Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8838

8838 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2019-25455 Web Ofisi E-Ticaret v3 SQL Injection via ara.html — Ticaret 7.5 High2026-02-22
CVE-2019-25456 Web Ofisi Emlak v2 SQL Injection via ara Parameter — Emlak 9.1 Critical2026-02-22
CVE-2019-25391 Ashop Shopping Cart Software Lastest Latest SQL Injection via bannedcustomers.php — Ashop Shopping Cart Software 8.2 High2026-02-22
CVE-2019-25366 microASP Portal+ CMS SQL Injection via pagina.phtml — microASP (Portal+) CMS 8.2 High2026-02-22
CVE-2019-25440 WebIncorp ERP Every version SQL Injection via product_detail.php — WebIncorp ERP 8.2 High2026-02-22
CVE-2019-25439 NoviSmart CMS SQL Injection via Referer HTTP Header — NoviSmart CMS 8.2 High2026-02-22
CVE-2019-25433 XOOPS CMS 2.5.9 SQL Injection via gerar_pdf.php — XOOPS CMS 8.2 High2026-02-22
CVE-2019-25452 Dolibarr ERP/CRM 10.0.1 SQL Injection via elemid — Dolibarr ERP/CRM 7.5 High2026-02-22
CVE-2019-25450 Dolibarr ERP/CRM 10.0.1 SQL Injection via card.php — Dolibarr ERP/CRM 7.5 High2026-02-22
CVE-2019-25446 DIGIT CENTRIS ERP Every version SQL Injection via datum1 Parameter — DIGIT CENTRIS 8.2 High2026-02-22
CVE-2019-25443 Inventory Webapp SQL Injection via add-item.php — inventory-webapp 8.2 High2026-02-22
CVE-2019-25442 Web Wiz Forums 12.01 SQL Injection via PF Parameter — Web Wiz Forums 7.5 High2026-02-22
CVE-2026-2912 code-projects Online Reviewer System studentresult-view.php sql injection — Online Reviewer System 7.3 High2026-02-22
CVE-2026-2867 itsourcecode Vehicle Management System billaction.php sql injection — Vehicle Management System 7.3 High2026-02-21
CVE-2026-27470 ZoneMinder: Second-Order SQL Injection in `getNearEvents()` via Stored Event Name and Cause Fields — zoneminder 8.8 High2026-02-21
CVE-2026-2865 itsourcecode Agri-Trading Online Shopping System HTTP POST Request productcontroller.php sql injection — Agri-Trading Online Shopping System 7.3 High2026-02-21
CVE-2019-25438 LabCollector 5.423 SQL Injection via login.php — LabCollector 7.5 High2026-02-20
CVE-2019-25432 Part-DB 0.4 Authentication Bypass via login.php — Part-DB 7.5 High2026-02-20
CVE-2019-25431 delpino73 Blue-Smiley-Organizer 1.32 SQL Injection via datetime — Blue-Smiley-Organizer 8.2 High2026-02-20
CVE-2019-25444 Fiverr Clone Script 1.2.2 SQL Injection via page Parameter — Fiverr Clone Script 9.1 Critical2026-02-20
CVE-2026-2848 SourceCodester Simple Responsive Tourism Website Registration Master.php sql injection — Simple Responsive Tourism Website 7.3 High2026-02-20
CVE-2026-24956 WordPress Download Manager Addons for Elementor plugin <= 1.3.0 - SQL Injection vulnerability — Download Manager Addons for Elementor 9.8AICriticalAI2026-02-20
CVE-2026-24959 WordPress JS Help Desk plugin <= 3.0.1 - SQL Injection vulnerability — JS Help Desk 9.8AICriticalAI2026-02-20
CVE-2025-69366 WordPress Emerce Core plugin <= 1.8 - SQL Injection vulnerability — Emerce Core 9.8AICriticalAI2026-02-20
CVE-2025-69337 WordPress Wolmart Core plugin <= 1.9.6 - SQL Injection vulnerability — Wolmart Core 9.8AICriticalAI2026-02-20
CVE-2025-69365 WordPress Uroan Core plugin <= 1.4.4 - SQL Injection vulnerability — Uroan Core 9.8AICriticalAI2026-02-20
CVE-2025-69310 WordPress Woodly Core plugin <= 1.4 - SQL Injection vulnerability — Woodly Core 9.8AICriticalAI2026-02-20
CVE-2025-69309 WordPress Saasplate Core plugin <= 1.2.8 - SQL Injection vulnerability — Saasplate Core 9.8AICriticalAI2026-02-20
CVE-2025-69308 WordPress Nestbyte Core plugin <= 1.2 - SQL Injection vulnerability — Nestbyte Core 9.8AICriticalAI2026-02-20
CVE-2025-69306 WordPress Electio Core plugin <= 1.4 - SQL Injection vulnerability — Electio Core 9.8AICriticalAI2026-02-20

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8838 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.