Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8867

8867 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-5782 PHPGurukul Employee Record Management System resetpassword.php sql injection — Employee Record Management System 6.3 Medium2025-06-06
CVE-2025-5780 code-projects Patient Record Management System view_dental.php sql injection — Patient Record Management System 6.3 Medium2025-06-06
CVE-2025-5779 code-projects Patient Record Management System birthing.php sql injection — Patient Record Management System 6.3 Medium2025-06-06
CVE-2025-5778 1000 Projects ABC Courier Management System admin sql injection — ABC Courier Management System 7.3 High2025-06-06
CVE-2025-49421 WordPress WP Text Expander plugin <= 1.0.1 - SQL Injection Vulnerability — WP Text Expander 7.6 High2025-06-06
CVE-2023-26003 WordPress WP Post Corrector <= 1.0.2 - SQL Injection Vulnerability — WP Post Corrector 7.6 High2025-06-06
CVE-2025-26590 WordPress Complete Google Seo Scan plugin <= 3.5.1 - SQL Injection Vulnerability — Complete Google Seo Scan 7.6 High2025-06-06
CVE-2025-30989 WordPress Libro de Reclamaciones y Quejas plugin <= 0.9 - SQL Injection Vulnerability — Libro de Reclamaciones y Quejas 7.6 High2025-06-06
CVE-2025-49328 WordPress Store Locator WordPress plugin <= 1.5.1 - SQL Injection Vulnerability — Store Locator WordPress 7.6 High2025-06-06
CVE-2025-49327 WordPress ShortLinks Pro plugin <= 1.0.7 - SQL Injection Vulnerability — ShortLinks Pro 7.6 High2025-06-06
CVE-2025-49326 WordPress GamiPress plugin <= 7.4.5 - SQL Injection Vulnerability — GamiPress 7.6 High2025-06-06
CVE-2025-49323 WordPress Hydra Booking plugin <= 1.1.10 - SQL Injection Vulnerability — Hydra Booking 8.5 High2025-06-06
CVE-2025-49315 WordPress Persian Woocommerce SMS plugin <= 7.0.10 - SQL Injection Vulnerability — Persian Woocommerce SMS 7.6 High2025-06-06
CVE-2025-49263 WordPress WC Vendors Marketplace plugin <= 2.5.6 - SQL Injection Vulnerability — WC Vendors Marketplace 7.6 High2025-06-06
CVE-2025-5762 code-projects Patient Record Management System view_hematology.php sql injection — Patient Record Management System 6.3 Medium2025-06-06
CVE-2025-5761 PHPGurukul BP Monitoring Management System edit-family-member.php sql injection — BP Monitoring Management System 6.3 Medium2025-06-06
CVE-2025-5759 PHPGurukul Local Services Search Engine Management System edit-person-detail.php sql injection — Local Services Search Engine Management System 7.3 High2025-06-06
CVE-2025-5758 SourceCodester Open Source Clinic Management System doctor.php sql injection — Open Source Clinic Management System 7.3 High2025-06-06
CVE-2025-5756 code-projects Real Estate Property Management System EditCity.php sql injection — Real Estate Property Management System 7.3 High2025-06-06
CVE-2025-5755 SourceCodester Open Source Clinic Management System email_config.php sql injection — Open Source Clinic Management System 7.3 High2025-06-06
CVE-2025-5729 code-projects Health Center Patient Record Management System birthing_record.php sql injection — Health Center Patient Record Management System 6.3 Medium2025-06-06
CVE-2025-5563 WP-Addpub <= 1.2.8 - Authenticated (Contributor+) SQL Injection — WP-Addpub 6.5 Medium2025-06-06
CVE-2025-4964 WP Online Users Stats <= 1.0.0 - Authenticated (Editor+) SQL Injection via table_name Parameter — WP Online Users Stats 4.9 Medium2025-06-06
CVE-2025-5716 SourceCodester Open Source Clinic Management System login.php sql injection — Open Source Clinic Management System 7.3 High2025-06-06
CVE-2025-5712 SourceCodester Open Source Clinic Management System appointment.php sql injection — Open Source Clinic Management System 7.3 High2025-06-06
CVE-2025-5711 code-projects Real Estate Property Management System InsertCity.php sql injection — Real Estate Property Management System 7.3 High2025-06-06
CVE-2025-5710 code-projects Real Estate Property Management System InsertState.php sql injection — Real Estate Property Management System 7.3 High2025-06-06
CVE-2025-5709 code-projects Real Estate Property Management System InsertCategory.php sql injection — Real Estate Property Management System 7.3 High2025-06-06
CVE-2025-5708 code-projects Real Estate Property Management System NewsReport.php sql injection — Real Estate Property Management System 7.3 High2025-06-06
CVE-2025-5707 PHPGurukul Human Metapneumovirus Testing Management System registered-user-testing.php sql injection — Human Metapneumovirus Testing Management System 7.3 High2025-06-06

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8867 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.