Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Online Cake Ordering System CRITICAL 9.8
CVE-2025-14649

A vulnerability was detected in itsourcecode Online Cake Ordering System 1.0. Affected by this issue is some unknown functionality of the file /cakes…

Mitigation only
Fix from $2,300 2025-12-14
Computer Book Store CRITICAL 9.8
CVE-2025-14647

A weakness has been identified in code-projects Computer Book Store 1.0. Affected is an unknown function of the file /admin_delete.php. This manipula…

Mitigation only
Fix from $2,300 2025-12-14
Student File Management System CRITICAL 9.8
CVE-2025-14646

A security flaw has been discovered in code-projects Student File Management System 1.0. This impacts an unknown function of the file /admin/delete_s…

Mitigation only
Fix from $2,300 2025-12-14
Student File Management System CRITICAL 9.8
CVE-2025-14645

A vulnerability was identified in code-projects Student File Management System 1.0. This affects an unknown function of the file /admin/delete_user.p…

Mitigation only
Fix from $2,300 2025-12-14
Exim CRITICAL 9.8
CVE-2025-67896

Exim before 4.99.1, with certain non-default rate-limit configurations, allows a remote heap-based buffer overflow because database records are cast …

Fix: 4.99.1+
Fix from $2,300 2025-12-14
Student Management System CRITICAL 9.8
CVE-2025-14644

A vulnerability was determined in itsourcecode Student Management System 1.0. The impacted element is an unknown function of the file /update_subject…

Mitigation only
Fix from $2,300 2025-12-14
Simple Attendance Record System CRITICAL 9.8
CVE-2025-14643

A vulnerability was found in code-projects Simple Attendance Record System 2.0. The affected element is an unknown function of the file /check.php. P…

Mitigation only
Fix from $2,300 2025-12-14
Student File Management System CRITICAL 9.8
CVE-2025-14640

A flaw has been found in code-projects Student File Management System 1.0. The affected element is an unknown function of the file /admin/save_studen…

Mitigation only
Fix from $2,300 2025-12-14
Student Management System CRITICAL 9.8
CVE-2025-14639

A vulnerability was detected in itsourcecode Student Management System 1.0. Impacted is an unknown function of the file /uprec.php. Performing manipu…

Mitigation only
Fix from $2,300 2025-12-14
Online Pet Shop Management System CRITICAL 9.8
CVE-2025-14638

A security vulnerability has been detected in itsourcecode Online Pet Shop Management System 1.0. This issue affects some unknown processing of the f…

Mitigation only
Fix from $2,300 2025-12-14
Online Pet Shop Management System CRITICAL 9.8
CVE-2025-14637

A weakness has been identified in itsourcecode Online Pet Shop Management System 1.0. This vulnerability affects unknown code of the file /pet1/addcn…

Mitigation only
Fix from $2,300 2025-12-13
Student File Management System CRITICAL 9.8
CVE-2025-14623

A weakness has been identified in code-projects Student File Management System 1.0. This issue affects some unknown processing of the file /admin/upd…

Mitigation only
Fix from $2,300 2025-12-13
Student File Management System CRITICAL 9.8
CVE-2025-14622

A security flaw has been discovered in code-projects Student File Management System 1.0. This vulnerability affects unknown code of the file /admin/s…

Mitigation only
Fix from $2,300 2025-12-13
Student File Management System CRITICAL 9.8
CVE-2025-14621

A vulnerability was identified in code-projects Student File Management System 1.0. This affects an unknown part of the file /admin/update_user.php. …

Mitigation only
Fix from $2,300 2025-12-13
Unclassified CRITICAL 9.3
CVE-2025-36754

The authentication mechanism on web interface is not properly implemented. It is possible to bypass authentication checks by crafting a post request …

Mitigation only
Fix from $2,300 2025-12-13
Shine Lan X Firmware CRITICAL 9.8
CVE-2025-36753

The SWD debug interface on the Growatt ShineLan-X communication dongle is available by default, allowing an attacker to attain debug access to the de…

Fix: 3.6.0.2+
Fix from $2,300 2025-12-13
Shine Lan X Firmware CRITICAL 9.8
CVE-2025-36752

Growatt ShineLan-X communication dongle has an undocumented backup account with undocumented credentials which allows significant level access to the…

Fix: 3.6.0.2+
Fix from $2,300 2025-12-13
Unclassified CRITICAL 9.4
CVE-2025-36751

Encryption is missing on the configuration interface for Growatt ShineLan-X and MIC 3300TL-X. This allows an attacker with access to the network to i…

Mitigation only
Fix from $2,300 2025-12-13
Shine Lan X Firmware CRITICAL 9.8
CVE-2025-36747

ShineLan-X contains a set of credentials for an FTP server was found within the firmware, allowing testers to establish an insecure FTP connection wi…

Fix: 3.6.0.2+
Fix from $2,300 2025-12-13
Student File Management System CRITICAL 9.8
CVE-2025-14620

A vulnerability was determined in code-projects Student File Management System 1.0. Affected by this issue is some unknown functionality of the file …

Mitigation only
Fix from $2,300 2025-12-13
Student File Management System CRITICAL 9.8
CVE-2025-14619

A vulnerability was found in code-projects Student File Management System 1.0. Affected by this vulnerability is an unknown functionality of the file…

Mitigation only
Fix from $2,300 2025-12-13
Prison Management System CRITICAL 9.8
CVE-2025-14590

A security vulnerability has been detected in code-projects Prison Management System 2.0. Impacted is an unknown function of the file /admin/search1.…

Mitigation only
Fix from $2,300 2025-12-13
Student Management System CRITICAL 9.8
CVE-2025-14588

A security flaw has been discovered in itsourcecode Student Management System 1.0. This vulnerability affects unknown code of the file /update_progra…

Mitigation only
Fix from $2,300 2025-12-13
Online Pet Shop Management System CRITICAL 9.8
CVE-2025-14587

A vulnerability was identified in itsourcecode Online Pet Shop Management System 1.0. This affects an unknown part of the file /pet1/available.php. S…

Mitigation only
Fix from $2,300 2025-12-13
X5000r Firmware CRITICAL 9.8
CVE-2025-14586

A vulnerability was determined in TOTOLINK X5000R 9.1.0cu.2089_B20211224. Affected by this issue is the function snprintf of the file /cgi-bin/cstecg…

Mitigation only
Fix from $2,300 2025-12-13
Unclassified CRITICAL 9.8
CVE-2025-14440

The JAY Login & Register plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 2.4.01. This is due to incorre…

Mitigation only
Fix from $2,300 2025-12-13
Unclassified CRITICAL 9.8
CVE-2025-11693

The Export WP Page to Static HTML & PDF plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.…

Mitigation only
Fix from $2,300 2025-12-13
Unclassified CRITICAL 9.8
CVE-2025-10738

The URL Shortener Plugin For WordPress plugin for WordPress is vulnerable to SQL Injection via the ‘analytic_id’ parameter in all versions up to, and…

Mitigation only
Fix from $2,300 2025-12-13
Covid Tracking System CRITICAL 9.8
CVE-2025-14585

A vulnerability was found in itsourcecode COVID Tracking System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/?p…

Mitigation only
Fix from $2,300 2025-12-12
Covid Tracking System CRITICAL 9.8
CVE-2025-14584

A vulnerability has been found in itsourcecode COVID Tracking System 1.0. Affected is an unknown function of the file /admin/login.php of the compone…

Mitigation only
Fix from $2,300 2025-12-12