Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
CRITICAL 9.8 CVE-2025-45885 PHPGURUKUL Vehicle Parking Management System v1.13 is vulnerable to SQL injection in the /vpms/users/login.php file. Attackers can inject malicious c… Vehicle Parking Management System No fix yet Fix from $2,3002025-05-09 CRITICAL 9.8 CVE-2025-4467 A vulnerability was found in SourceCodester Online Student Clearance System 1.0. It has been declared as critical. This vulnerability affects unknown… Online Student Clearance System No fix yet Fix from $2,3002025-05-09 CRITICAL 9.8 CVE-2025-4464 A vulnerability has been found in itsourcecode Gym Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown fun… Gym Management System No fix yet Fix from $2,3002025-05-09 CRITICAL 9.8 CVE-2025-4465 A vulnerability was found in itsourcecode Gym Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality … Gym Management System No fix yet Fix from $2,3002025-05-09 CRITICAL 9.8 CVE-2025-4466 A vulnerability was found in itsourcecode Gym Management System 1.0. It has been classified as critical. This affects an unknown part of the file /aj… Gym Management System No fix yet Fix from $2,3002025-05-09 CRITICAL 9.8 CVE-2025-4463 A vulnerability, which was classified as critical, was found in itsourcecode Gym Management System 1.0. Affected is an unknown function of the file /… Gym Management System No fix yet Fix from $2,3002025-05-09 HIGH 8.8 CVE-2025-4458 A vulnerability was found in code-projects Patient Record Management System 1.0. It has been declared as critical. Affected by this vulnerability is … Patient Record Management System No fix yet Fix from $1,9502025-05-09 HIGH 8.8 CVE-2025-4459 A vulnerability was found in code-projects Patient Record Management System 1.0. It has been rated as critical. Affected by this issue is some unknow… Patient Record Management System No fix yet Fix from $1,9502025-05-09 CRITICAL 9.8 CVE-2025-4456 A vulnerability classified as critical has been found in Project Worlds Car Rental Project 1.0. Affected is an unknown function of the file /signup.p… Car Rental Project No fix yet Fix from $2,3002025-05-09 CRITICAL 9.8 CVE-2025-4457 A vulnerability classified as critical was found in Project Worlds Car Rental Project 1.0. Affected by this vulnerability is an unknown functionality… Car Rental Project No fix yet Fix from $2,3002025-05-09 MEDIUM 6.5 CVE-2025-45818 Slims (Senayan Library Management Systems) 9 Bulian 9.6.1 is vulnerable to SQL Injection in admin/modules/master_file/item_status.php. Senayan Library Management System Bulian No fix yet Fix from $1,6002025-05-08 MEDIUM 6.5 CVE-2025-45819 Slims (Senayan Library Management Systems) 9 Bulian 9.6.1 is vulnerable to SQL Injection in admin/modules/master_file/author.php. Senayan Library Management System Bulian No fix yet Fix from $1,6002025-05-08 MEDIUM 6.5 CVE-2025-45820 Slims (Senayan Library Management Systems) 9 Bulian 9.6.1 is vulnerable to SQL Injection in admin/modules/bibliography/pop_author_edit.php. Senayan Library Management System Bulian No fix yet Fix from $1,6002025-05-08 CRITICAL 9.8 CVE-2025-46828 WeGIA is a web manager for charitable institutions. An unauthenticated SQL Injection vulnerability was identified in versions up to and including 3.… Wegia 3.3.1+ Fix from $2,3002025-05-07 CRITICAL 9.3 CVE-2025-47657 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Productive Minds Productive Commerce productive… Mitigation only Fix from $2,3002025-05-07 HIGH 7.6 CVE-2025-47643 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ELEXtensions ELEX Product Feed for WooCommerce … Mitigation only Fix from $1,9502025-05-07 HIGH 7.6 CVE-2025-47587 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in YayCommerce YaySMTP yaysmtp allows Blind SQL In… Mitigation only Fix from $1,9502025-05-07 HIGH 7.2 CVE-2025-47544 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in acowebs Dynamic Pricing With Discount Rules for… Dynamic Pricing With Discount Rules For Woocommerce 4.5.9+ Fix from $1,9502025-05-07 HIGH 7.6 CVE-2025-47537 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in add-ons.org PDF Invoice Builder for WooCommerce… Mitigation only Fix from $1,9502025-05-07 HIGH 7.2 CVE-2025-47538 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in wpdever Cart tracking for WooCommerce cart-trac… Cart Tracking For Woocommerce after 1.0.17 Fix from $1,9502025-05-07 HIGH 8.5 CVE-2025-47490 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Rustaurius Ultimate WP Mail ultimate-wp-mail al… Mitigation only Fix from $1,9502025-05-07 HIGH 7.6 CVE-2025-47460 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TrackShip TrackShip for WooCommerce trackship-f… Mitigation only Fix from $1,9502025-05-07 MEDIUM 5.4 CVE-2025-29153 SQL Injection vulnerability in lemeconsultoria HCM galera.app v.4.58.0 allows an attacker to execute arbitrary code via the Data export, filters func… Galera No fix yet Fix from $1,6002025-05-07 CRITICAL 9.8 CVE-2025-0668 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in BOINC Server allows Stored XSS.This issu… Boinc Server 1.4.5+ Fix from $2,3002025-05-07 HIGH 7.5 CVE-2025-0853 The PGS Core plugin for WordPress is vulnerable to SQL Injection via the 'event' parameter in the 'save_header_builder' function in all versions up t… Mitigation only Fix from $1,9502025-05-06 CRITICAL 9.8 CVE-2025-44073 SeaCMS v13.3 was discovered to contain a SQL injection vulnerability via the component admin_comment_news.php. Seacms No fix yet Fix from $2,3002025-05-06 MEDIUM 5.1 CVE-2023-33770 Real Estate Management System v1.0 was discovered to contain a SQL injection vulnerability via the message parameter at /contact.php. Mitigation only Fix from $1,6002025-05-06 CRITICAL 9.8 CVE-2025-4363 A vulnerability, which was classified as critical, has been found in itsourcecode Gym Management System 1.0. This issue affects some unknown processi… Gym Management System No fix yet Fix from $2,3002025-05-06 CRITICAL 9.8 CVE-2025-4362 A vulnerability classified as critical was found in itsourcecode Gym Management System 1.0. This vulnerability affects unknown code of the file /ajax… Gym Management System No fix yet Fix from $2,3002025-05-06 CRITICAL 9.8 CVE-2025-4360 A vulnerability, which was classified as critical, has been found in itsourcecode Gym Management System 1.0. Affected by this issue is some unknown f… Gym Management System No fix yet Fix from $2,3002025-05-06