Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
CRITICAL 9.8 CVE-2026-2073 A vulnerability was determined in itsourcecode School Management System 1.0. This affects an unknown function of the file /ramonsys/user/index.php. E… School Management System Mitigation only Fix from $2,3002026-02-07 HIGH 8.2 CVE-2020-37163 QuickDate 1.3.2 contains a SQL injection vulnerability that allows remote attackers to manipulate database queries through the '_located' parameter i… No fix yet Fix from $1,9502026-02-07 HIGH 7.1 CVE-2020-37147 ATutor 2.2.4 contains a SQL injection vulnerability in the admin user deletion page that allows authenticated attackers to manipulate database querie… No fix yet Fix from $1,9502026-02-07 HIGH 7.1 CVE-2020-37154 eLection 2.0 contains an authenticated SQL injection vulnerability in the candidate management endpoint that allows attackers to manipulate database … No fix yet Fix from $1,9502026-02-07 HIGH 8.2 CVE-2020-37141 AMSS++ version 4.31 contains a SQL injection vulnerability in the mail module's maildetail.php script through the 'id' parameter. Attackers can manip… No fix yet Fix from $1,9502026-02-07 CRITICAL 9.8 CVE-2026-25544 Payload is a free and open source headless content management system. Prior to 3.73.0, when querying JSON or richText fields, user input was directly… Payload 3.73.0+ Fix from $2,3002026-02-06 MEDIUM 6.5 CVE-2026-24418 OpenSTAManager is an open source management software for technical assistance and invoicing. OpenSTAManager v2.9.8 and earlier contain a critical Err… Openstamanager after 2.9.8 Fix from $1,6002026-02-06 MEDIUM 6.5 CVE-2026-24416 OpenSTAManager is an open source management software for technical assistance and invoicing. OpenSTAManager v2.9.8 and earlier contain a critical Tim… Openstamanager after 2.9.8 Fix from $1,6002026-02-06 MEDIUM 6.5 CVE-2026-24417 OpenSTAManager is an open source management software for technical assistance and invoicing. OpenSTAManager v2.9.8 and earlier contain a critical Tim… Openstamanager after 2.9.8 Fix from $1,6002026-02-06 HIGH 8.8 CVE-2025-69214 OpenSTAManager is an open source management software for technical assistance and invoicing. In 2.9.8 and earlier, an SQL Injection vulnerability exi… Openstamanager after 2.9.8 Fix from $1,9502026-02-06 MEDIUM 6.5 CVE-2025-69216 OpenSTAManager is an open source management software for technical assistance and invoicing. In 2.9.8 and earlier, an authenticated SQL injection vul… Openstamanager after 2.9.8 Fix from $1,6002026-02-06 CRITICAL 9.8 CVE-2026-2060 A vulnerability was found in code-projects Simple Blood Donor Management System 1.0. Affected by this vulnerability is an unknown functionality of th… Simple Blood Donor Management System Mitigation only Fix from $2,3002026-02-06 MEDIUM 6.5 CVE-2026-24419 OpenSTAManager is an open source management software for technical assistance and invoicing. OpenSTAManager v2.9.8 and earlier contain a critical Err… Openstamanager after 2.9.8 Fix from $1,6002026-02-06 CRITICAL 9.8 CVE-2026-2059 A vulnerability has been found in SourceCodester Medical Center Portal Management System 1.0. Affected is an unknown function of the file /emp_edit1.… Medical Center Portal Management System Mitigation only Fix from $2,3002026-02-06 CRITICAL 9.8 CVE-2026-2058 A flaw has been found in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. This impacts an unknown function of … Cloudclassroom Php Project Mitigation only Fix from $2,3002026-02-06 HIGH 7.1 CVE-2019-25299 RimbaLinux AhadPOS 1.11 contains a SQL injection vulnerability in the 'alamatCustomer' parameter that allows attackers to manipulate database queries… No fix yet Fix from $1,9502026-02-06 HIGH 7.1 CVE-2019-25300 thejshen Globitek CMS 1.4 contains a SQL injection vulnerability that allows attackers to manipulate database queries through the 'id' GET parameter.… No fix yet Fix from $1,9502026-02-06 HIGH 7.1 CVE-2019-25303 TheJshen ContentManagementSystem 1.04 contains a SQL injection vulnerability that allows attackers to manipulate database queries through the 'id' GE… No fix yet Fix from $1,9502026-02-06 CRITICAL 9.1 CVE-2019-25298 html5_snmp 1.11 contains multiple SQL injection vulnerabilities that allow attackers to manipulate database queries through Router_ID and Router_IP p… Html5 Snmp No fix yet Fix from $2,3002026-02-06 CRITICAL 9.8 CVE-2026-2057 A vulnerability was detected in SourceCodester Medical Center Portal Management System 1.0. This affects an unknown function of the file /login.php. … Medical Center Portal Management System Mitigation only Fix from $2,3002026-02-06 CRITICAL 9.8 CVE-2026-2018 A flaw has been found in itsourcecode School Management System 1.0. This affects an unknown part of the file /ramonsys/settings/controller.php. This … School Management System Mitigation only Fix from $2,3002026-02-06 CRITICAL 9.8 CVE-2026-2014 A security flaw has been discovered in itsourcecode Student Management System 1.0. This impacts an unknown function of the file /ramonsys/billing/ind… School Management System Mitigation only Fix from $2,3002026-02-06 CRITICAL 9.8 CVE-2026-2013 A vulnerability was identified in itsourcecode Student Management System 1.0. This affects an unknown function of the file /ramonsys/soa/index.php. S… School Management System Mitigation only Fix from $2,3002026-02-06 CRITICAL 9.8 CVE-2026-2011 A vulnerability was found in itsourcecode Student Management System 1.0. The affected element is an unknown function of the file /ramonsys/enrollment… School Management System Mitigation only Fix from $2,3002026-02-06 CRITICAL 9.8 CVE-2026-2012 A vulnerability was determined in itsourcecode Student Management System 1.0. The impacted element is an unknown function of the file /ramonsys/facul… School Management System Mitigation only Fix from $2,3002026-02-06 CRITICAL 9.8 CVE-2026-21643 KEVEPSS 94% An improper neutralization of special elements used in an sql command ('sql injection') vulnerability in Fortinet FortiClientEMS 7.4.4 may allow an u… Forticlientems Mitigation only Fix from $2,3002026-02-06 MEDIUM 6.3 CVE-2025-15325 Tanium addressed an improper input validation vulnerability in Discover. Discover 4.10.90+ Fix from $1,6002026-02-05 HIGH 7.5 CVE-2020-37151 phpMyChat Plus 1.98 contains a SQL injection vulnerability in the deluser.php page through the pmc_username parameter that allows attackers to manipu… Phpmychat Plus No fix yet Fix from $1,9502026-02-05 HIGH 8.6 CVE-2025-13379 IBM Aspera Console 3.4.0 through 3.4.8 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could all… Aspera Console after 3.4.8 Fix from $1,9502026-02-05 MEDIUM 6.3 CVE-2025-10258 Infinera DNA is vulnerable to a time-based SQL injection vulnerability due to insufficient input validation, which may result in leaking of sensitive… Infinera Dna Mitigation only Fix from $1,6002026-02-05