Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8840

8840 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2026-2122 Xiaopi Panel WAF Firewall demo.php sql injection — Panel 6.3 Medium2026-02-08
CVE-2026-2117 itsourcecode Society Management System edit_activity.php sql injection — Society Management System 7.3 High2026-02-07
CVE-2026-2116 itsourcecode Society Management System edit_expenses.php sql injection — Society Management System 7.3 High2026-02-07
CVE-2026-2115 itsourcecode Society Management System delete_expenses.php sql injection — Society Management System 7.3 High2026-02-07
CVE-2026-2114 itsourcecode Society Management System edit_admin.php sql injection — Society Management System 7.3 High2026-02-07
CVE-2026-2090 SourceCodester Online Class Record System search.php sql injection — Online Class Record System 7.3 High2026-02-07
CVE-2026-2089 SourceCodester Online Class Record System controller.php sql injection — Online Class Record System 7.3 High2026-02-07
CVE-2026-2088 PHPGurukul Beauty Parlour Management System accepted-appointment.php sql injection — Beauty Parlour Management System 7.3 High2026-02-07
CVE-2026-2087 SourceCodester Online Class Record System login.php sql injection — Online Class Record System 7.3 High2026-02-07
CVE-2026-2083 code-projects Social Networking Site delete_post.php sql injection — Social Networking Site 7.3 High2026-02-07
CVE-2025-15477 The Bucketlister <= 0.1.5 - Authenticated (Contributor+) SQL Injection via `category` and `id` Shortcode Attributes — The Bucketlister 6.5 Medium2026-02-07
CVE-2026-2073 itsourcecode School Management System index.php sql injection — School Management System 7.3 High2026-02-07
CVE-2020-37163 QuickDate 1.3.2 - SQL Injection — QuickDate 8.2 High2026-02-06
CVE-2020-37154 eLection 2.0 - 'id' SQL Injection — eLection 7.1 High2026-02-06
CVE-2020-37147 ATutor 2.2.4 - 'id' SQL Injection — ATutor 7.1 High2026-02-06
CVE-2020-37141 AMSS++ v 4.31 - 'id' SQL Injection — AMSS++ 8.2 High2026-02-06
CVE-2026-25544 Payload has an SQL Injection in JSON/RichText Queries on PostgreSQL/SQLite Adapters — payload 9.8 Critical2026-02-06
CVE-2025-69214 OpenSTAManager has a SQL Injection in ajax_select.php (componenti endpoint) — openstamanager 8.8AIHighAI2026-02-06
CVE-2025-69216 OpenSTAManager has an SQL Injection in Scadenzario Print Template — openstamanager 6.5AIMediumAI2026-02-06
CVE-2026-24416 OpenSTAManager has a Time-Based Blind SQL Injection in Article Pricing Module — openstamanager 9.1AICriticalAI2026-02-06
CVE-2026-24417 OpenSTAManager has a Time-Based Blind SQL Injection with Amplified Denial of Service — openstamanager 9.1AICriticalAI2026-02-06
CVE-2026-24418 OpenSTAManager has an SQL Injection vulnerability in the Scadenzario bulk operations module — openstamanager 8.1AIHighAI2026-02-06
CVE-2026-24419 OpenSTAManager has an SQL Injection in the Prima Nota module — openstamanager 9.1AICriticalAI2026-02-06
CVE-2026-2060 code-projects Simple Blood Donor Management System editcampaignform.php sql injection — Simple Blood Donor Management System 7.3 High2026-02-06
CVE-2026-2059 SourceCodester Medical Center Portal Management System emp_edit1.php sql injection — Medical Center Portal Management System 7.3 High2026-02-06
CVE-2019-25303 TheJshen contentManagementSystem 1.04 - 'id' SQL Injection — contentManagementSystem 7.1 High2026-02-06
CVE-2019-25300 thejshen Globitek CMS 1.4 - 'id' SQL Injection — Globitek CMS 7.1 High2026-02-06
CVE-2019-25298 html5_snmp 1.11 - 'Router_ID' SQL Injection — html5_snmp 9.1 Critical2026-02-06
CVE-2019-25299 rimbalinux AhadPOS 1.11 - 'alamatCustomer' SQL Injection — AhadPOS 7.1 High2026-02-06
CVE-2026-2058 mathurvishal CloudClassroom-PHP-Project Post Query Details postquerypublic.php sql injection — CloudClassroom-PHP-Project 7.3 High2026-02-06

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8840 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.