Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8850

8850 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-13290 code-projects Simple Food Ordering System saveorder.php sql injection — Simple Food Ordering System 6.3 Medium2025-11-17
CVE-2025-13289 1000projects Design & Development of Student Database Management System SubjectDetails.php sql injection — Design & Development of Student Database Management System 6.3 Medium2025-11-17
CVE-2025-13287 itsourcecode Online Voting System index.php sql injection — Online Voting System 6.3 Medium2025-11-17
CVE-2025-13286 itsourcecode Online Voting System ajax.php sql injection — Online Voting System 6.3 Medium2025-11-17
CVE-2025-13285 itsourcecode Online Voting System login.php sql injection — Online Voting System 7.3 High2025-11-17
CVE-2025-13280 CodeAstro Simple Inventory System Login index.php sql injection — Simple Inventory System 7.3 High2025-11-17
CVE-2025-13279 code-projects Nero Social Networking Site profilefriends.php sql injection — Nero Social Networking Site 6.3 Medium2025-11-17
CVE-2025-13278 projectworlds Advanced Library Management System borrowed_book_search.php sql injection — Advanced Library Management System 6.3 Medium2025-11-17
CVE-2025-13277 code-projects Nero Social Networking Site friendsphoto.php sql injection — Nero Social Networking Site 7.3 High2025-11-17
CVE-2025-13276 g33kyrash Online-Banking-System index.php sql injection — Online-Banking-System 7.3 High2025-11-17
CVE-2025-13274 Campcodes School Fees Payment Management System ajax.php sql injection — School Fees Payment Management System 6.3 Medium2025-11-17
CVE-2025-13273 Campcodes School Fees Payment Management System ajax.php sql injection — School Fees Payment Management System 6.3 Medium2025-11-17
CVE-2025-13272 Campcodes School Fees Payment Management System manage_course.php sql injection — School Fees Payment Management System 7.3 High2025-11-17
CVE-2025-13271 Campcodes School Fees Payment Management System ajax.php sql injection — School Fees Payment Management System 7.3 High2025-11-17
CVE-2025-13270 Campcodes School Fees Payment Management System ajax.php sql injection — School Fees Payment Management System 6.3 Medium2025-11-17
CVE-2025-13269 Campcodes School Fees Payment Management System ajax.php sql injection — School Fees Payment Management System 6.3 Medium2025-11-17
CVE-2025-13267 SourceCodester Dental Clinic Appointment Reservation System success.php sql injection — Dental Clinic Appointment Reservation System 6.3 Medium2025-11-17
CVE-2025-13264 SourceCodester Online Magazine Management System view_magazine.php sql injection — Online Magazine Management System 6.3 Medium2025-11-17
CVE-2025-13263 SourceCodester Online Magazine Management System categories.php sql injection — Online Magazine Management System 6.3 Medium2025-11-17
CVE-2025-13260 Campcodes Supplier Management System edit_product.php sql injection — Supplier Management System 6.3 Medium2025-11-17
CVE-2025-13259 Campcodes Supplier Management System edit_unit.php sql injection — Supplier Management System 6.3 Medium2025-11-17
CVE-2025-13257 itsourcecode Inventory Management System index.php sql injection — Inventory Management System 7.3 High2025-11-17
CVE-2025-13256 projectworlds Advanced Library Management System borrow.php sql injection — Advanced Library Management System 6.3 Medium2025-11-17
CVE-2025-13255 projectworlds Advanced Library Management System book_search.php sql injection — Advanced Library Management System 6.3 Medium2025-11-17
CVE-2025-13254 projectworlds Advanced Library Management System add_member.php sql injection — Advanced Library Management System 6.3 Medium2025-11-17
CVE-2025-13253 projectworlds Advanced Library Management System add_librarian.php sql injection — Advanced Library Management System 6.3 Medium2025-11-16
CVE-2025-13251 WeiYe-Jing datax-web sql injection — datax-web 6.3 Medium2025-11-16
CVE-2025-13248 SourceCodester Patients Waiting Area Queue Management System api_patient_schedule.php sql injection — Patients Waiting Area Queue Management System 7.3 High2025-11-16
CVE-2025-13247 PHPGurukul Tourism Management System user-bookings.php sql injection — Tourism Management System 7.3 High2025-11-16
CVE-2025-13243 code-projects Student Information System editprofile.php sql injection — Student Information System 6.3 Medium2025-11-16

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8850 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.