Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
CRITICAL 9.8 CVE-2026-26709 code-projects Simple Gym Management System v1.0 is vulnerable to SQL Injection in /gym/trainer_search.php. Simple Gym Management System Mitigation only Fix from $2,3002026-03-02 CRITICAL 9.8 CVE-2026-26710 code-projects Simple Food Order System v1.0 is vulnerable to SQL Injection in /food/routers/edit-orders.php. Simple Food Order System Mitigation only Fix from $2,3002026-03-02 CRITICAL 9.8 CVE-2026-26711 code-projects Simple Food Order System v1.0 is vulnerable to SQL Injection in /food/view-ticket.php. Simple Food Order System Mitigation only Fix from $2,3002026-03-02 HIGH 8.4 CVE-2025-48650 In multiple locations, there is a possible information disclosure due to SQL injection. This could lead to local escalation of privilege with no addi… Android Mitigation only Fix from $1,9502026-03-02 HIGH 7.5 CVE-2026-3180 The Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe plugin for WordPress is vulnerable to blind SQL Injection via the ‘cgLos… Mitigation only Fix from $1,9502026-03-02 CRITICAL 9.8 CVE-2026-26704 sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/view_category.php. Pharmacy Point Of Sale System Mitigation only Fix from $2,3002026-03-02 CRITICAL 9.8 CVE-2026-26705 sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/view_product.php. Pharmacy Point Of Sale System Mitigation only Fix from $2,3002026-03-02 CRITICAL 9.8 CVE-2026-26706 sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/view_receipt.php. Pharmacy Point Of Sale System Mitigation only Fix from $2,3002026-03-02 CRITICAL 9.8 CVE-2026-26707 sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/view_supplier.php. Pharmacy Point Of Sale System Mitigation only Fix from $2,3002026-03-02 HIGH 8.8 CVE-2026-28399 NocoDB is software for building databases as spreadsheets. Prior to version 0.301.3, an authenticated user with Creator role can inject arbitrary SQL… Nocodb 0.301.3+ Fix from $1,9502026-03-02 CRITICAL 9.8 CVE-2026-26700 sourcecodester Personnel Property Equipment System v1.0 is vulnerable to SQL Injection in /ppes/admin/edit_employee.php. Personnel Property Equipment System Mitigation only Fix from $2,3002026-03-02 CRITICAL 9.8 CVE-2026-26708 sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/manage_user.php. Pharmacy Point Of Sale System Mitigation only Fix from $2,3002026-03-02 CRITICAL 9.8 CVE-2026-26701 sourcecodester Personnel Property Equipment System v1.0 is vulnerable to SQL Injection in /ppes/admin/edit_tecnical_user.php. Personnel Property Equipment System Mitigation only Fix from $2,3002026-03-02 CRITICAL 9.8 CVE-2026-26694 code-projects Simple Student Alumni System v1.0 is vulnerale to SQL Injection in /TracerStudy/modal_view.php. Simple Student Alumni System Mitigation only Fix from $2,3002026-03-02 CRITICAL 9.8 CVE-2026-26695 code-projects Simple Student Alumni System v1.0 is vulnerable to SQL Injection in /TracerStudy/recordstudent_edit.php. Simple Student Alumni System Mitigation only Fix from $2,3002026-03-02 CRITICAL 9.8 CVE-2026-26696 code-projects Simple Student Alumni System v1.0 is vulnerable to SQL Injection in /TracerStudy/recordteacher_edit.php. Simple Student Alumni System Mitigation only Fix from $2,3002026-03-02 CRITICAL 9.8 CVE-2026-26702 sourcecodester Personnel Property Equipment System v1.0 is vulnerable to SQL Injection in /ppes/admin/myitem_reuse.php. Personnel Property Equipment System Mitigation only Fix from $2,3002026-03-02 CRITICAL 9.8 CVE-2026-26703 sourcecodester Personnel Property Equipment System v1.0 is vulnerable to SQL Injection in /ppes/admin/advance_search.php. Personnel Property Equipment System Mitigation only Fix from $2,3002026-03-02 HIGH 7.2 CVE-2025-50188 Chamilo is a learning management system. Prior to version 1.11.30, the application performs insufficient validation of data coming from the user from… Chamilo Lms 1.11.30+ Fix from $1,9502026-03-02 HIGH 8.8 CVE-2025-50189 Chamilo is a learning management system. Prior to version 1.11.30, the application performs insufficient validation of data coming from the user from… Chamilo Lms 1.11.30+ Fix from $1,9502026-03-02 CRITICAL 9.8 CVE-2025-50190 Chamilo is a learning management system. Prior to version 1.11.30, there is an error-based SQL Injection via the GET openid.assoc_handle parameter wi… Chamilo Lms 1.11.30+ Fix from $2,3002026-03-02 HIGH 7.2 CVE-2025-50191 Chamilo is a learning management system. Prior to version 1.11.30, there is an error-based SQL Injection via POST userFile with the /main/exercise/ho… Chamilo Lms 1.11.30+ Fix from $1,9502026-03-02 CRITICAL 9.8 CVE-2025-50192 Chamilo is a learning management system. Prior to version 1.11.30, there is a time-based SQL Injection in found in /main/webservices/registration.soa… Chamilo Lms 1.11.30+ Fix from $2,3002026-03-02 CRITICAL 9.3 CVE-2025-12462 A Blind SQL injection vulnerability has been identified in DobryCMS.  A remote unauthenticated attacker is able to inject SQL syntax into URL path in… Mitigation only Fix from $2,3002026-03-02 MEDIUM 6.9 CVE-2025-30062 In the "CheckUnitCodeAndKey.pl" service, the "validateOrgUnit" function is vulnerable to SQL injection. Mitigation only Fix from $1,6002026-03-02 HIGH 8.8 CVE-2025-10350 SQL Injection vulnerability in "imageserver" module when processing C-FIND queries in CGM NETRAAD software allows attacker connected to PACS gaining … Mitigation only Fix from $1,9502026-03-02 CRITICAL 9.3 CVE-2026-2584 A critical SQL Injection (SQLi) vulnerability has been identified in the authentication module of the system. An unauthenticated, remote attacker (AV… Mitigation only Fix from $2,3002026-03-02 CRITICAL 9.8 CVE-2026-3413 A flaw has been found in itsourcecode University Management System 1.0. This vulnerability affects unknown code of the file /admin_single_student.php… University Management System Mitigation only Fix from $2,3002026-03-02 CRITICAL 9.8 CVE-2026-3410 A weakness has been identified in itsourcecode Society Management System 1.0. Affected by this vulnerability is an unknown functionality of the file … Society Management System Mitigation only Fix from $2,3002026-03-02 CRITICAL 9.8 CVE-2026-3411 A security vulnerability has been detected in itsourcecode University Management System 1.0. Affected by this issue is some unknown functionality of … University Management System Mitigation only Fix from $2,3002026-03-02