Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
CRITICAL 9.8 CVE-2018-25204 Library CMS 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to bypass authentication by injecting SQL code through … Library Cms Mitigation only Fix from $2,3002026-03-26 HIGH 8.2 CVE-2018-25205 ASP.NET jVideo Kit 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to inject SQL commands through the 'query' param… No fix yet Fix from $1,9502026-03-26 HIGH 8.2 CVE-2018-25206 KomSeo Cart 1.3 contains an SQL injection vulnerability that allows attackers to inject SQL commands through the 'my_item_search' parameter in edit.p… No fix yet Fix from $1,9502026-03-26 HIGH 7.1 CVE-2018-25207 Online Quiz Maker 1.0 contains SQL injection vulnerabilities in the catid and usern parameters that allow authenticated attackers to execute arbitrar… No fix yet Fix from $1,9502026-03-26 CRITICAL 9.8 CVE-2018-25185 Wecodex Restaurant CMS 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting … Restaurant Cms Mitigation only Fix from $2,3002026-03-26 CRITICAL 9.8 CVE-2018-25195 Wecodex Hotel CMS 1.0 contains an SQL injection vulnerability in the admin login functionality that allows unauthenticated attackers to bypass authen… Hotel Cms Mitigation only Fix from $2,3002026-03-26 CRITICAL 9.8 CVE-2018-25201 School Management System CMS 1.0 contains an SQL injection vulnerability in the admin login functionality that allows attackers to bypass authenticat… School Management System Cms Mitigation only Fix from $2,3002026-03-26 HIGH 8.2 CVE-2018-25202 SAT CFDI 3.3 contains an SQL injection vulnerability that allows attackers to manipulate database queries by injecting SQL code through the 'id' para… No fix yet Fix from $1,9502026-03-26 CRITICAL 9.8 CVE-2018-25183 Shipping System CMS 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to bypass authentication by injecting SQL code … Shipping System Cms Mitigation only Fix from $2,3002026-03-26 CRITICAL 9.8 CVE-2026-4850 A security flaw has been discovered in code-projects Simple Laundry System 1.0. Affected is an unknown function of the file /checkregisitem.php of th… Simple Laundry System Mitigation only Fix from $2,3002026-03-26 HIGH 7.3 CVE-2026-4841 A weakness has been identified in code-projects Online Food Ordering System 1.0. This affects an unknown part of the file form/cart.php of the compon… Mitigation only Fix from $1,9502026-03-26 HIGH 7.3 CVE-2026-4842 A security vulnerability has been detected in itsourcecode Online Enrollment System 1.0. This vulnerability affects unknown code of the file /sms/gra… Mitigation only Fix from $1,9502026-03-26 HIGH 7.3 CVE-2026-4844 A vulnerability was detected in code-projects Online Food Ordering System 1.0. This issue affects some unknown processing of the file /admin.php of t… Mitigation only Fix from $1,9502026-03-26 HIGH 7.3 CVE-2026-4839 A vulnerability has been found in SourceCodester Food Ordering System 1.0. This affects an unknown function of the file /purchase.php of the componen… Mitigation only Fix from $1,9502026-03-26 HIGH 7.3 CVE-2026-4838 A flaw has been found in SourceCodester Malawi Online Market 1.0. The impacted element is an unknown function of the file /display.php. Executing a m… Mitigation only Fix from $1,9502026-03-26 MEDIUM 6.3 CVE-2026-4836 A vulnerability was detected in code-projects Accounting System 1.0. The affected element is an unknown function of the file /my_account/delete.php. … Mitigation only Fix from $1,6002026-03-26 HIGH 8.8 CVE-2026-4826 A vulnerability was determined in SourceCodester Sales and Inventory System 1.0. This vulnerability affects unknown code of the file /update_stock.ph… Sales And Inventory System No fix yet Fix from $1,9502026-03-26 HIGH 7.2 CVE-2026-33914 OpenEMR is a free and open source electronic health records and medical practice management application. Prior to version 8.0.0.3, the PostCalendar m… Openemr 8.0.0.3+ Fix from $1,9502026-03-26 HIGH 8.8 CVE-2026-33917 OpenEMR is a free and open source electronic health records and medical practice management application. Versions prior to 8.0.0.3 contais a SQL inje… Openemr 8.0.0.3+ Fix from $1,9502026-03-26 MEDIUM 5.9 CVE-2026-33909 OpenEMR is a free and open source electronic health records and medical practice management application. Prior to version 8.0.0.3, several variables … Openemr 8.0.0.3+ Fix from $1,6002026-03-25 HIGH 8.8 CVE-2026-33910 OpenEMR is a free and open source electronic health records and medical practice management application. Versions up to and including 8.0.0.2 contain… Openemr 8.0.0.3+ Fix from $1,9502026-03-25 MEDIUM 6.5 CVE-2026-4825 A vulnerability was found in SourceCodester Sales and Inventory System 1.0. This affects an unknown part of the file /update_sales.php of the compone… Sales And Inventory System No fix yet Fix from $1,6002026-03-25 HIGH 8.8 CVE-2026-29187 OpenEMR is a free and open source electronic health records and medical practice management application. Prior to version 8.0.0.3, a Blind SQL Inject… Openemr 8.0.0.3+ Fix from $1,9502026-03-25 HIGH 8.8 CVE-2026-33660 n8n is an open source workflow automation platform. Prior to versions 2.14.1, 2.13.3, and 1.123.26, an authenticated user with permission to create o… N8n 1.123.27 / 2.13.3+ Fix from $1,9502026-03-25 HIGH 8.8 CVE-2026-33713 n8n is an open source workflow automation platform. Prior to versions 2.14.1, 2.13.3, and 1.123.26, an authenticated user with permission to create o… N8n 1.123.26 / 2.13.3+ Fix from $1,9502026-03-25 HIGH 8.5 CVE-2026-32534 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in JoomSky JS Help Desk js-support-ticket allows B… Mitigation only Fix from $1,9502026-03-25 CRITICAL 9.3 CVE-2026-32539 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in PublishPress PublishPress Revisions revisionary… Mitigation only Fix from $2,3002026-03-25 HIGH 8.5 CVE-2026-32516 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in kamleshyadav Miraculous Core Plugin miraculousc… Mitigation only Fix from $1,9502026-03-25 CRITICAL 9.3 CVE-2026-32499 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in QuantumCloud ChatBot chatbot allows Blind SQL I… Mitigation only Fix from $2,3002026-03-25 CRITICAL 9.3 CVE-2026-31920 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Devteam HaywoodTech Product Rearrange for WooCo… Mitigation only Fix from $2,3002026-03-25