CVE Datenbank
Durchsuchbare Datenbank mit Sicherheitslücken. Filtere nach Hersteller, Schweregrad oder Zeitraum.
CVE-2026-72607 - A stored SQL injection vulnerability in Koha through 24.11.17, 25.05.12, 25.11.06, and 26.05.01 allo
CVE-2026-18617 - A flaw was found in the Data Science Pipelines Operator (DSPO). A namespace editor can exploit a vul
CVE-2026-72862 - Dokploy is a free, self-hostable Platform as a Service (PaaS). Prior to 0.29.13, the mariadb.ts, mon
CVE-2026-66738 - SPIP before 4.4.18 contains a code injection vulnerability in SQLite-backed installations. The navig
CVE-2026-63106 - ReadyEcommerce before 4.5.2 contains an unauthenticated SQL injection vulnerability in the product l
CVE-2026-72572 - A path traversal vulnerability in o1lab/xmysql (all versions) allows an unauthenticated remote attac
CVE-2026-71237 - Miantang/IoT-PHP's index.php implements a POST /userlogin route that reads the password directly fro
CVE-2026-69251 - Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.
CVE-2026-39931 - OpenEMR through 8.2.0 contains an authenticated SQL injection vulnerability in the backup configurat
CVE-2025-65336 - Ecommerce-project-with-php-and-mysqli-Fruits-Bazar 1.0 is vulnerable to SQL Injection in /show_price
CVE-2025-67406 - https://www.sourcecodester.com Advocate office management system 1.0 is affected by: SQL Injection.
CVE-2021-32087 - An issue was discovered in Quest KACE Systems Deployment Appliance (SMA) 11.0.273. It installs with
CVE-2021-32086 - An issue was discovered in Quest KACE Systems Deployment Appliance (SMA) 11.0.273. It uses a hardcod
CVE-2021-32085 - An issue was discovered in Quest KACE Systems Deployment Appliance (SMA) 11.0.273. It installs with
CVE-2025-50455 - SQL injection vulnerability exists in the order_by parameter of the /customers/search endpoint in Al
CVE-2026-55219 - Paymenter is a free and open-source webshop solution for management of hosting services. In versions
CVE-2026-53595 - FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to version
CVE-2026-61828 - Nixpkgs is a collection of software packages that can be installed with the Nix package manager. Pri
CVE-2026-50147 - Metabase is an open-source business intelligence and embedded analytics tool. From 1.57.0 until 1.57
CVE-2026-47199 - Frappe is a full-stack web application framework. Prior to 16.18.3 and 15.108.0, check_safe_sql_quer
CVE-2026-55170 - OpenFGA is an authorization/permission engine built for developers. Prior to 1.18.0, when MySQL is b
CVE-2026-59257 - n8n before 1.123.61, 2.x before 2.27.4, and 2.28.x before 2.28.1 contains a SQL injection vulnerabil
CVE-2026-42201 - Coolify is an open-source and self-hostable tool for managing servers, applications, and databases.
CVE-2026-14622 - A vulnerability was found in jairiidriss restaurant-website-php-mysql up to 521428b5b612449df0cf4a5d
CVE-2026-57517 - Control Web Panel before 0.9.8.1225 contains a blind SQL injection vulnerability that allows unauthe
CVE-2026-37149 - GROCERY-STORE-MANAGEMENT-SYSTEM-USING-PHP-AND-MYSQL-PHPMYADMIN v1.0 was discovered to contain a SQL
CVE-2026-53949 - Ghost is a Node.js content management system. From 5.46.1 until 6.21.2, the validation applied to fi
CVE-2026-54419 - claudiopizzillo PIAF-HMS (PBX-In-A-Flash Hotel Management System; no released versions, latest commi
CVE-2026-55740 - Nur-Alam39 bus-ticket (no released versions; latest commit 459cabdbeb99c00225b26e46e3c2c30ae1de7bad)
CVE-2026-48165 - MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.27
CVE-2026-48163 - MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.27
CVE-2026-44173 - MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.26
CVE-2026-44172 - MariaDB server is a community developed fork of MySQL server. In versions 3.3.18 and 3.4.8, an appli
CVE-2026-44171 - MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.26
CVE-2026-44170 - MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.26
CVE-2026-44169 - MariaDB server is a community developed fork of MySQL server. From versions 11.4.1 to before 11.4.11
CVE-2026-44168 - MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.26
CVE-2026-49261 - MariaDB server is a community developed fork of MySQL server. Versions 10.6.1 through 10.6.26, 10.11
CVE-2026-11529 - A vulnerability was determined in designcomputer mysql-mcp-server up to 0.2.2. The impacted element
CVE-2026-48188 - An improper Input Validation vulnerability in OTRS or ((OTRS)) Community Edition database layer modu
CVE-2026-43917 - Dokploy is a free, self-hostable Platform as a Service (PaaS). In 0.19.0 and earlier, the protectedP
CVE-2025-41281 - Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS
CVE-2025-41280 - Nozomi Networks Labs identified a CWE-23: Relative Path Traversal (Zip Slip) in Waterfall WF-500 RX
CVE-2026-44521 - elFinder is an open-source file manager for web, written in JavaScript using jQuery UI. Prior to 2.1
CVE-2018-25372 - MedDream PACS Server Premium 6.7.1.1 contains an SQL injection vulnerability that allows unauthentic
CVE-2026-48242 - Open ISES Tickets before 3.44.2 contains hardcoded MySQL database connection credentials (host, user
CVE-2026-48241 - Open ISES Tickets before 3.44.2 contains hardcoded MySQL database credentials in loader.php (a publi
CVE-2026-48236 - Open ISES Tickets before 3.44.2 contains a SQL injection vulnerability in db_loader.php where the mu
CVE-2026-44047 - An SQL injection vulnerability in the MySQL CNID backend in Netatalk 3.1.0 through 4.4.2 allows a re
🏢 CVE nach Hersteller
Empfohlene Sicherheitstools
Unterstütze uns durch einen Kauf - wir erhalten eine kleine Provision.