Vulnerability index

Browse CVEs

6,053 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Code InjectionCWE-94 × clear
MEDIUM 5.4 CVE-2025-1196 A vulnerability, which was classified as problematic, was found in code-projects Real Estate Property Management System 1.0. Affected is an unknown f… Real Estate Property Management System No fix yet Fix from $1,6002025-02-12 MEDIUM 6.1 CVE-2025-1190 A vulnerability has been found in code-projects Job Recruitment 1.0 and classified as problematic. This vulnerability affects unknown code of the fil… Job Recruitment No fix yet Fix from $1,6002025-02-12 HIGH 8.8 CVE-2024-13814 The The Global Gallery - WordPress Responsive Gallery plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and … Global Gallery 9.1.6+ Fix from $1,9502025-02-12 HIGH 7.2 CVE-2024-10644 Code injection in Ivanti Connect Secure before version 22.7R2.4 and Ivanti Policy Secure before version 22.7R1.3 allows a remote authenticated attack… Connect Secure 22.7+ Fix from $1,9502025-02-11 MEDIUM 6.1 CVE-2025-1171 A vulnerability classified as problematic was found in code-projects Real Estate Property Management System 1.0. Affected by this vulnerability is an… Real Estate Property Management System No fix yet Fix from $1,6002025-02-11 MEDIUM 6.1 CVE-2025-1169 A vulnerability was found in SourceCodester Image Compressor Tool 1.0. It has been rated as problematic. This issue affects some unknown processing o… Image Compressor Tool No fix yet Fix from $1,6002025-02-11 MEDIUM 5.4 CVE-2025-1170 A vulnerability classified as problematic has been found in code-projects Real Estate Property Management System 1.0. Affected is an unknown function… Real Estate Property Management System No fix yet Fix from $1,6002025-02-11 MEDIUM 5.4 CVE-2025-1159 A vulnerability was found in CampCodes School Management Software 1.0. It has been declared as problematic. Affected by this vulnerability is an unkn… School Management Software No fix yet Fix from $1,6002025-02-10 MEDIUM 6.1 CVE-2025-1155 A vulnerability, which was classified as problematic, was found in Webkul QloApps 1.6.1. This affects an unknown part of the file /stores of the comp… Qloapps No fix yet Fix from $1,6002025-02-10 HIGH 8.8 CVE-2024-27859 The issue was addressed with improved memory handling. This issue is fixed in iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4, tvOS 17.4, visionOS 1.1, w… Ipados 1.1 / 10.4+ Fix from $1,9502025-02-10 MEDIUM 5.4 CVE-2025-1114 A vulnerability classified as problematic has been found in newbee-mall 1.0. Affected is the function save of the file /admin/categories/save of the … Newbee Mall No fix yet Fix from $1,6002025-02-07 MEDIUM 6.1 CVE-2025-1105 A vulnerability was found in SiberianCMS 4.20.6. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /… Siberiancms Mitigation only Fix from $1,6002025-02-07 HIGH 7.2 CVE-2024-7425 The WP ALL Export Pro plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to improper u… Wp All Export 1.9.2+ Fix from $1,9502025-02-07 HIGH 8.8 CVE-2024-7419 The WP ALL Export Pro plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 1.9.1 via the custom export f… Wp All Export 1.9.2+ Fix from $1,9502025-02-07 CRITICAL 9.8 CVE-2024-57707 An issue in DataEase v1 allows an attacker to execute arbitrary code via the user account and password components. Dataease No fix yet Fix from $2,3002025-02-07 MEDIUM 5.4 CVE-2025-1082 A vulnerability classified as problematic has been found in Mindskip xzs-mysql 学之思开源考试系统 3.9.0. Affected is an unknown function of the file … Xzs Mysql No fix yet Fix from $1,6002025-02-06 HIGH 8.6 CVE-2024-57609 An issue in Kanaries Inc Pygwalker before v.0.4.9.9 allows a remote attacker to obtain sensitive information and execute arbitrary code via the redir… Mitigation only Fix from $1,9502025-02-06 HIGH 8.8 CVE-2024-55241 An issue in deep-diver LLM-As-Chatbot before commit 99c2c03 allows a remote attacker to execute arbitrary code via the modelsbyom.py component. Mitigation only Fix from $1,9502025-02-06 HIGH 7.3 CVE-2024-13487 The The CURCY – Multi Currency for WooCommerce – The best free currency exchange plugin – Run smoothly on WooCommerce 9.x plugin for WordPress is vul… Mitigation only Fix from $1,9502025-02-06 HIGH 8.1 CVE-2025-25246 NETGEAR XR1000 before 1.0.0.74, XR1000v2 before 1.1.0.22, and XR500 before 2.3.2.134 allow remote code execution by unauthenticated users. Mitigation only Fix from $1,9502025-02-05 CRITICAL 9.9 CVE-2025-24677 Improper Control of Generation of Code ('Code Injection') vulnerability in wpspin Post/Page Copying Tool postpage-import-export-with-custom-fields-ta… Mitigation only Fix from $2,3002025-02-04 HIGH 8.8 CVE-2025-1011 A bug in WebAssembly code generation could have lead to a crash. It may have been possible for an attacker to leverage this to achieve code execution… Firefox 128.7.0 / 135.0+ Fix from $1,9502025-02-04 CRITICAL 9.8 CVE-2025-22204 Improper control of generation of code in the sourcerer extension for Joomla in versions before 11.0.0 lead to a remote code execution vulnerability. Sourcerer 11.0.0+ Fix from $2,3002025-02-04 CRITICAL 9.8 CVE-2024-57099 ClassCMS v4.8 has a code execution vulnerability. Attackers can exploit this vulnerability by constructing a payload in the classview parameter of th… Classcms No fix yet Fix from $2,3002025-02-03 MEDIUM 5.4 CVE-2025-0972 A vulnerability classified as problematic has been found in Zenvia Movidesk up to 25.01.22. This affects an unknown part of the component New Ticket … Movidesk after 25.01.22 Fix from $1,6002025-02-03 MEDIUM 5.4 CVE-2025-0971 A vulnerability was found in Zenvia Movidesk up to 25.01.22. It has been rated as problematic. Affected by this issue is some unknown functionality o… Movidesk after 25.01.22 Fix from $1,6002025-02-03 MEDIUM 5.4 CVE-2025-0961 A vulnerability, which was classified as problematic, has been found in code-projects Job Recruitment 1.0. Affected by this issue is some unknown fun… Job Recruitment No fix yet Fix from $1,6002025-02-01 MEDIUM 6.5 CVE-2024-12415 The The AI Infographic Maker plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 4.9.0. This is… Mitigation only Fix from $1,6002025-01-31 HIGH 7.3 CVE-2024-13472 The The WooCommerce Product Table Lite plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 3.9.… Woocommerce Product Table 3.9.5+ Fix from $1,9502025-01-31 HIGH 8.8 CVE-2024-23921 This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of ChargePoint Home Flex charging stations. … Home Flex Nema 14 50 Plug Firmware Mitigation only Fix from $1,9502025-01-31