Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
HIGH 8.8 CVE-2025-3143 A vulnerability classified as critical has been found in SourceCodester Apartment Visitor Management System 1.0. Affected is an unknown function of t… Apartment Visitor Management System No fix yet Fix from $1,9502025-04-03 CRITICAL 9.8 CVE-2025-3141 A vulnerability was found in SourceCodester Online Medicine Ordering System 1.0. It has been declared as critical. This vulnerability affects unknown… Online Medicine Ordering System No fix yet Fix from $2,3002025-04-03 CRITICAL 9.8 CVE-2025-3140 A vulnerability was found in SourceCodester Online Medicine Ordering System 1.0. It has been classified as critical. This affects an unknown part of … Online Medicine Ordering System No fix yet Fix from $2,3002025-04-03 CRITICAL 9.8 CVE-2025-3137 A vulnerability, which was classified as critical, was found in PHPGurukul Online Security Guards Hiring System 1.0. Affected is an unknown function … Online Security Guards Hiring System No fix yet Fix from $2,3002025-04-03 CRITICAL 9.8 CVE-2025-3138 A vulnerability has been found in PHPGurukul Online Security Guards Hiring System 1.0 and classified as critical. Affected by this vulnerability is a… Online Security Guards Hiring System No fix yet Fix from $2,3002025-04-03 HIGH 8.8 CVE-2025-3134 A vulnerability classified as critical has been found in code-projects Payroll Management System 1.0. This affects an unknown part of the file /add_o… Payroll Management System No fix yet Fix from $1,9502025-04-03 CRITICAL 9.8 CVE-2025-3135 A vulnerability classified as critical was found in fcba_zzm ics-park Smart Park Management System 2.1. This vulnerability affects unknown code of th… Smart Park Management System Mitigation only Fix from $2,3002025-04-03 CRITICAL 9.8 CVE-2025-3120 A vulnerability was found in SourceCodester Apartment Visitors Management System 1.0. It has been rated as critical. This issue affects some unknown … Apartment Visitors Management System No fix yet Fix from $2,3002025-04-02 CRITICAL 9.8 CVE-2025-3119 A vulnerability was found in SourceCodester Online Tutor Portal 1.0. It has been declared as critical. This vulnerability affects unknown code of the… Online Tutor Portal No fix yet Fix from $2,3002025-04-02 CRITICAL 9.8 CVE-2025-3118 A vulnerability was found in SourceCodester Online Tutor Portal 1.0. It has been classified as critical. This affects an unknown part of the file /tu… Online Tutor Portal No fix yet Fix from $2,3002025-04-02 HIGH 8.8 CVE-2025-22924 OS4ED openSIS v7.0 through v9.1 contains a SQL injection vulnerability via the stu_id parameter at /modules/students/Student.php. Opensis after 9.1 Fix from $1,9502025-04-02 HIGH 7.5 CVE-2025-22925 OS4ED openSIS v7.0 to v9.1 was discovered to contain a SQL injection vulnerability via the table parameter at /attendance/AttendanceCodes.php. The re… Opensis after 9.1 Fix from $1,9502025-04-02 CRITICAL 9.8 CVE-2025-29085EPSS 28% SQL injection vulnerability in vipshop Saturn v.3.5.1 and before allows a remote attacker to execute arbitrary code via /console/dashboard/executorCo… Mitigation only Fix from $2,3002025-04-02 HIGH 8.8 CVE-2024-36465EPSS 26% A low privilege (regular) Zabbix user with API access can use SQL injection vulnerability in include/classes/api/CApiService.php to execute arbitrary… Zabbix 7.2.2+ Fix from $1,9502025-04-02 CRITICAL 9.3 CVE-2025-31579 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in EXEIdeas International WP AutoKeyword wp-autoke… Mitigation only Fix from $2,3002025-04-01 HIGH 8.5 CVE-2025-31619 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in marcoingraiti Actionwear products sync actionwe… Mitigation only Fix from $1,9502025-04-01 HIGH 8.5 CVE-2025-31561 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in CodeSolz Ultimate Push Notifications ultimate-p… Mitigation only Fix from $1,9502025-04-01 HIGH 8.5 CVE-2025-31564 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in aitool Ai Auto Tool Content Writing Assistant (… Mitigation only Fix from $1,9502025-04-01 CRITICAL 9.3 CVE-2025-31534 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in shopperdotcom Shopper shopper allows SQL Inject… Mitigation only Fix from $2,3002025-04-01 CRITICAL 9.3 CVE-2025-31551 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Salesmate.io Salesmate Add-On for Gravity Forms… Mitigation only Fix from $2,3002025-04-01 CRITICAL 9.3 CVE-2025-31552 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in davidfcarr RSVPMarker rsvpmaker allows SQL Inj… Mitigation only Fix from $2,3002025-04-01 CRITICAL 9.3 CVE-2025-31553 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPFactory Advanced WooCommerce Product Sales Re… Mitigation only Fix from $2,3002025-04-01 CRITICAL 9.3 CVE-2025-31531 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in click5 History Log by click5 history-log-by-cli… Mitigation only Fix from $2,3002025-04-01 HIGH 8.5 CVE-2025-31089 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Fahad Mahmood Order Splitter for WooCommerce wo… Mitigation only Fix from $1,9502025-04-01 CRITICAL 9.3 CVE-2025-30807 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Martin Nguyen Next-Cart Store to WooCommerce Mi… Mitigation only Fix from $2,3002025-04-01 CRITICAL 9.3 CVE-2025-3096 Clinic’s Patient Management System versions 2.0 suffers from a SQL injection vulnerability in the login page. Mitigation only Fix from $2,3002025-04-01 MEDIUM 6.5 CVE-2025-29208 CodeZips Gym Management System v1.0 is vulnerable to SQL injection in the name parameter within /dashboard/admin/deleteroutine.php. Gym Management System No fix yet Fix from $1,6002025-04-01 HIGH 7.6 CVE-2025-31910 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in reputeinfosystems BookingPress bookingpress-app… Bookingpress 1.1.38+ Fix from $1,9502025-04-01 CRITICAL 9.3 CVE-2025-30971 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Xavi Ivars XV Random Quotes xv-random-quotes al… Mitigation only Fix from $2,3002025-04-01 HIGH 8.5 CVE-2025-31024 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in randyjensen RJ Quickcharts rj-quickcharts allow… Mitigation only Fix from $1,9502025-04-01