Vulnerability index

Browse CVEs

6,053 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Code InjectionCWE-94 × clear
Real Estate Property Management System MEDIUM 5.4
CVE-2025-1196

A vulnerability, which was classified as problematic, was found in code-projects Real Estate Property Management System 1.0. Affected is an unknown f…

No fix yet
Fix from $1,600 2025-02-12
Job Recruitment MEDIUM 6.1
CVE-2025-1190

A vulnerability has been found in code-projects Job Recruitment 1.0 and classified as problematic. This vulnerability affects unknown code of the fil…

No fix yet
Fix from $1,600 2025-02-12
Global Gallery HIGH 8.8
CVE-2024-13814

The The Global Gallery - WordPress Responsive Gallery plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and …

Fix: 9.1.6+
Fix from $1,950 2025-02-12
Connect Secure HIGH 7.2
CVE-2024-10644

Code injection in Ivanti Connect Secure before version 22.7R2.4 and Ivanti Policy Secure before version 22.7R1.3 allows a remote authenticated attack…

Fix: 22.7+
Fix from $1,950 2025-02-11
Real Estate Property Management System MEDIUM 6.1
CVE-2025-1171

A vulnerability classified as problematic was found in code-projects Real Estate Property Management System 1.0. Affected by this vulnerability is an…

No fix yet
Fix from $1,600 2025-02-11
Image Compressor Tool MEDIUM 6.1
CVE-2025-1169

A vulnerability was found in SourceCodester Image Compressor Tool 1.0. It has been rated as problematic. This issue affects some unknown processing o…

No fix yet
Fix from $1,600 2025-02-11
Real Estate Property Management System MEDIUM 5.4
CVE-2025-1170

A vulnerability classified as problematic has been found in code-projects Real Estate Property Management System 1.0. Affected is an unknown function…

No fix yet
Fix from $1,600 2025-02-11
School Management Software MEDIUM 5.4
CVE-2025-1159

A vulnerability was found in CampCodes School Management Software 1.0. It has been declared as problematic. Affected by this vulnerability is an unkn…

No fix yet
Fix from $1,600 2025-02-10
Qloapps MEDIUM 6.1
CVE-2025-1155

A vulnerability, which was classified as problematic, was found in Webkul QloApps 1.6.1. This affects an unknown part of the file /stores of the comp…

No fix yet
Fix from $1,600 2025-02-10
Ipados HIGH 8.8
CVE-2024-27859

The issue was addressed with improved memory handling. This issue is fixed in iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4, tvOS 17.4, visionOS 1.1, w…

Fix: 1.1 / 10.4+
Fix from $1,950 2025-02-10
Newbee Mall MEDIUM 5.4
CVE-2025-1114

A vulnerability classified as problematic has been found in newbee-mall 1.0. Affected is the function save of the file /admin/categories/save of the …

No fix yet
Fix from $1,600 2025-02-07
Siberiancms MEDIUM 6.1
CVE-2025-1105

A vulnerability was found in SiberianCMS 4.20.6. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /…

Mitigation only
Fix from $1,600 2025-02-07
Wp All Export HIGH 7.2
CVE-2024-7425

The WP ALL Export Pro plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to improper u…

Fix: 1.9.2+
Fix from $1,950 2025-02-07
Wp All Export HIGH 8.8
CVE-2024-7419

The WP ALL Export Pro plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 1.9.1 via the custom export f…

Fix: 1.9.2+
Fix from $1,950 2025-02-07
Dataease CRITICAL 9.8
CVE-2024-57707

An issue in DataEase v1 allows an attacker to execute arbitrary code via the user account and password components.

No fix yet
Fix from $2,300 2025-02-07
Xzs Mysql MEDIUM 5.4
CVE-2025-1082

A vulnerability classified as problematic has been found in Mindskip xzs-mysql 学之思开源考试系统 3.9.0. Affected is an unknown function of the file …

No fix yet
Fix from $1,600 2025-02-06
Unclassified HIGH 8.6
CVE-2024-57609

An issue in Kanaries Inc Pygwalker before v.0.4.9.9 allows a remote attacker to obtain sensitive information and execute arbitrary code via the redir…

Mitigation only
Fix from $1,950 2025-02-06
Unclassified HIGH 8.8
CVE-2024-55241

An issue in deep-diver LLM-As-Chatbot before commit 99c2c03 allows a remote attacker to execute arbitrary code via the modelsbyom.py component.

Mitigation only
Fix from $1,950 2025-02-06
Unclassified HIGH 7.3
CVE-2024-13487

The The CURCY – Multi Currency for WooCommerce – The best free currency exchange plugin – Run smoothly on WooCommerce 9.x plugin for WordPress is vul…

Mitigation only
Fix from $1,950 2025-02-06
Unclassified HIGH 8.1
CVE-2025-25246

NETGEAR XR1000 before 1.0.0.74, XR1000v2 before 1.1.0.22, and XR500 before 2.3.2.134 allow remote code execution by unauthenticated users.

Mitigation only
Fix from $1,950 2025-02-05
Unclassified CRITICAL 9.9
CVE-2025-24677

Improper Control of Generation of Code ('Code Injection') vulnerability in wpspin Post/Page Copying Tool postpage-import-export-with-custom-fields-ta…

Mitigation only
Fix from $2,300 2025-02-04
Firefox HIGH 8.8
CVE-2025-1011

A bug in WebAssembly code generation could have lead to a crash. It may have been possible for an attacker to leverage this to achieve code execution…

Fix: 128.7.0 / 135.0+
Fix from $1,950 2025-02-04
Sourcerer CRITICAL 9.8
CVE-2025-22204

Improper control of generation of code in the sourcerer extension for Joomla in versions before 11.0.0 lead to a remote code execution vulnerability.

Fix: 11.0.0+
Fix from $2,300 2025-02-04
Classcms CRITICAL 9.8
CVE-2024-57099

ClassCMS v4.8 has a code execution vulnerability. Attackers can exploit this vulnerability by constructing a payload in the classview parameter of th…

No fix yet
Fix from $2,300 2025-02-03
Movidesk MEDIUM 5.4
CVE-2025-0972

A vulnerability classified as problematic has been found in Zenvia Movidesk up to 25.01.22. This affects an unknown part of the component New Ticket …

Fix: after 25.01.22
Fix from $1,600 2025-02-03
Movidesk MEDIUM 5.4
CVE-2025-0971

A vulnerability was found in Zenvia Movidesk up to 25.01.22. It has been rated as problematic. Affected by this issue is some unknown functionality o…

Fix: after 25.01.22
Fix from $1,600 2025-02-03
Job Recruitment MEDIUM 5.4
CVE-2025-0961

A vulnerability, which was classified as problematic, has been found in code-projects Job Recruitment 1.0. Affected by this issue is some unknown fun…

No fix yet
Fix from $1,600 2025-02-01
Unclassified MEDIUM 6.5
CVE-2024-12415

The The AI Infographic Maker plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 4.9.0. This is…

Mitigation only
Fix from $1,600 2025-01-31
Woocommerce Product Table HIGH 7.3
CVE-2024-13472

The The WooCommerce Product Table Lite plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 3.9.…

Fix: 3.9.5+
Fix from $1,950 2025-01-31
Home Flex Nema 14 50 Plug Firmware HIGH 8.8
CVE-2024-23921

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of ChargePoint Home Flex charging stations. …

Mitigation only
Fix from $1,950 2025-01-31