Vulnerability index

Browse CVEs

6,053 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Code InjectionCWE-94 × clear
Point Of Sale System MEDIUM 6.1
CVE-2025-10063

A vulnerability was identified in itsourcecode POS Point of Sale System 1.0. This vulnerability affects unknown code of the file /inventory/main/vend…

No fix yet
Fix from $1,600 2025-09-06
Grocery Sales And Inventory System MEDIUM 6.1
CVE-2025-10032

A vulnerability was detected in Campcodes Grocery Sales and Inventory System 1.0. The affected element is an unknown function of the file /index.php.…

No fix yet
Fix from $1,600 2025-09-06
Point Of Sale System MEDIUM 6.1
CVE-2025-10029

A security flaw has been discovered in itsourcecode POS Point of Sale System 1.0. This vulnerability affects unknown code of the file /inventory/main…

No fix yet
Fix from $1,600 2025-09-06
Point Of Sale System MEDIUM 6.1
CVE-2025-10028

A vulnerability was identified in itsourcecode POS Point of Sale System 1.0. This affects an unknown part of the file /inventory/main/vendors/datatab…

No fix yet
Fix from $1,600 2025-09-06
Unclassified HIGH 7.3
CVE-2025-7366

The The REHub - Price Comparison, Multi Vendor Marketplace Wordpress Theme theme for WordPress is vulnerable to arbitrary shortcode execution in all …

Mitigation only
Fix from $1,950 2025-09-06
Roo Code CRITICAL 9.8
CVE-2025-58372

Roo Code is an AI-powered autonomous coding agent that lives in users' editors. Versions 3.25.23 and below contain a vulnerability where certain VS C…

Fix: 3.26.0+
Fix from $2,300 2025-09-05
Point Of Sale System MEDIUM 6.1
CVE-2025-10027

A vulnerability was determined in itsourcecode POS Point of Sale System 1.0. Affected by this issue is some unknown functionality of the file /invent…

No fix yet
Fix from $1,600 2025-09-05
Point Of Sale System MEDIUM 6.1
CVE-2025-10026

A vulnerability was found in itsourcecode POS Point of Sale System 1.0. Affected by this vulnerability is an unknown functionality of the file /inven…

No fix yet
Fix from $1,600 2025-09-05
Unclassified MEDIUM 6.1
CVE-2025-55305

Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. In versions below 35.7.5, 36.0.0-alpha.1 thro…

Patch available
Fix from $1,600 2025-09-04
Real Estate Management System MEDIUM 5.4
CVE-2025-9939

A security vulnerability has been detected in CodeAstro Real Estate Management System 1.0. The impacted element is an unknown function of the file /p…

Mitigation only
Fix from $1,600 2025-09-04
Real Estate Management System MEDIUM 5.4
CVE-2025-9940

A vulnerability was detected in CodeAstro Real Estate Management System 1.0. This affects an unknown function of the file /feature.php. Performing ma…

No fix yet
Fix from $1,600 2025-09-04
Jinher Oa MEDIUM 6.1
CVE-2025-9931

A vulnerability was detected in Jinher OA 1.0. Affected is an unknown function of the file /jc6/platform/sys/login!changePassWord.action of the compo…

No fix yet
Fix from $1,600 2025-09-04
Unclassified HIGH 7.2
CVE-2025-9517

The atec Debug plugin for WordPress is vulnerable to remote code execution in all versions up to, and including, 1.2.22 via the 'custom_log' paramete…

Mitigation only
Fix from $1,950 2025-09-04
Unclassified HIGH 7.2
CVE-2025-9519

The Easy Timer plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 4.2.1 via the plugin's shortcodes. T…

Mitigation only
Fix from $1,950 2025-09-04
Sales And Inventory System MEDIUM 6.1
CVE-2025-9923

A flaw has been found in Campcodes Sales and Inventory System 1.0. This affects an unknown part of the file /index.php. Executing manipulation of the…

No fix yet
Fix from $1,600 2025-09-03
Pos Pharmacy System MEDIUM 5.4
CVE-2025-9921

A weakness has been identified in code-projects POS Pharmacy System 1.0. Affected is an unknown function of the file /main/products.php. This manipul…

No fix yet
Fix from $1,600 2025-09-03
Sales And Inventory System MEDIUM 6.1
CVE-2025-9922

A security vulnerability has been detected in Campcodes Sales and Inventory System 1.0. Affected by this vulnerability is an unknown functionality of…

No fix yet
Fix from $1,600 2025-09-03
Unclassified HIGH 7.6
CVE-2025-9959

Incomplete validation of dunder attributes allows an attacker to escape from the Local Python execution environment sandbox, enforced by smolagents. …

Patch available
Fix from $1,950 2025-09-03
Dive HIGH 8.8
CVE-2025-58176EPSS 8%

Dive is an open-source MCP Host Desktop Application that enables integration with function-calling LLMs. In versions 0.9.0 through 0.9.3, there is a …

Fix: 0.9.4+
Fix from $1,950 2025-09-03
Fruit Shop Management System MEDIUM 5.4
CVE-2025-9845

A vulnerability has been found in code-projects Fruit Shop Management System 1.0. Affected by this vulnerability is an unknown functionality of the f…

No fix yet
Fix from $1,600 2025-09-03
Small Crm MEDIUM 5.4
CVE-2025-9834

A flaw has been found in PHPGurukul Small CRM 4.0. Affected by this issue is some unknown functionality of the file /registration.php. Executing mani…

No fix yet
Fix from $1,600 2025-09-02
Remote Clinic MEDIUM 6.1
CVE-2025-9773

A flaw has been found in RemoteClinic up to 2.0. This vulnerability affects unknown code of the file /staff/edit.php. Executing manipulation of the a…

Fix: after 2.0
Fix from $1,600 2025-09-01
Online Hospital Management System MEDIUM 5.4
CVE-2025-9754

A flaw has been found in Campcodes Online Hospital Management System 1.0. The impacted element is an unknown function of the file /edit-profile.php o…

No fix yet
Fix from $1,600 2025-09-01
Library Management System MEDIUM 6.1
CVE-2025-9755

A vulnerability has been found in Khanakag-17 Library Management System up to 60ed174506094dcd166e34904a54288e5d10ff24. This affects an unknown funct…

Fix: after 2025-08-23
Fix from $1,600 2025-09-01
I Educar MEDIUM 5.4
CVE-2025-9738

A flaw has been found in Portabilis i-Educar up to 2.10. Affected by this vulnerability is an unknown functionality of the file /intranet/educar_tipo…

Fix: after 2.10.0
Fix from $1,600 2025-08-31
O2oa MEDIUM 5.4
CVE-2025-9737

A vulnerability was detected in O2OA up to 10.0-410. Affected is an unknown function of the file /x_query_assemble_designer/jaxrs/importmodel of the …

Fix: after 10.0-410
Fix from $1,600 2025-08-31
O2oa MEDIUM 5.4
CVE-2025-9735

A weakness has been identified in O2OA up to 10.0-410. This affects an unknown function of the file /x_query_assemble_designer/jaxrs/table of the com…

Fix: after 10.0-410
Fix from $1,600 2025-08-31
O2oa MEDIUM 5.4
CVE-2025-9736

A security vulnerability has been detected in O2OA up to 10.0-410. This impacts an unknown function of the file /x_query_assemble_designer/jaxrs/stat…

Fix: after 10.0-410
Fix from $1,600 2025-08-31
O2oa MEDIUM 5.4
CVE-2025-9734

A security flaw has been discovered in O2OA up to 10.0-410. The impacted element is an unknown function of the file /x_query_assemble_designer/jaxrs/…

Fix: after 10.0-410
Fix from $1,600 2025-08-31
Vvveb MEDIUM 6.1
CVE-2025-9728

A security vulnerability has been detected in givanz Vvveb 1.0.7.2. This affects an unknown part of the file app/template/user/login.tpl. Such manipu…

Patch available
Fix from $1,600 2025-08-31