Total
20705 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2026-47296 | 1 Microsoft | 5 Sql Server 2016, Sql Server 2017, Sql Server 2019 and 2 more | 2026-08-04 | N/A | 7.5 HIGH |
| Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges over a network. | |||||
| CVE-2026-12188 | 2026-08-03 | 6.5 MEDIUM | 6.3 MEDIUM | ||
| A vulnerability was detected in Grit42 Grit up to 0.11.0. Affected by this issue is some unknown functionality of the file modules/core/backend/app/controllers/concerns/grit/core/grit_entity_controller.rb of the component GritEntityController. Performing a manipulation results in sql injection. The attack may be initiated remotely. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |||||
| CVE-2025-69931 | 2026-08-03 | N/A | 9.8 CRITICAL | ||
| CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /delete_membership.php?id=1. | |||||
| CVE-2026-7769 | 1 Ibm | 2 Sterling B2b Integrator, Sterling File Gateway | 2026-08-03 | N/A | 8.1 HIGH |
| IBM Sterling B2B Integrator 6.2.0.0 through 6.2.0.5_2, 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 and IBM Sterling File Gateway 6.2.0.0 through 6.2.0.5_2, 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify, or delete information in the back-end database. | |||||
| CVE-2026-65526 | 2026-08-03 | N/A | 8.5 HIGH | ||
| Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Themeisle Visualizer allows Blind SQL Injection. This issue affects Visualizer: from n/a through 4.0.1. | |||||
| CVE-2025-69936 | 2026-07-31 | N/A | 9.8 CRITICAL | ||
| CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /edit_member.php?id=1. | |||||
| CVE-2025-69935 | 2026-07-31 | N/A | 9.8 CRITICAL | ||
| CodeAstro Membership Management System 1.0 is vulnerale to SQL Injection in the report.php and revenue_report.php via the fromDate parameter. | |||||
| CVE-2025-69934 | 2026-07-31 | N/A | 9.8 CRITICAL | ||
| CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /delete_members.php?id=1. | |||||
| CVE-2025-69933 | 2026-07-31 | N/A | 9.8 CRITICAL | ||
| CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /memberProfile.php?id=1. | |||||
| CVE-2025-69930 | 2026-07-31 | N/A | 9.8 CRITICAL | ||
| CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /print_membership_card.php?id=1. | |||||
| CVE-2025-65336 | 2026-07-31 | N/A | 9.8 CRITICAL | ||
| Ecommerce-project-with-php-and-mysqli-Fruits-Bazar 1.0 is vulnerable to SQL Injection in /show_price_by_pdtId.php. | |||||
| CVE-2023-2204 | 1 Campcodes | 1 Retro Basketball Shoes Online Store | 2026-07-31 | 6.5 MEDIUM | 6.3 MEDIUM |
| A vulnerability was found in Campcodes Retro Basketball Shoes Online Store 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file faqs.php. The manipulation of the argument id leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-226969 was assigned to this vulnerability. | |||||
| CVE-2023-2206 | 1 Campcodes | 1 Retro Basketball Shoes Online Store | 2026-07-31 | 6.5 MEDIUM | 6.3 MEDIUM |
| A vulnerability classified as critical has been found in Campcodes Retro Basketball Shoes Online Store 1.0. This affects an unknown part of the file contactus.php. The manipulation of the argument email leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-226971. | |||||
| CVE-2023-2205 | 1 Campcodes | 1 Retro Basketball Shoes Online Store | 2026-07-31 | 6.5 MEDIUM | 6.3 MEDIUM |
| A vulnerability was found in Campcodes Retro Basketball Shoes Online Store 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /function/login.php. The manipulation of the argument email leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-226970 is the identifier assigned to this vulnerability. | |||||
| CVE-2023-2207 | 1 Campcodes | 1 Retro Basketball Shoes Online Store | 2026-07-31 | 6.5 MEDIUM | 6.3 MEDIUM |
| A vulnerability classified as critical was found in Campcodes Retro Basketball Shoes Online Store 1.0. This vulnerability affects unknown code of the file contactus1.php. The manipulation of the argument email leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-226972. | |||||
| CVE-2023-2208 | 1 Campcodes | 1 Retro Basketball Shoes Online Store | 2026-07-31 | 6.5 MEDIUM | 6.3 MEDIUM |
| A vulnerability, which was classified as critical, has been found in Campcodes Retro Basketball Shoes Online Store 1.0. This issue affects some unknown processing of the file details.php. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-226973 was assigned to this vulnerability. | |||||
| CVE-2025-69947 | 2026-07-31 | N/A | 9.8 CRITICAL | ||
| SourceCodester Tailor Management System 1.0 is vulnerable to SQL Injection in customeredit.php?id=1. | |||||
| CVE-2025-69941 | 2026-07-31 | N/A | 9.8 CRITICAL | ||
| SourceCodester Tailor Management System 1.0 is vulnerable to SQL Injection in addmeasurement.php?id=1. | |||||
| CVE-2025-69937 | 2026-07-31 | N/A | 9.8 CRITICAL | ||
| CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in the edit_type.php endpoint via the Parameter id. | |||||
| CVE-2025-69938 | 2026-07-31 | N/A | 9.8 CRITICAL | ||
| CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in renew.php via the parameter membershipType. | |||||
