Vulnerability index

Browse CVEs

11 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

SQLite HIGH 7.5
CVE-2026-51304

sqlite 3.41 has a use-after-free (UAF) vulnerability in the ORDER BY clause parsing routine. The affected code first releases the memory of an ExprLi…

No fix yet
Fix from $1,950 2026-07-27
SQLite HIGH 7.5
CVE-2026-51302

SQLite 3.41 has a use-after-free vulnerability exists in the expression evaluation logic. The sqlite3ReleaseTempReg function improperly releases temp…

No fix yet
Fix from $1,950 2026-07-27
SQLite MEDIUM 6.2
CVE-2026-51298

sqlite 3.41 is vulnerable to use after free in the JSON extraction function. After releasing JsonParse object memory via jsonParseFree(), the program…

No fix yet
Fix from $1,600 2026-07-27
SQLite HIGH 8.8
CVE-2026-51297

sqlite 3.41 has a use-after-free vulnerability in the JSON parsing logic. Remote adversaries can craft malicious JSON payload to trigger memory free …

Mitigation only
Fix from $1,950 2026-07-27
SQLite HIGH 7.5
CVE-2026-51296

SQLite 3.41 has a use-after-free vulnerability in jsonRemoveFunc of SQLite JSON module. The parsed JSON object is freed at line 3555, while line 3575…

No fix yet
Fix from $1,950 2026-07-27
SQLite HIGH 8.1
CVE-2019-5018EPSS 7%

An exploitable use after free vulnerability exists in the window function functionality of Sqlite3 3.26.0. A specially crafted SQL command can cause …

No fix yet
Fix from $1,950 2019-05-10
SQLite HIGH 7.5
CVE-2017-15286

SQLite 3.20.1 has a NULL pointer dereference in tableColumnList in shell.c because it fails to consider certain cases where `sqlite3_step(pStmt)==SQL…

No fix yet
Fix from $1,950 2017-10-12
SQLite MEDIUM 5.5
CVE-2017-13685

The dump_callback function in SQLite 3.20.0 allows remote attackers to cause a denial of service (EXC_BAD_ACCESS and application crash) via a crafted…

Mitigation only
Fix from $1,600 2017-08-29
SQLite HIGH 7.5
CVE-2008-6592

thumbsup.php in Thumbs-Up 1.12, as used in LightNEasy "no database" (aka flat) and SQLite 1.2.2 and earlier, allows remote attackers to copy, rename,…

No fix yet
Fix from $1,950 2009-04-03
SQLite HIGH 7.5
CVE-2008-6593

SQL injection vulnerability in LightNEasy/lightneasy.php in LightNEasy SQLite 1.2.2 and earlier allows remote attackers to inject arbitrary PHP code …

No fix yet
Fix from $1,950 2009-04-03
SQLite MEDIUM 5.0
CVE-2008-6590

Multiple directory traversal vulnerabilities in LightNEasy "no database" (aka flat) version 1.2.2, and possibly SQLite version 1.2.2, allow remote at…

No fix yet
Fix from $1,600 2009-04-03