Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
HIGH 7.2 CVE-2025-15169 A weakness has been identified in BiggiDroid Simple PHP CMS 1.0. Affected by this issue is some unknown functionality of the file /admin/editsite.php… Simple Php Cms No fix yet Fix from $1,9502025-12-29 CRITICAL 9.8 CVE-2025-15168 A vulnerability was identified in itsourcecode Student Management System 1.0. Affected is an unknown function of the file /statistical.php. Such mani… Student Management System Mitigation only Fix from $2,3002025-12-29 CRITICAL 9.8 CVE-2025-15167 A vulnerability was determined in itsourcecode Online Cake Ordering System 1.0. This impacts an unknown function of the file /detailtransac.php. This… Online Cake Ordering System Mitigation only Fix from $2,3002025-12-29 CRITICAL 9.8 CVE-2025-15166 A vulnerability was found in itsourcecode Online Cake Ordering System 1.0. This affects an unknown function of the file /updatesupplier.php?action=ed… Online Cake Ordering System Mitigation only Fix from $2,3002025-12-29 CRITICAL 9.8 CVE-2025-15165 A vulnerability has been found in itsourcecode Online Cake Ordering System 1.0. The impacted element is an unknown function of the file /updatecustom… Online Cake Ordering System Mitigation only Fix from $2,3002025-12-29 HIGH 7.2 CVE-2025-15143 A security flaw has been discovered in EyouCMS up to 1.7.6. The affected element is an unknown function of the file /application/admin/logic/Filemana… Eyoucms after 1.7.6 Fix from $1,9502025-12-28 HIGH 7.3 CVE-2025-15142 A vulnerability was identified in 9786 phpok3w up to 901d96a06809fb28b17f3a4362c59e70411c933c. Impacted is an unknown function of the file show.php. … Mitigation only Fix from $1,9502025-12-28 HIGH 7.3 CVE-2025-15140 A vulnerability was found in saiftheboss7 onlinemcqexam up to 0e56806132971e49721db3ef01868098c7b42ada. This vulnerability affects unknown code of th… Mitigation only Fix from $1,9502025-12-28 CRITICAL 9.8 CVE-2025-15127 A security vulnerability has been detected in FantasticLBP Hotels_Server up to 67b44df162fab26df209bd5d5d542875fcbec1d0. Affected by this issue is so… Hotels Server after 2019-03-23 Fix from $2,3002025-12-28 CRITICAL 9.8 CVE-2024-44065 Time-based blind SQL Injection vulnerability in Cloudlog v2.6.15 at the endpoint /index.php/logbookadvanced/search in the qsoresults parameter. Cloudlog Mitigation only Fix from $2,3002025-12-26 MEDIUM 6.5 CVE-2025-66947 SQL injection vulnerability in krishanmuraiji SMS v.1.0, within the /studentms/admin/edit-class-detail.php via the editid GET parameter. An attacker … Student Management System No fix yet Fix from $1,6002025-12-26 MEDIUM 6.3 CVE-2025-15088 A vulnerability was detected in ketr JEPaaS up to 7.2.8. Affected by this vulnerability is the function postilService.loadPostils of the file /je/pos… Mitigation only Fix from $1,6002025-12-25 CRITICAL 9.8 CVE-2025-15078 A vulnerability was detected in itsourcecode Student Management System 1.0. The impacted element is an unknown function of the file /list_report.php.… Student Management System Mitigation only Fix from $2,3002025-12-25 CRITICAL 9.8 CVE-2025-15077 A security vulnerability has been detected in itsourcecode Student Management System 1.0. The affected element is an unknown function of the file /fo… Student Management System Mitigation only Fix from $2,3002025-12-25 CRITICAL 9.8 CVE-2025-15075 A security flaw has been discovered in itsourcecode Student Management System 1.0. This issue affects some unknown processing of the file /student_p.… Student Management System Mitigation only Fix from $2,3002025-12-25 CRITICAL 9.8 CVE-2025-15074 A vulnerability was identified in itsourcecode Online Frozen Foods Ordering System 1.0. This vulnerability affects unknown code of the file /customer… Online Frozen Foods Ordering System Mitigation only Fix from $2,3002025-12-25 CRITICAL 9.8 CVE-2025-15073 A vulnerability was determined in itsourcecode Online Frozen Foods Ordering System 1.0. This affects an unknown part of the file /contact_us.php. Thi… Online Frozen Foods Ordering System Mitigation only Fix from $2,3002025-12-24 MEDIUM 5.3 CVE-2025-68914 Riello UPS NetMan 208 Application before 1.12 allows cgi-bin/login.cgi username SQL Injection. For example, an attacker can delete the LOGINFAILEDTAB… Netman 208 1.12+ Fix from $1,6002025-12-24 HIGH 8.2 CVE-2018-25128 SOCA Access Control System 180612 contains multiple SQL injection vulnerabilities that allow attackers to manipulate database queries through unvalid… No fix yet Fix from $1,9502025-12-24 MEDIUM 6.5 CVE-2024-39037 MyNET up to v26.08.316 was discovered to contain an Unauthenticated SQL Injection vulnerability via the intmenu parameter. Mynet after 26.08.316 Fix from $1,6002025-12-24 HIGH 7.6 CVE-2025-68590 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in CRM Perks Integration for Contact Form 7 HubSpo… Mitigation only Fix from $1,9502025-12-24 HIGH 7.6 CVE-2025-68570 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in captivateaudio Captivate Sync captivatesync-tra… Mitigation only Fix from $1,9502025-12-24 HIGH 8.5 CVE-2025-68519 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in BeRocket Brands for WooCommerce brands-for-wooc… Mitigation only Fix from $1,9502025-12-24 HIGH 7.6 CVE-2025-68496 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Syed Balkhi User Feedback userfeedback-lite all… Mitigation only Fix from $1,9502025-12-24 HIGH 8.6 CVE-2023-36525 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPJobBoard allows Blind SQL Injection.This issu… Mitigation only Fix from $1,9502025-12-24 HIGH 7.3 CVE-2025-15053 A flaw has been found in code-projects Student Information System 1.0. This issue affects some unknown processing of the file /searchresults.php. Exe… Student Information System No fix yet Fix from $1,9502025-12-24 CRITICAL 9.8 CVE-2025-15049 A vulnerability was identified in code-projects Online Farm System 1.0. Affected is an unknown function of the file /addProduct.php. The manipulation… Online Farm System Mitigation only Fix from $2,3002025-12-23 HIGH 7.5 CVE-2023-53982 PMB 7.4.6 contains a SQL injection vulnerability in the storage parameter of the ajax.php endpoint that allows remote attackers to manipulate databas… Pmb No fix yet Fix from $1,9502025-12-23 CRITICAL 9.8 CVE-2025-65354 Improper input handling in /Grocery/search_products_itname.php inPuneethReddyHC event-management 1.0 permits SQL injection via the sitem_name POST pa… Event Management Mitigation only Fix from $2,3002025-12-23 HIGH 7.1 CVE-2021-47720 Orangescrum 1.8.0 contains an authenticated SQL injection vulnerability that allows authorized users to manipulate database queries through multiple … Orangescrum No fix yet Fix from $1,9502025-12-23