Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8861

8861 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-11420 code-projects E-Commerce Website edit_order_details.php sql injection — E-Commerce Website 7.3 High2025-10-08
CVE-2025-11416 PHPGurukul Beauty Parlour Management System invoices.php sql injection — Beauty Parlour Management System 7.3 High2025-10-07
CVE-2025-11415 PHPGurukul Beauty Parlour Management System customer-list.php sql injection — Beauty Parlour Management System 7.3 High2025-10-07
CVE-2025-11410 Campcodes Advanced Online Voting Management System voters_add.php sql injection — Advanced Online Voting Management System 6.3 Medium2025-10-07
CVE-2025-11409 Campcodes Advanced Online Voting Management System index.php sql injection — Advanced Online Voting Management System 6.3 Medium2025-10-07
CVE-2025-11405 SourceCodester Hotel and Lodge Management System del_tax.php sql injection — Hotel and Lodge Management System 6.3 Medium2025-10-07
CVE-2025-11404 SourceCodester Hotel and Lodge Management System save_tax.php sql injection — Hotel and Lodge Management System 6.3 Medium2025-10-07
CVE-2025-11403 SourceCodester Hotel and Lodge Management System del_booking.php sql injection — Hotel and Lodge Management System 6.3 Medium2025-10-07
CVE-2025-11402 SourceCodester Hotel and Lodge Management System del_curr.php sql injection — Hotel and Lodge Management System 6.3 Medium2025-10-07
CVE-2025-11401 SourceCodester Hotel and Lodge Management System save_curr.php sql injection — Hotel and Lodge Management System 6.3 Medium2025-10-07
CVE-2025-11400 SourceCodester Hotel and Lodge Management System del_room.php sql injection — Hotel and Lodge Management System 6.3 Medium2025-10-07
CVE-2025-11399 SourceCodester Hotel and Lodge Management System save_room.php sql injection — Hotel and Lodge Management System 6.3 Medium2025-10-07
CVE-2025-11397 SourceCodester Hotel and Lodge Management System login.php sql injection — Hotel and Lodge Management System 7.3 High2025-10-07
CVE-2025-11396 code-projects Simple Food Ordering System product.php sql injection — Simple Food Ordering System 7.3 High2025-10-07
CVE-2025-40888 Authenticated SQL Injection on CLI functionality in Guardian/CMC before 25.3.0 — Guardian 5.3 Medium2025-10-07
CVE-2025-40887 Authenticated SQL Injection on Alert functionality in Guardian/CMC before 25.2.0 — Guardian 5.3 Medium2025-10-07
CVE-2025-40886 Authenticated SQL Injection on Alert functionality in Guardian/CMC before 25.2.0 — Guardian 7.5 High2025-10-07
CVE-2025-40885 Authenticated SQL Injection on Smart Polling functionality in Guardian/CMC before 25.2.0 — Guardian 5.3 Medium2025-10-07
CVE-2025-0603 SQLi in Callvision Healthcare's Callvision Emergency Code — Callvision Emergency Code 9.8 Critical2025-10-07
CVE-2025-11359 code-projects Simple Banking System transfermoney.php sql injection — Simple Banking System 6.3 Medium2025-10-07
CVE-2025-11358 code-projects Simple Banking System removeuser.php sql injection — Simple Banking System 6.3 Medium2025-10-07
CVE-2025-11357 code-projects Simple Banking System createuser.php sql injection — Simple Banking System 6.3 Medium2025-10-07
CVE-2025-11350 Campcodes Online Apartment Visitor Management System bwdates-reports-details.php sql injection — Online Apartment Visitor Management System 7.3 High2025-10-07
CVE-2025-11349 Campcodes Online Apartment Visitor Management System search-visitor.php sql injection — Online Apartment Visitor Management System 7.3 High2025-10-07
CVE-2025-11348 Campcodes Online Apartment Visitor Management System index.php sql injection — Online Apartment Visitor Management System 7.3 High2025-10-07
CVE-2025-11343 code-projects Student Crud Operation delete.php sql injection — Student Crud Operation 7.3 High2025-10-06
CVE-2025-11342 code-projects Online Course Registration edit-course.php sql injection — Online Course Registration 4.7 Medium2025-10-06
CVE-2025-52472 XWiki Platform vulnerable to HQL injection via wiki and space search REST API — xwiki-platform 7.1AIHighAI2025-10-06
CVE-2025-11334 Campcodes Online Apartment Visitor Management System visitor-detail.php sql injection — Online Apartment Visitor Management System 7.3 High2025-10-06
CVE-2025-11330 PHPGurukul Beauty Parlour Management System sales-reports-detail.php sql injection — Beauty Parlour Management System 6.3 Medium2025-10-06

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8861 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.