Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8873

8873 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-22699 WordPress Traveler Code plugin < 3.1.2 - Unauthenticated Arbitrary SQL Execution vulnerability — Traveler Code 9.0 Critical2025-02-04
CVE-2025-22700 WordPress Traveler Code plugin < 3.1.3 - Subscriber+ Arbitrary SQL Execution vulnerability — Traveler Code 8.5 High2025-02-04
CVE-2025-22206 Extension - joomsky.com - SQL injection in JS jobs component version 1.1.5 - 1.4.2 for Joomla — JS Jobs component for Joomla 7.2 -2025-02-04
CVE-2025-24901 SQL Injection endpoint 'deletar_permissao.php' parameter 'c', 'a', 'r' in WeGIA — WeGIA 8.8 -2025-02-03
CVE-2025-24902 SQL Injection endpoint 'salvar_cargo.php' parameter 'id_cargo' in WeGIA — WeGIA 8.8 -2025-02-03
CVE-2025-24905 SQL Injection endpoint 'get_codigobarras_cobranca.php' parameter 'codigo' in WeGIA — WeGIA 8.8 -2025-02-03
CVE-2025-24906 SQL Injection endpoint 'get_detalhes_cobranca.php' parameter 'codigo' in WeGIA — WeGIA 8.8 -2025-02-03
CVE-2025-24957 SQL Injection endpoint 'get_detalhes_socio.php' parameter 'id_socio' in WeGIA — WeGIA 8.8 -2025-02-03
CVE-2025-24958 SQL Injection endpoint 'salvar_tag.php' parameter 'id_tag' in WeGIA — WeGIA 8.8 -2025-02-03
CVE-2025-22691 WordPress WP Travel plugin <= 10.1.3 - SQL Injection vulnerability — WP Travel 7.6 High2025-02-03
CVE-2025-22693 WordPress Contest Gallery plugin <= 25.1.0 - SQL Injection vulnerability — Contest Gallery 7.6 High2025-02-03
CVE-2025-25181 Advantive VeraCore 安全漏洞 — VeraCore 5.8 Medium2025-02-03
CVE-2025-0967 code-projects Chat System add_chatroom.php sql injection — Chat System 6.3 Medium2025-02-02
CVE-2025-0950 itsourcecode Tailoring Management System staffview.php sql injection — Tailoring Management System 6.3 Medium2025-02-01
CVE-2025-0949 itsourcecode Tailoring Management System partview.php sql injection — Tailoring Management System 6.3 Medium2025-02-01
CVE-2025-0948 itsourcecode Tailoring Management System incview.php sql injection — Tailoring Management System 6.3 Medium2025-02-01
CVE-2025-0947 itsourcecode Tailoring Management System expview.php sql injection — Tailoring Management System 6.3 Medium2025-02-01
CVE-2025-0946 itsourcecode Tailoring Management System templatedelete.php sql injection — Tailoring Management System 6.3 Medium2025-02-01
CVE-2025-0945 itsourcecode Tailoring Management System typedelete.php sql injection — Tailoring Management System 6.3 Medium2025-02-01
CVE-2025-0944 itsourcecode Tailoring Management System customerview.php sql injection — Tailoring Management System 6.3 Medium2025-02-01
CVE-2025-0943 itsourcecode Tailoring Management System deldoc.php sql injection — Tailoring Management System 6.3 Medium2025-02-01
CVE-2024-13341 MultiLoca - WooCommerce Multi Locations Inventory Management <= 4.1.11 - Authenticated (Subscriber+) SQL Injection — MultiLoca - WooCommerce Multi Locations Inventory Management 6.5 Medium2025-02-01
CVE-2025-0934 code-projects Job Recruitment _call_job_search_ajax.php sql injection — Job Recruitment 6.3 Medium2025-01-31
CVE-2025-0929 SQL injection vulnerability in TeamCal Neo — TeamCal Neo 9.8 Critical2025-01-31
CVE-2025-0882 code-projects Chat System addnewmember.php sql injection — Chat System 6.3 Medium2025-01-30
CVE-2025-0881 Codezips Gym Management System saveroutine.php sql injection — Gym Management System 6.3 Medium2025-01-30
CVE-2025-0880 Codezips Gym Management System updateplan.php sql injection — Gym Management System 6.3 Medium2025-01-30
CVE-2025-0874 code-projects Simple Plugins Car Rental Management approve.php sql injection — Simple Plugins Car Rental Management 6.3 Medium2025-01-30
CVE-2025-0873 itsourcecode Tailoring Management System customeredit.php sql injection — Tailoring Management System 6.3 Medium2025-01-30
CVE-2025-0872 itsourcecode Tailoring Management System addpayment.php sql injection — Tailoring Management System 6.3 Medium2025-01-30

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8873 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.