Vulnerability index

Browse CVEs

6,053 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Code InjectionCWE-94 × clear
I Educar MEDIUM 5.4
CVE-2025-9724

A vulnerability was determined in Portabilis i-Educar up to 2.10. This impacts an unknown function of the file /intranet/educar_nivel_ensino_cad.php.…

Fix: after 2.10
Fix from $1,600 2025-08-31
I Educar MEDIUM 5.4
CVE-2025-9723

A vulnerability was found in Portabilis i-Educar up to 2.10. This affects an unknown function of the file /intranet/educar_tipo_regime_cad.php. Perfo…

Fix: after 2.10
Fix from $1,600 2025-08-31
I Educar MEDIUM 5.4
CVE-2025-9721

A flaw has been found in Portabilis i-Educar up to 2.10. The affected element is an unknown function of the file /module/FormulaMedia/edit. This mani…

Fix: after 2.10
Fix from $1,600 2025-08-31
I Educar MEDIUM 5.4
CVE-2025-9722

A vulnerability has been found in Portabilis i-Educar up to 2.10. The impacted element is an unknown function of the file /intranet/educar_tipo_ocorr…

Fix: after 2.10
Fix from $1,600 2025-08-31
I Educar MEDIUM 5.4
CVE-2025-9720

A vulnerability was detected in Portabilis i-Educar up to 2.10. Impacted is an unknown function of the file /module/TabelaArredondamento/edit of the …

Fix: after 2.10
Fix from $1,600 2025-08-31
O2oa MEDIUM 5.4
CVE-2025-9718

A security flaw has been discovered in O2OA up to 10.0-410. This affects an unknown part of the file /x_processplatform_assemble_designer/jaxrs/proce…

Fix: after 10.0-410
Fix from $1,600 2025-08-31
O2oa MEDIUM 5.4
CVE-2025-9719

A weakness has been identified in O2OA up to 10.0-410. This vulnerability affects unknown code of the file /x_processplatform_assemble_designer/jaxrs…

Fix: after 10.0-410
Fix from $1,600 2025-08-31
O2oa MEDIUM 5.4
CVE-2025-9716

A vulnerability was determined in O2OA up to 10.0-410. Affected by this vulnerability is an unknown functionality of the file /x_processplatform_asse…

Fix: after 10.0-410
Fix from $1,600 2025-08-31
O2oa MEDIUM 5.4
CVE-2025-9717

A vulnerability was identified in O2OA up to 10.0-410. Affected by this issue is some unknown functionality of the file /x_organization_assemble_cont…

Fix: after 10.0-410
Fix from $1,600 2025-08-31
O2oa MEDIUM 5.4
CVE-2025-9715

A vulnerability was found in O2OA up to 10.0-410. Affected is an unknown function of the file /x_cms_assemble_control/jaxrs/script of the component P…

Fix: after 10.0-410
Fix from $1,600 2025-08-31
O2oa MEDIUM 5.4
CVE-2025-9682

A vulnerability has been found in O2OA up to 10.0-410. Affected by this vulnerability is an unknown functionality of the file /x_cms_assemble_control…

Fix: after 10.0-410
Fix from $1,600 2025-08-30
O2oa MEDIUM 5.4
CVE-2025-9683

A vulnerability was found in O2OA up to 10.0-410. Affected by this issue is some unknown functionality of the file /x_cms_assemble_control/jaxrs/form…

Fix: after 10.0-410
Fix from $1,600 2025-08-30
O2oa MEDIUM 5.4
CVE-2025-9681

A flaw has been found in O2OA up to 10.0-410. Affected is an unknown function of the file /x_program_center/jaxrs/agent of the component Personal Pro…

Fix: after 10.0-410
Fix from $1,600 2025-08-30
O2oa MEDIUM 5.4
CVE-2025-9680

A vulnerability was detected in O2OA up to 10.0-410. This impacts an unknown function of the file /x_portal_assemble_designer/jaxrs/page of the compo…

Fix: after 10.0-410
Fix from $1,600 2025-08-30
Wegia HIGH 8.8
CVE-2025-58159

WeGIA is a Web manager for charitable institutions. Prior to version 3.4.11, a remote code execution vulnerability was identified, caused by improper…

Fix: 3.4.11+
Fix from $1,950 2025-08-29
O2oa MEDIUM 5.4
CVE-2025-9657

A vulnerability was detected in O2OA up to 10.0-410. This issue affects some unknown processing of the file /x_program_center/jaxrs/script of the com…

Fix: after 10.0-410
Fix from $1,600 2025-08-29
O2oa MEDIUM 5.4
CVE-2025-9658

A flaw has been found in O2OA up to 10.0-410. Impacted is an unknown function of the file /x_portal_assemble_designer/jaxrs/dict/ of the component Pe…

Fix: after 10.0-410
Fix from $1,600 2025-08-29
O2oa MEDIUM 5.4
CVE-2025-9659

A vulnerability has been found in O2OA up to 10.0-410. The affected element is an unknown function of the file /x_portal_assemble_designer/jaxrs/widg…

Fix: after 10.0-410
Fix from $1,600 2025-08-29
Directory Management System MEDIUM 6.1
CVE-2025-9656

A security vulnerability has been detected in PHPGurukul Directory Management System 2.0. This vulnerability affects unknown code of the file /admin/…

No fix yet
Fix from $1,600 2025-08-29
O2oa MEDIUM 5.4
CVE-2025-9655

A weakness has been identified in O2OA up to 10.0-410. This affects an unknown part of the file /x_organization_assemble_control/jaxrs/person/ of the…

Fix: after 10.0-410
Fix from $1,600 2025-08-29
I Educar MEDIUM 5.4
CVE-2025-9653

A vulnerability was identified in Portabilis i-Educar up to 2.10. Affected by this vulnerability is an unknown functionality of the file /intranet/ed…

Fix: after 2.10
Fix from $1,600 2025-08-29
I Educar MEDIUM 5.4
CVE-2025-9652

A vulnerability was determined in Portabilis i-Educar up to 2.10. Affected is an unknown function of the file /intranet/educar_transferencia_tipo_cad…

Fix: after 2.10
Fix from $1,600 2025-08-29
O2oa MEDIUM 5.4
CVE-2025-9646

A security flaw has been discovered in O2OA up to 10.0-410. This vulnerability affects unknown code of the file /x_organization_assemble_personal/jax…

Fix: after 10.0-410
Fix from $1,600 2025-08-29
Mblog MEDIUM 6.1
CVE-2025-9647

A weakness has been identified in mtons mblog up to 3.5.0. This issue affects some unknown processing of the file /admin/role/list. This manipulation…

Fix: after 3.5.0
Fix from $1,600 2025-08-29
Student Information Management System MEDIUM 6.1
CVE-2025-9595

A vulnerability was found in code-projects Student Information Management System 1.0. The impacted element is an unknown function of the file /login.…

No fix yet
Fix from $1,600 2025-08-29
Unclassified MEDIUM 6.9
CVE-2024-48908

lychee link checking action checks links in Markdown, HTML, and text files using lychee. Prior to version 2.0.2, there is a potential attack of arbit…

Patch available
Fix from $1,600 2025-08-28
Unclassified HIGH 8.1
CVE-2025-54731

Improper Control of Generation of Code ('Code Injection') vulnerability in emarket-design YouTube Showcase youtube-showcase allows Object Injection.T…

Mitigation only
Fix from $1,950 2025-08-28
Unclassified CRITICAL 9.1
CVE-2025-48100

Improper Control of Generation of Code ('Code Injection') vulnerability in extremeidea bidorbuy Store Integrator bidorbuystoreintegrator allows Remot…

Mitigation only
Fix from $2,300 2025-08-28
GitLab MEDIUM 5.0
CVE-2025-5101

An issue has been discovered in GitLab CE/EE affecting all versions before 18.1.5, 18.2 before 18.2.5, and 18.3 before 18.3.1 that under certain cond…

Fix: 18.1.5 / 18.2.5+
Fix from $1,600 2025-08-27
O2oa HIGH 8.8
CVE-2024-37777

O2OA v9.0.3 was discovered to contain a remote code execution (RCE) vulnerability via the mainOutput() function.

No fix yet
Fix from $1,950 2025-08-27