Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
CRITICAL 9.8 CVE-2026-2865 A vulnerability was found in itsourcecode Agri-Trading Online Shopping System 1.0. This impacts an unknown function of the file admin/productcontroll… Agri Trading Online Shopping System Mitigation only Fix from $2,3002026-02-21 HIGH 7.5 CVE-2019-25438 LabCollector 5.423 contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to execute arbitrary SQL commands by injectin… Labcollector No fix yet Fix from $1,9502026-02-20 HIGH 8.2 CVE-2019-25431 delpino73 Blue-Smiley-Organizer 1.32 contains an SQL injection vulnerability in the datetime parameter that allows unauthenticated attackers to manip… No fix yet Fix from $1,9502026-02-20 HIGH 7.5 CVE-2019-25432 Part-DB 0.4 contains an authentication bypass vulnerability that allows unauthenticated attackers to login by injecting SQL syntax into authenticatio… No fix yet Fix from $1,9502026-02-20 CRITICAL 9.1 CVE-2019-25444 Fiverr Clone Script 1.2.2 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting S… Fiverr Clone Script No fix yet Fix from $2,3002026-02-20 CRITICAL 9.8 CVE-2026-2848 A flaw has been found in SourceCodester Simple Responsive Tourism Website 1.0. Affected by this vulnerability is an unknown functionality of the file… Simple Responsive Tourism Website Mitigation only Fix from $2,3002026-02-20 MEDIUM 5.3 CVE-2026-26745 OpenSourcePOS 3.4.1 has a second order SQL Injection vulnerability in the handling of the currency_symbol configuration field. Although the input is … Open Source Point Of Sale No fix yet Fix from $1,6002026-02-20 CRITICAL 9.3 CVE-2026-24956 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Shahjada Download Manager Addons for Elementor … Mitigation only Fix from $2,3002026-02-20 HIGH 8.5 CVE-2026-24959 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in JoomSky JS Help Desk js-support-ticket allows B… Mitigation only Fix from $1,9502026-02-20 CRITICAL 9.3 CVE-2025-69337 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in don-themes Wolmart Core wolmart-core allows Bli… Mitigation only Fix from $2,3002026-02-20 CRITICAL 9.3 CVE-2025-69365 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Uroan Core uroan-core allows Blind… Mitigation only Fix from $2,3002026-02-20 CRITICAL 9.3 CVE-2025-69366 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Emerce Core emerce-core allows Bli… Mitigation only Fix from $2,3002026-02-20 CRITICAL 9.3 CVE-2025-69308 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Nestbyte Core nestbyte-core allows… Mitigation only Fix from $2,3002026-02-20 CRITICAL 9.3 CVE-2025-69309 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Saasplate Core saasplate-core allo… Mitigation only Fix from $2,3002026-02-20 CRITICAL 9.3 CVE-2025-69310 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Woodly Core woodly-core allows Bli… Mitigation only Fix from $2,3002026-02-20 CRITICAL 9.3 CVE-2025-69304 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Allmart allmart-core allows Blind … Mitigation only Fix from $2,3002026-02-20 CRITICAL 9.3 CVE-2025-69305 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Crete Core crete-core allows Blind… Mitigation only Fix from $2,3002026-02-20 CRITICAL 9.3 CVE-2025-69306 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Electio Core electio-core allows B… Mitigation only Fix from $2,3002026-02-20 CRITICAL 9.3 CVE-2025-69307 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Medinik Core medinik-core allows B… Mitigation only Fix from $2,3002026-02-20 CRITICAL 9.3 CVE-2025-69295 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Coven Core coven-core allows Blind… Mitigation only Fix from $2,3002026-02-20 HIGH 8.5 CVE-2025-67987 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ExpressTech Systems Quiz And Survey Master quiz… Mitigation only Fix from $1,9502026-02-20 CRITICAL 9.8 CVE-2025-10970 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Kolay Software Inc. Talentics allows Blind SQL … Mitigation only Fix from $2,3002026-02-20 HIGH 8.8 CVE-2026-2822 A security vulnerability has been detected in JeecgBoot up to 3.9.1. The affected element is an unknown function of the file /jeecgboot/sys/dict/load… Jeecg Boot after 3.9.1 Fix from $1,9502026-02-20 HIGH 7.3 CVE-2026-2821 A weakness has been identified in Fujian Smart Integrated Management Platform System up to 7.5. Impacted is an unknown function of the file /Module/C… No fix yet Fix from $1,9502026-02-20 HIGH 7.3 CVE-2026-2820 A security flaw has been discovered in Fujian Smart Integrated Management Platform System up to 7.5. This issue affects some unknown processing of th… No fix yet Fix from $1,9502026-02-20 HIGH 7.5 CVE-2026-26980EPSS 69% Ghost is a Node.js content management system. Versions 3.24.0 through 6.19.0 allow unauthenticated attackers to perform arbitrary reads from the data… Ghost 6.19.1+ Fix from $1,9502026-02-20 CRITICAL 9.1 CVE-2026-26988EPSS 7% LibreNMS is an auto-discovering PHP/MySQL/SNMP based network monitoring tool. Versions 25.12.0 and below contain an SQL Injection vulnerability in th… Librenms 26.2.0+ Fix from $2,3002026-02-20 HIGH 8.8 CVE-2026-26990 LibreNMS is an auto-discovering PHP/MySQL/SNMP based network monitoring tool. Versions 25.12.0 and below have a Time-Based Blind SQL Injection vulner… Librenms 26.2.0+ Fix from $1,9502026-02-20 HIGH 8.8 CVE-2026-2435 Tanium addressed a SQL injection vulnerability in Asset. Asset 1.32.179 / 1.33.269+ Fix from $1,9502026-02-20 CRITICAL 9.3 CVE-2026-2409 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Delinea Cloud Suite allows Argument Injection.T… Mitigation only Fix from $2,3002026-02-19