Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8841

8841 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2026-1594 itsourcecode Society Management System add_expenses.php sql injection — Society Management System 7.3 High2026-01-29
CVE-2026-1593 itsourcecode Society Management System edit_expenses_query.php sql injection — Society Management System 7.3 High2026-01-29
CVE-2020-37005 TimeClock Software 1.01 Authenticated Time-Based SQL Injection — TimeClock Software 7.1 High2026-01-29
CVE-2020-37004 Ultimate Project Manager CRM PRO 2.0.5 - SQLi Credentials Leakage — Ultimate Project Manager CRM PRO 8.2 High2026-01-29
CVE-2020-37006 berliCRM 1.0.24 - 'src_record' SQL Injection — berliCRM 8.2 High2026-01-29
CVE-2020-36999 elaniin CMS 1.0 - Authentication Bypass — Elaniin CMS 8.2 High2026-01-29
CVE-2026-1590 itsourcecode School Management System index.php sql injection — School Management System 7.3 High2026-01-29
CVE-2026-1589 itsourcecode School Management System index.php sql injection — School Management System 7.3 High2026-01-29
CVE-2026-1552 SEMCMS SEMCMS_Info.php sql injection — SEMCMS 6.3 Medium2026-01-29
CVE-2025-15344 Tanium addressed a SQL injection vulnerability in Asset. — Asset 6.3 Medium2026-01-28
CVE-2026-1551 itsourcecode School Management System controller.php sql injection — School Management System 6.3 Medium2026-01-28
CVE-2026-1546 jishenghua jshERP com.jsh.erp.datasource.mappers.DepotItemMapperEx importItemExcel getBillItemByParam sql injection — jshERP 6.3 Medium2026-01-28
CVE-2026-1545 itsourcecode School Management System index.php sql injection — School Management System 7.3 High2026-01-28
CVE-2026-1535 code-projects Online Music Site AdminReply.php sql injection — Online Music Site 7.3 High2026-01-28
CVE-2026-1534 code-projects Online Music Site AdminEditUser.php sql injection — Online Music Site 7.3 High2026-01-28
CVE-2026-1533 code-projects Online Music Site AdminAddCategory.php sql injection — Online Music Site 4.7 Medium2026-01-28
CVE-2020-36972 SmartBlog 2.0.1 - 'id_post' Blind SQL injection — SmartBlog 8.2 High2026-01-28
CVE-2020-36945 WebDamn User Registration & Login System with User Panel - SQLi Auth Bypass — WebDamn User Registration & Login System with User Panel 8.2 High2026-01-28
CVE-2025-57792 SQL Injection Vulnerability in Explorance Blue — Blue 9.8AICriticalAI2026-01-28
CVE-2025-57793 SQL Injection Vulnerability in Explorance Blue — Blue 9.8AICriticalAI2026-01-28
CVE-2026-22243 EGroupware has SQL Injection in Nextmatch Filter Processing — egroupware 8.8AIHighAI2026-01-28
CVE-2026-0702 VidShop – Shoppable Videos for WooCommerce <= 1.1.4 - Unauthenticated Time-Based SQL Injection via 'fields' — VidShop – Shoppable Videos for WooCommerce 7.5 High2026-01-28
CVE-2026-1483 Out-of-band SQL injection in Quatuor Performance Evaluation — Evaluación de Desempeño (EDD) 7.5AIHighAI2026-01-27
CVE-2026-1482 Out-of-band SQL injection in Quatuor Performance Evaluation — Evaluación de Desempeño (EDD) 7.5AIHighAI2026-01-27
CVE-2026-1481 Out-of-band SQL injection in Quatuor Performance Evaluation — Evaluación de Desempeño (EDD) 7.5AIHighAI2026-01-27
CVE-2026-1480 Out-of-band SQL injection in Quatuor Performance Evaluation — Evaluación de Desempeño (EDD) 7.5AIHighAI2026-01-27
CVE-2026-1479 Out-of-band SQL injection in Quatuor Performance Evaluation — Evaluación de Desempeño (EDD) 7.5AIHighAI2026-01-27
CVE-2026-1478 Out-of-band SQL injection in Quatuor Performance Evaluation — Evaluación de Desempeño (EDD) 7.5AIHighAI2026-01-27
CVE-2026-1477 Out-of-band SQL injection in Quatuor Performance Evaluation — Evaluación de Desempeño (EDD) 7.5AIHighAI2026-01-27
CVE-2026-1476 Out-of-band SQL injection in Quatuor Performance Evaluation — Evaluación de Desempeño (EDD) 7.5AIHighAI2026-01-27

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8841 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.