Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8853

8853 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-11480 SourceCodester Simple E-Commerce Bookstore register.php sql injection — Simple E-Commerce Bookstore 7.3 High2025-10-08
CVE-2025-11479 SourceCodester Wedding Reservation Management System function.php insertReservation sql injection — Wedding Reservation Management System 7.3 High2025-10-08
CVE-2025-11478 SourceCodester Farm Management System myCart.php sql injection — Farm Management System 6.3 Medium2025-10-08
CVE-2025-11477 SourceCodester Wedding Reservation Management System global.php sql injection — Wedding Reservation Management System 7.3 High2025-10-08
CVE-2025-11476 SourceCodester Simple E-Commerce Bookstore index.php sql injection — Simple E-Commerce Bookstore 7.3 High2025-10-08
CVE-2025-11475 projectworlds Advanced Library Management System view_member.php sql injection — Advanced Library Management System 7.3 High2025-10-08
CVE-2025-11474 SourceCodester Hotel and Lodge Management System edit_booking.php sql injection — Hotel and Lodge Management System 6.3 Medium2025-10-08
CVE-2025-11473 SourceCodester Hotel and Lodge Management System edit_curr.php sql injection — Hotel and Lodge Management System 7.3 High2025-10-08
CVE-2025-11472 SourceCodester Hotel and Lodge Management System edit_room.php sql injection — Hotel and Lodge Management System 7.3 High2025-10-08
CVE-2025-11471 SourceCodester Hotel and Lodge Management System edit_customer.php sql injection — Hotel and Lodge Management System 7.3 High2025-10-08
CVE-2025-10649 Welcart e-Commerce <= 2.11.21 - Authenticated (Author+) SQL Injection via Cookie — Welcart e-Commerce 6.5 Medium2025-10-08
CVE-2025-10351 SQL injection vulnerability in Melis Platform — Melis Platform 9.8AICriticalAI2025-10-08
CVE-2025-11469 SourceCodester Hotel and Lodge Management System save_customer.php sql injection — Hotel and Lodge Management System 6.3 Medium2025-10-08
CVE-2025-11434 itsourcecode Student Transcript Processing System login.php sql injection — Student Transcript Processing System 7.3 High2025-10-08
CVE-2025-11432 itsourcecode Leave Management System reset.php sql injection — Leave Management System 7.3 High2025-10-08
CVE-2025-11204 RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login <= 6.0.6.2 - Authenticated (Administrator+) SQL Injection — RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login 7.2 High2025-10-08
CVE-2025-11431 code-projects Web-Based Inventory and POS System transaction.php sql injection — Web-Based Inventory and POS System 6.3 Medium2025-10-08
CVE-2025-11430 SourceCodester Simple E-Commerce Bookstore cart.php sql injection — Simple E-Commerce Bookstore 7.3 High2025-10-08
CVE-2025-10587 Community Events <= 1.5.1 - Unauthenticated SQL Injection — Community Events 9.8 Critical2025-10-08
CVE-2025-11424 code-projects Web-Based Inventory and POS System login.php sql injection — Web-Based Inventory and POS System 7.3 High2025-10-08
CVE-2025-11422 Campcodes Advanced Online Voting Management System login.php sql injection — Advanced Online Voting Management System 7.3 High2025-10-08
CVE-2025-11420 code-projects E-Commerce Website edit_order_details.php sql injection — E-Commerce Website 7.3 High2025-10-08
CVE-2025-11416 PHPGurukul Beauty Parlour Management System invoices.php sql injection — Beauty Parlour Management System 7.3 High2025-10-07
CVE-2025-11415 PHPGurukul Beauty Parlour Management System customer-list.php sql injection — Beauty Parlour Management System 7.3 High2025-10-07
CVE-2025-11410 Campcodes Advanced Online Voting Management System voters_add.php sql injection — Advanced Online Voting Management System 6.3 Medium2025-10-07
CVE-2025-11409 Campcodes Advanced Online Voting Management System index.php sql injection — Advanced Online Voting Management System 6.3 Medium2025-10-07
CVE-2025-11405 SourceCodester Hotel and Lodge Management System del_tax.php sql injection — Hotel and Lodge Management System 6.3 Medium2025-10-07
CVE-2025-11404 SourceCodester Hotel and Lodge Management System save_tax.php sql injection — Hotel and Lodge Management System 6.3 Medium2025-10-07
CVE-2025-11403 SourceCodester Hotel and Lodge Management System del_booking.php sql injection — Hotel and Lodge Management System 6.3 Medium2025-10-07
CVE-2025-11402 SourceCodester Hotel and Lodge Management System del_curr.php sql injection — Hotel and Lodge Management System 6.3 Medium2025-10-07

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8853 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.