Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
HIGH 7.3 CVE-2026-10184 A security flaw has been discovered in SourceCodester Hospitals Patient Records Management System 1.0. This impacts an unknown function of the file /… Mitigation only Fix from $1,9502026-05-31 HIGH 7.3 CVE-2026-10185 A weakness has been identified in SourceCodester Hospitals Patient Records Management System 1.0. Affected is an unknown function of the file /classe… Mitigation only Fix from $1,9502026-05-31 HIGH 8.5 CVE-2026-49489 OpenCATS through 0.9.7.4 contains a sql injection vulnerability in the sortDirection parameter of the DataGrid component that allows authenticated us… No fix yet Fix from $1,9502026-05-31 HIGH 8.1 CVE-2026-49490 OpenCATS from version 0.9.1a contains an SQL injection vulnerability in DataGrid filter handling that allows authenticated attackers to inject SQL th… Mitigation only Fix from $1,9502026-05-31 HIGH 7.3 CVE-2026-10178 A vulnerability was detected in code-projects Online Music Site 1.0. This vulnerability affects unknown code of the file /Administrator/PHP/AdminEdit… Mitigation only Fix from $1,9502026-05-31 MEDIUM 6.3 CVE-2026-10176 A weakness has been identified in Aider-AI Aider 0.86.3. Affected by this issue is some unknown functionality of the component Code Generation Workfl… Mitigation only Fix from $1,6002026-05-31 MEDIUM 6.3 CVE-2026-10170 A flaw has been found in code-projects Visitor Management System 1.0. Affected by this issue is some unknown functionality of the file /vms/php/phone… Mitigation only Fix from $1,6002026-05-31 HIGH 8.2 CVE-2018-25420 AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malic… No fix yet Fix from $1,9502026-05-30 HIGH 8.2 CVE-2018-25422 MOGG web simulator Script contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL commands by injectin… No fix yet Fix from $1,9502026-05-30 HIGH 8.2 CVE-2018-25424 Gate Pass Management System 2.1 contains an SQL injection vulnerability that allows unauthenticated attackers to bypass authentication by injecting S… No fix yet Fix from $1,9502026-05-30 HIGH 8.2 CVE-2018-25425 Yot CMS 3.3.1 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious c… No fix yet Fix from $1,9502026-05-30 HIGH 8.2 CVE-2018-25413 AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malic… No fix yet Fix from $1,9502026-05-30 HIGH 8.2 CVE-2018-25414 AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malic… No fix yet Fix from $1,9502026-05-30 HIGH 8.2 CVE-2018-25415 AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malic… No fix yet Fix from $1,9502026-05-30 HIGH 8.2 CVE-2018-25416 AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malic… No fix yet Fix from $1,9502026-05-30 HIGH 8.2 CVE-2018-25417 AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malic… No fix yet Fix from $1,9502026-05-30 HIGH 8.2 CVE-2018-25418 AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malic… No fix yet Fix from $1,9502026-05-30 HIGH 8.2 CVE-2018-25419 AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malic… No fix yet Fix from $1,9502026-05-30 HIGH 8.2 CVE-2018-25407 eNdonesia Portal 8.7 contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to execute arbitrary SQL queries by injecti… No fix yet Fix from $1,9502026-05-30 HIGH 7.1 CVE-2018-25410 SIM-PKH 2.4.1 contains an SQL injection vulnerability that allows authenticated attackers to execute arbitrary SQL queries by injecting malicious cod… No fix yet Fix from $1,9502026-05-30 HIGH 8.2 CVE-2018-25411 MGB OpenSource Guestbook 0.7.0.2 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by in… No fix yet Fix from $1,9502026-05-30 HIGH 8.2 CVE-2018-25406 eNdonesia Portal 8.7 contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to execute arbitrary SQL queries by injecti… No fix yet Fix from $1,9502026-05-30 HIGH 8.2 CVE-2018-25405 eNdonesia Portal 8.7 contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to execute arbitrary SQL queries by injecti… No fix yet Fix from $1,9502026-05-30 HIGH 7.5 CVE-2026-9757 The GEO my WP plugin for WordPress is vulnerable to SQL Injection via the 'swlatlng' and 'nelatlng' parameters in all versions up to, and including, … Mitigation only Fix from $1,9502026-05-30 HIGH 7.3 CVE-2026-10111 A flaw has been found in sambitraj STUDENT-MANAGEMENT-SYSTEM 1.0. This impacts an unknown function of the component Login Page. Executing a manipulat… Mitigation only Fix from $1,9502026-05-30 HIGH 7.3 CVE-2026-10110 A vulnerability was detected in code-projects Student Details Management System 1.0. This affects an unknown function of the file /index.php. Perform… Mitigation only Fix from $1,9502026-05-30 HIGH 8.3 CVE-2026-10105 agno 2.6.5 contains a SQL injection vulnerability in the ClickHouse vector database backend that allows attackers to inject arbitrary SQL expressions… Patch available Fix from $1,9502026-05-29 MEDIUM 6.5 CVE-2026-39229 Bolt CMS through 3.7.0 allows SQL Injection in the 'order' parameter of the content listing pages. An authenticated attacker with low-level privilege… Mitigation only Fix from $1,6002026-05-29 HIGH 8.2 CVE-2018-25403 The Open ISES Project 3.30A contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecti… No fix yet Fix from $1,9502026-05-29 HIGH 8.2 CVE-2018-25404 The Open ISES Project 3.30A contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecti… No fix yet Fix from $1,9502026-05-29