Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8861

8861 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-11064 Campcodes Online Learning Management System teachers.php sql injection — Online Learning Management System 7.3 High2025-09-27
CVE-2025-11063 Campcodes Online Learning Management System edit_department.php sql injection — Online Learning Management System 7.3 High2025-09-27
CVE-2025-11062 Campcodes Online Learning Management System save_student.php sql injection — Online Learning Management System 7.3 High2025-09-27
CVE-2025-11061 Campcodes Online Learning Management System edit_student.php sql injection — Online Learning Management System 7.3 High2025-09-27
CVE-2025-11057 SourceCodester Pet Grooming Management Software print_inv.php sql injection — Pet Grooming Management Software 7.3 High2025-09-27
CVE-2025-11056 ProjectsAndPrograms School Management System select-students.php sql injection — School Management System 6.3 Medium2025-09-27
CVE-2025-11055 SourceCodester Online Hotel Reservation System updateaddress.php sql injection — Online Hotel Reservation System 7.3 High2025-09-27
CVE-2025-11054 itsourcecode Open Source Job Portal index.php sql injection — Open Source Job Portal 6.3 Medium2025-09-27
CVE-2025-11053 PHPGurukul Small CRM forgot-password.php sql injection — Small CRM 7.3 High2025-09-27
CVE-2025-11052 kidaze CourseSelectionSystem COUNT3s5.php sql injection — CourseSelectionSystem 7.3 High2025-09-27
CVE-2025-59939 WeGIA vulnerable to SQL Injection into method `excluir` of the `ProdutoControle` class in the parameter `id_produto`. — WeGIA 8.8 High2025-09-27
CVE-2025-11041 itsourcecode Open Source Job Portal index.php sql injection — Open Source Job Portal 6.3 Medium2025-09-26
CVE-2025-11040 code-projects Hostel Management System index.php sql injection — Hostel Management System 7.3 High2025-09-26
CVE-2025-11039 Campcodes Computer Sales and Inventory System us_edit1.php sql injection — Computer Sales and Inventory System 7.3 High2025-09-26
CVE-2025-11038 itsourcecode Online Clinic Management System details.php sql injection — Online Clinic Management System 6.3 Medium2025-09-26
CVE-2025-11037 code-projects E-Commerce Website admin_index_search.php sql injection — E-Commerce Website 7.3 High2025-09-26
CVE-2025-11036 code-projects E-Commerce Website admin_account_update.php sql injection — E-Commerce Website 7.3 High2025-09-26
CVE-2025-11033 kidaze CourseSelectionSystem COUNT3s7.php sql injection — CourseSelectionSystem 7.3 High2025-09-26
CVE-2025-11032 kidaze CourseSelectionSystem COUNT3s6.php sql injection — CourseSelectionSystem 7.3 High2025-09-26
CVE-2025-60118 WordPress PGS Core Plugin <= 5.9.0 - SQL Injection Vulnerability — PGS Core 8.5 High2025-09-26
CVE-2025-60110 WordPress AllInOne - Banner Rotator Plugin <= 3.8 - SQL Injection Vulnerability — AllInOne - Banner Rotator 8.5 High2025-09-26
CVE-2025-60108 WordPress LambertGroup - AllInOne - Banner with Thumbnails Plugin <= 3.8 - SQL Injection Vulnerability — LambertGroup - AllInOne - Banner with Thumbnails 8.5 High2025-09-26
CVE-2025-60109 WordPress LambertGroup - AllInOne - Content Slider Plugin <= 3.8 - SQL Injection Vulnerability — LambertGroup - AllInOne - Content Slider 8.5 High2025-09-26
CVE-2025-60107 WordPress LambertGroup - AllInOne - Banner with Playlist Plugin <= 3.8 - SQL Injection Vulnerability — LambertGroup - AllInOne - Banner with Playlist 8.5 High2025-09-26
CVE-2025-10036 Featured Image from URL (FIFU) <= 5.2.7 - Authenticated (Admin+) SQL Injection — Featured Image from URL (FIFU) 4.9 Medium2025-09-26
CVE-2025-10037 Featured Image from URL (FIFU) <= 5.2.7 - Authenticated (Admin+) SQL Injection — Featured Image from URL (FIFU) 4.9 Medium2025-09-26
CVE-2025-10973 JackieDYH Resume-management-system show.php sql injection — Resume-management-system 7.3 High2025-09-25
CVE-2025-10967 MuFen-mker PHP-Usermm chkuser.php sql injection — PHP-Usermm 7.3 High2025-09-25
CVE-2025-59816 Authenticated Union based SQL-injection in the search input field — ICX500 7.3 High2025-09-25
CVE-2025-59814 Unauthenticated SQL-injection in password field — ICX500 8.8 High2025-09-25

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8861 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.