Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2025-01-19 CVE-2025-0563 SQL Injection vulnerability in Anisha Fantasy-Cricket 1.0
A vulnerability was found in code-projects Fantasy-Cricket 1.0.
network
low complexity
anisha CWE-89
critical
9.8
2025-01-19 CVE-2025-0561 SQL Injection vulnerability in Angeljudesuarez Farm Management System 1.0
A vulnerability has been found in itsourcecode Farm Management System 1.0 and classified as critical.
network
low complexity
angeljudesuarez CWE-89
critical
9.8
2025-01-18 CVE-2024-13375 The Adifier System plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 3.1.7.
network
low complexity
CWE-620
critical
9.8
2025-01-17 CVE-2025-0541 SQL Injection vulnerability in Codezips GYM Management System 1.0
A vulnerability was found in Codezips Gym Management System 1.0 and classified as critical.
network
low complexity
codezips CWE-89
critical
9.8
2025-01-17 CVE-2024-57035 SQL Injection vulnerability in Wegia 3.2.0
WeGIA v3.2.0 is vulnerable to SQL Injection viathe nextPage parameter in /controle/control.php.
network
low complexity
wegia CWE-89
critical
9.8
2025-01-17 CVE-2025-0540 SQL Injection vulnerability in Angeljudesuarez Tailoring Management System 1.0
A vulnerability has been found in itsourcecode Tailoring Management System 1.0 and classified as critical.
network
low complexity
angeljudesuarez CWE-89
critical
9.8
2025-01-17 CVE-2024-57031 SQL Injection vulnerability in Wegia
WeGIA < 3.2.0 is vulnerable to SQL Injection in /funcionario/remuneracao.php via the id_funcionario parameter.
network
low complexity
wegia CWE-89
critical
9.8
2025-01-17 CVE-2024-57032 Incorrect Authorization vulnerability in Wegia
WeGIA < 3.2.0 is vulnerable to Incorrect Access Control in controle/control.php.
network
low complexity
wegia CWE-863
critical
9.8
2025-01-17 CVE-2024-57034 SQL Injection vulnerability in Wegia
WeGIA < 3.2.0 is vulnerable to SQL Injection in query_geracao_auto.php via the query parameter.
network
low complexity
wegia CWE-89
critical
9.8
2025-01-17 CVE-2025-0536 SQL Injection vulnerability in 1000Projects Attendance Tracking Management System 1.0
A vulnerability classified as critical was found in 1000 Projects Attendance Tracking Management System 1.0.
network
low complexity
1000projects CWE-89
critical
9.8