mitigation only Fix from $1,6002026-07-13 HIGH 7.3 CVE-2026-15537 A security flaw has been discovered in SourceCodester Online Book Store System 1.0. This vulnerability affects unknown code of the file admin/login.p… Mitigation only Fix from $1,9502026-07-13 MEDIUM 6.3 CVE-2026-15523 A weakness has been identified in CodeAstro Simple Online Leave Management System 1.0. Affected by this issue is some unknown functionality of the fi… Mitigation only Fix from $1,6002026-07-13 HIGH 7.3 CVE-2026-15517 A flaw has been found in Jinher OA 1.0. The affected element is an unknown function of the file /C6/JHSoft.Web.PlanSummarize/PlanGiveOut.aspx. This m… Mitigation only Fix from $1,9502026-07-13 HIGH 7.3 CVE-2026-15514 A weakness has been identified in Metasoft 美特软件 MetaCRM up to 6.4.0 Beta06. This vulnerability affects the function RPCService.query of the file … Mitigation only Fix from $1,9502026-07-13 MEDIUM 6.3 CVE-2026-15502 A vulnerability was detected in AojiaoZero Antaris 1.0. This affects the function _rewardPurchase of the file /ipn.php of the component PayPal IPN Pa… Mitigation only Fix from $1,6002026-07-12 HIGH 7.3 CVE-2026-15498 A vulnerability was identified in sergomanov SmartHomeAdatum up to cf495353d81b680675eb8d9aa14a318aa45ce12c. This impacts an unknown function of the … Mitigation only Fix from $1,9502026-07-12