Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
CRITICAL 9.8 CVE-2025-1641 A vulnerability was found in Benner ModernaNet up to 1.1.0. It has been classified as critical. This affects an unknown part of the file /AGE0000700/… Modernanet 1.1.1+ Fix from $2,3002025-02-25 CRITICAL 9.8 CVE-2025-22974 SQL Injection vulnerability in SeaCMS v.13.2 and before allows a remote attacker to execute arbitrary code via the DoTranExecSql parameter in the pho… Seacms after 13.2 Fix from $2,3002025-02-24 MEDIUM 5.4 CVE-2024-53543 NovaCHRON Zeitsysteme GmbH & Co. KG Smart Time Plus v8.x to v8.6 was discovered to contain a SQL injection vulnerability via the addProject method in… Mitigation only Fix from $1,6002025-02-24 CRITICAL 9.8 CVE-2024-53544 NovaCHRON Zeitsysteme GmbH & Co. KG Smart Time Plus v8.x to v8.6 was discovered to contain a SQL injection vulnerability via the getCookieNames metho… Mitigation only Fix from $2,3002025-02-24 CRITICAL 9.8 CVE-2025-25513 Seacms <=13.3 is vulnerable to SQL Injection in admin_members.php. Seacms after 13.3 Fix from $2,3002025-02-24 CRITICAL 9.8 CVE-2025-26533 An SQL injection risk was identified in the module list filter within course search. Moodle 4.1.16 / 4.3.10+ Fix from $2,3002025-02-24 HIGH 8.8 CVE-2025-27133 WeGIA is a Web manager for charitable institutions. A SQL Injection vulnerability was discovered in the WeGIA application prior to version 3.2.15 at … Wegia 3.2.15+ Fix from $1,9502025-02-24 CRITICAL 9.8 CVE-2024-54820 XOne Web Monitor v02.10.2024.530 framework 1.0.4.9 was discovered to contain a SQL injection vulnerability in the login page. This vulnerability allo… Mitigation only Fix from $2,3002025-02-24 HIGH 7.2 CVE-2025-26200 SQL injection in SLIMS v.9.6.1 allows a remote attacker to escalate privileges via the month parameter in the visitor_report_day.php component. Senayan Library Management System No fix yet Fix from $1,9502025-02-24 HIGH 8.5 CVE-2025-27312 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Jenst WP Sitemap wp-sitemap allows SQL Injectio… Mitigation only Fix from $1,9502025-02-24 HIGH 7.6 CVE-2025-27297 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in guelben Bravo Search & Replace bravo-search-and… Mitigation only Fix from $1,9502025-02-24 HIGH 8.8 CVE-2024-12916 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Agito Computer Life4All allows SQL Injection. … Mitigation only Fix from $1,9502025-02-24 HIGH 8.8 CVE-2024-12918 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Agito Computer Health4All allows SQL Injection.… Mitigation only Fix from $1,9502025-02-24 MEDIUM 6.5 CVE-2025-24490 Mattermost versions 10.4.x <= 10.4.1, 9.11.x <= 9.11.7, 10.3.x <= 10.3.2, 10.2.x <= 10.2.2 fail to use prepared statements in the SQL query of boards… Mattermost Server 9.11.8 / 10.2.3+ Fix from $1,6002025-02-24 CRITICAL 9.8 CVE-2025-1596 A vulnerability was found in SourceCodester Best Church Management Software 1.0 and classified as critical. This issue affects some unknown processin… Best Church Management Software No fix yet Fix from $2,3002025-02-23 CRITICAL 9.8 CVE-2025-1583 A vulnerability classified as critical has been found in PHPGurukul Online Nurse Hiring System 1.0. This affects an unknown part of the file /admin/s… Online Nurse Hiring System Mitigation only Fix from $2,3002025-02-23 CRITICAL 9.8 CVE-2025-1582 A vulnerability was found in PHPGurukul Online Nurse Hiring System 1.0. It has been rated as critical. Affected by this issue is some unknown functio… Online Nurse Hiring System Mitigation only Fix from $2,3002025-02-23 CRITICAL 9.8 CVE-2025-1581 A vulnerability was found in PHPGurukul Online Nurse Hiring System 1.0. It has been declared as critical. Affected by this vulnerability is an unknow… Online Nurse Hiring System Mitigation only Fix from $2,3002025-02-23 CRITICAL 9.8 CVE-2025-1580 A vulnerability was found in PHPGurukul Nipah Virus Testing Management System 1.0. It has been classified as critical. Affected is an unknown functio… Nipah Virus Testing Management System Mitigation only Fix from $2,3002025-02-23 HIGH 7.5 CVE-2025-1578 A vulnerability, which was classified as critical, was found in PHPGurukul/Campcodes Online Shopping Portal 2.1. This affects an unknown part of the … Online Shopping Portal No fix yet Fix from $1,9502025-02-23 CRITICAL 9.8 CVE-2025-1576 A vulnerability classified as critical was found in code-projects Real Estate Property Management System 1.0. Affected by this vulnerability is an un… Real Estate Property Management System No fix yet Fix from $2,3002025-02-23 HIGH 7.5 CVE-2024-13474 The LTL Freight Quotes – Purolator Edition plugin for WordPress is vulnerable to SQL Injection via the 'dropship_edit_id' and 'edit_id' parameters in… No fix yet Fix from $1,9502025-02-22 MEDIUM 5.1 CVE-2020-19248 SQL Injection vulnerability in PbootCMS 1.4.1 in parsing if statements in templates, resulting in a malicious user's ability to contaminate template … Pbootcms after 1.4.1 Fix from $1,6002025-02-21 HIGH 7.2 CVE-2025-25876 A vulnerability was found in ITSourcecode Simple ChatBox up to 1.0. This vulnerability affects unknown code of the file /delete.php. The attack can u… Simple Chatbox No fix yet Fix from $1,9502025-02-21 MEDIUM 6.4 CVE-2025-25875 A vulnerability was found in ITSourcecode Simple ChatBox up to 1.0. This vulnerability affects unknown code of the file /message.php. The attack can … Simple Chatbox No fix yet Fix from $1,6002025-02-21 MEDIUM 6.3 CVE-2025-1544 A vulnerability, which was classified as critical, was found in dingfanzu CMS up to 20250210. Affected is an unknown function of the file /ajax/loadS… Mitigation only Fix from $1,6002025-02-21 MEDIUM 6.3 CVE-2025-1537 A vulnerability was found in Harpia DiagSystem 12. It has been rated as critical. This issue affects some unknown processing of the file /diagsystem/… Mitigation only Fix from $1,6002025-02-21 CRITICAL 9.8 CVE-2025-26794EPSS 77% Exim 4.98 before 4.98.1, when SQLite hints and ETRN serialization are used, allows remote SQL injection. (Resolving SQL injection requires an update … Exim 4.98.1+ Fix from $2,3002025-02-21 MEDIUM 6.5 CVE-2024-13713 The WPExperts Square For GiveWP plugin for WordPress is vulnerable to SQL Injection via the 'post' parameter in all versions up to, and including, 1.… Givewp Square 1.3.2+ Fix from $1,6002025-02-21 HIGH 7.3 CVE-2025-1535 A vulnerability was found in Baiyi Cloud Asset Management System 8.142.100.161. It has been classified as critical. This affects an unknown part of t… Mitigation only Fix from $1,9502025-02-21