Vulnerability index

Browse CVEs

6,053 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Code InjectionCWE-94 × clear
MEDIUM 6.1 CVE-2025-10063 A vulnerability was identified in itsourcecode POS Point of Sale System 1.0. This vulnerability affects unknown code of the file /inventory/main/vend… Point Of Sale System No fix yet Fix from $1,6002025-09-06 MEDIUM 6.1 CVE-2025-10032 A vulnerability was detected in Campcodes Grocery Sales and Inventory System 1.0. The affected element is an unknown function of the file /index.php.… Grocery Sales And Inventory System No fix yet Fix from $1,6002025-09-06 MEDIUM 6.1 CVE-2025-10029 A security flaw has been discovered in itsourcecode POS Point of Sale System 1.0. This vulnerability affects unknown code of the file /inventory/main… Point Of Sale System No fix yet Fix from $1,6002025-09-06 MEDIUM 6.1 CVE-2025-10028 A vulnerability was identified in itsourcecode POS Point of Sale System 1.0. This affects an unknown part of the file /inventory/main/vendors/datatab… Point Of Sale System No fix yet Fix from $1,6002025-09-06 HIGH 7.3 CVE-2025-7366 The The REHub - Price Comparison, Multi Vendor Marketplace Wordpress Theme theme for WordPress is vulnerable to arbitrary shortcode execution in all … Mitigation only Fix from $1,9502025-09-06 CRITICAL 9.8 CVE-2025-58372 Roo Code is an AI-powered autonomous coding agent that lives in users' editors. Versions 3.25.23 and below contain a vulnerability where certain VS C… Roo Code 3.26.0+ Fix from $2,3002025-09-05 MEDIUM 6.1 CVE-2025-10027 A vulnerability was determined in itsourcecode POS Point of Sale System 1.0. Affected by this issue is some unknown functionality of the file /invent… Point Of Sale System No fix yet Fix from $1,6002025-09-05 MEDIUM 6.1 CVE-2025-10026 A vulnerability was found in itsourcecode POS Point of Sale System 1.0. Affected by this vulnerability is an unknown functionality of the file /inven… Point Of Sale System No fix yet Fix from $1,6002025-09-05 MEDIUM 6.1 CVE-2025-55305 Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. In versions below 35.7.5, 36.0.0-alpha.1 thro… Patch available Fix from $1,6002025-09-04 MEDIUM 5.4 CVE-2025-9939 A security vulnerability has been detected in CodeAstro Real Estate Management System 1.0. The impacted element is an unknown function of the file /p… Real Estate Management System Mitigation only Fix from $1,6002025-09-04 MEDIUM 5.4 CVE-2025-9940 A vulnerability was detected in CodeAstro Real Estate Management System 1.0. This affects an unknown function of the file /feature.php. Performing ma… Real Estate Management System No fix yet Fix from $1,6002025-09-04 MEDIUM 6.1 CVE-2025-9931 A vulnerability was detected in Jinher OA 1.0. Affected is an unknown function of the file /jc6/platform/sys/login!changePassWord.action of the compo… Jinher Oa No fix yet Fix from $1,6002025-09-04 HIGH 7.2 CVE-2025-9517 The atec Debug plugin for WordPress is vulnerable to remote code execution in all versions up to, and including, 1.2.22 via the 'custom_log' paramete… Mitigation only Fix from $1,9502025-09-04 HIGH 7.2 CVE-2025-9519 The Easy Timer plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 4.2.1 via the plugin's shortcodes. T… Mitigation only Fix from $1,9502025-09-04 MEDIUM 6.1 CVE-2025-9923 A flaw has been found in Campcodes Sales and Inventory System 1.0. This affects an unknown part of the file /index.php. Executing manipulation of the… Sales And Inventory System No fix yet Fix from $1,6002025-09-03 MEDIUM 5.4 CVE-2025-9921 A weakness has been identified in code-projects POS Pharmacy System 1.0. Affected is an unknown function of the file /main/products.php. This manipul… Pos Pharmacy System No fix yet Fix from $1,6002025-09-03 MEDIUM 6.1 CVE-2025-9922 A security vulnerability has been detected in Campcodes Sales and Inventory System 1.0. Affected by this vulnerability is an unknown functionality of… Sales And Inventory System No fix yet Fix from $1,6002025-09-03 HIGH 7.6 CVE-2025-9959 Incomplete validation of dunder attributes allows an attacker to escape from the Local Python execution environment sandbox, enforced by smolagents. … Patch available Fix from $1,9502025-09-03 HIGH 8.8 CVE-2025-58176EPSS 8% Dive is an open-source MCP Host Desktop Application that enables integration with function-calling LLMs. In versions 0.9.0 through 0.9.3, there is a … Dive 0.9.4+ Fix from $1,9502025-09-03 MEDIUM 5.4 CVE-2025-9845 A vulnerability has been found in code-projects Fruit Shop Management System 1.0. Affected by this vulnerability is an unknown functionality of the f… Fruit Shop Management System No fix yet Fix from $1,6002025-09-03 MEDIUM 5.4 CVE-2025-9834 A flaw has been found in PHPGurukul Small CRM 4.0. Affected by this issue is some unknown functionality of the file /registration.php. Executing mani… Small Crm No fix yet Fix from $1,6002025-09-02 MEDIUM 6.1 CVE-2025-9773 A flaw has been found in RemoteClinic up to 2.0. This vulnerability affects unknown code of the file /staff/edit.php. Executing manipulation of the a… Remote Clinic after 2.0 Fix from $1,6002025-09-01 MEDIUM 5.4 CVE-2025-9754 A flaw has been found in Campcodes Online Hospital Management System 1.0. The impacted element is an unknown function of the file /edit-profile.php o… Online Hospital Management System No fix yet Fix from $1,6002025-09-01 MEDIUM 6.1 CVE-2025-9755 A vulnerability has been found in Khanakag-17 Library Management System up to 60ed174506094dcd166e34904a54288e5d10ff24. This affects an unknown funct… Library Management System after 2025-08-23 Fix from $1,6002025-09-01 MEDIUM 5.4 CVE-2025-9738 A flaw has been found in Portabilis i-Educar up to 2.10. Affected by this vulnerability is an unknown functionality of the file /intranet/educar_tipo… I Educar after 2.10.0 Fix from $1,6002025-08-31 MEDIUM 5.4 CVE-2025-9737 A vulnerability was detected in O2OA up to 10.0-410. Affected is an unknown function of the file /x_query_assemble_designer/jaxrs/importmodel of the … O2oa after 10.0-410 Fix from $1,6002025-08-31 MEDIUM 5.4 CVE-2025-9735 A weakness has been identified in O2OA up to 10.0-410. This affects an unknown function of the file /x_query_assemble_designer/jaxrs/table of the com… O2oa after 10.0-410 Fix from $1,6002025-08-31 MEDIUM 5.4 CVE-2025-9736 A security vulnerability has been detected in O2OA up to 10.0-410. This impacts an unknown function of the file /x_query_assemble_designer/jaxrs/stat… O2oa after 10.0-410 Fix from $1,6002025-08-31 MEDIUM 5.4 CVE-2025-9734 A security flaw has been discovered in O2OA up to 10.0-410. The impacted element is an unknown function of the file /x_query_assemble_designer/jaxrs/… O2oa after 10.0-410 Fix from $1,6002025-08-31 MEDIUM 6.1 CVE-2025-9728 A security vulnerability has been detected in givanz Vvveb 1.0.7.2. This affects an unknown part of the file app/template/user/login.tpl. Such manipu… Vvveb Patch available Fix from $1,6002025-08-31