Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
CRITICAL 9.8
CVE-2026-26709
code-projects Simple Gym Management System v1.0 is vulnerable to SQL Injection in /gym/trainer_search.php.
Simple Gym Management System
Mitigation only
CRITICAL 9.8
CVE-2026-26710
code-projects Simple Food Order System v1.0 is vulnerable to SQL Injection in /food/routers/edit-orders.php.
Simple Food Order System
Mitigation only
CRITICAL 9.8
CVE-2026-26711
code-projects Simple Food Order System v1.0 is vulnerable to SQL Injection in /food/view-ticket.php.
Simple Food Order System
Mitigation only
HIGH 8.4
CVE-2025-48650
In multiple locations, there is a possible information disclosure due to SQL injection. This could lead to local escalation of privilege with no addi…
Android
Mitigation only
HIGH 7.5
CVE-2026-3180
The Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe plugin for WordPress is vulnerable to blind SQL Injection via the ‘cgLos…
Mitigation only
CRITICAL 9.8
CVE-2026-26704
sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/view_category.php.
Pharmacy Point Of Sale System
Mitigation only
CRITICAL 9.8
CVE-2026-26705
sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/view_product.php.
Pharmacy Point Of Sale System
Mitigation only
CRITICAL 9.8
CVE-2026-26706
sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/view_receipt.php.
Pharmacy Point Of Sale System
Mitigation only
CRITICAL 9.8
CVE-2026-26707
sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/view_supplier.php.
Pharmacy Point Of Sale System
Mitigation only
HIGH 8.8
CVE-2026-28399
NocoDB is software for building databases as spreadsheets. Prior to version 0.301.3, an authenticated user with Creator role can inject arbitrary SQL…
Nocodb
0.301.3+
CRITICAL 9.8
CVE-2026-26700
sourcecodester Personnel Property Equipment System v1.0 is vulnerable to SQL Injection in /ppes/admin/edit_employee.php.
Personnel Property Equipment System
Mitigation only
CRITICAL 9.8
CVE-2026-26708
sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/manage_user.php.
Pharmacy Point Of Sale System
Mitigation only
CRITICAL 9.8
CVE-2026-26701
sourcecodester Personnel Property Equipment System v1.0 is vulnerable to SQL Injection in /ppes/admin/edit_tecnical_user.php.
Personnel Property Equipment System
Mitigation only
CRITICAL 9.8
CVE-2026-26694
code-projects Simple Student Alumni System v1.0 is vulnerale to SQL Injection in /TracerStudy/modal_view.php.
Simple Student Alumni System
Mitigation only
CRITICAL 9.8
CVE-2026-26695
code-projects Simple Student Alumni System v1.0 is vulnerable to SQL Injection in /TracerStudy/recordstudent_edit.php.
Simple Student Alumni System
Mitigation only
CRITICAL 9.8
CVE-2026-26696
code-projects Simple Student Alumni System v1.0 is vulnerable to SQL Injection in /TracerStudy/recordteacher_edit.php.
Simple Student Alumni System
Mitigation only
CRITICAL 9.8
CVE-2026-26702
sourcecodester Personnel Property Equipment System v1.0 is vulnerable to SQL Injection in /ppes/admin/myitem_reuse.php.
Personnel Property Equipment System
Mitigation only
CRITICAL 9.8
CVE-2026-26703
sourcecodester Personnel Property Equipment System v1.0 is vulnerable to SQL Injection in /ppes/admin/advance_search.php.
Personnel Property Equipment System
Mitigation only
HIGH 7.2
CVE-2025-50188
Chamilo is a learning management system. Prior to version 1.11.30, the application performs insufficient validation of data coming from the user from…
Chamilo Lms
1.11.30+
HIGH 8.8
CVE-2025-50189
Chamilo is a learning management system. Prior to version 1.11.30, the application performs insufficient validation of data coming from the user from…
Chamilo Lms
1.11.30+
CRITICAL 9.8
CVE-2025-50190
Chamilo is a learning management system. Prior to version 1.11.30, there is an error-based SQL Injection via the GET openid.assoc_handle parameter wi…
Chamilo Lms
1.11.30+
HIGH 7.2
CVE-2025-50191
Chamilo is a learning management system. Prior to version 1.11.30, there is an error-based SQL Injection via POST userFile with the /main/exercise/ho…
Chamilo Lms
1.11.30+
CRITICAL 9.8
CVE-2025-50192
Chamilo is a learning management system. Prior to version 1.11.30, there is a time-based SQL Injection in found in /main/webservices/registration.soa…
Chamilo Lms
1.11.30+
CRITICAL 9.3
CVE-2025-12462
A Blind SQL injection vulnerability has been identified in DobryCMS. A remote unauthenticated attacker is able to inject SQL syntax into URL path in…
Mitigation only
MEDIUM 6.9
CVE-2025-30062
In the "CheckUnitCodeAndKey.pl" service, the "validateOrgUnit" function is vulnerable to SQL injection.
Mitigation only
HIGH 8.8
CVE-2025-10350
SQL Injection vulnerability in "imageserver" module when processing C-FIND queries in CGM NETRAAD software allows attacker connected to PACS gaining …
Mitigation only
CRITICAL 9.3
CVE-2026-2584
A critical SQL Injection (SQLi) vulnerability has been identified in the authentication module of the system. An unauthenticated, remote attacker (AV…
Mitigation only
CRITICAL 9.8
CVE-2026-3413
A flaw has been found in itsourcecode University Management System 1.0. This vulnerability affects unknown code of the file /admin_single_student.php…
University Management System
Mitigation only
CRITICAL 9.8
CVE-2026-3410
A weakness has been identified in itsourcecode Society Management System 1.0. Affected by this vulnerability is an unknown functionality of the file …
Society Management System
Mitigation only
CRITICAL 9.8
CVE-2026-3411
A security vulnerability has been detected in itsourcecode University Management System 1.0. Affected by this issue is some unknown functionality of …
University Management System
Mitigation only