Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8863

8863 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-7155 PHPGurukul Online Notes Sharing System Cookie Dashboard sql injection — Online Notes Sharing System 7.3 High2025-07-08
CVE-2025-7150 Campcodes Advanced Online Voting System voters_delete.php sql injection — Advanced Online Voting System 6.3 Medium2025-07-07
CVE-2025-7149 Campcodes Advanced Online Voting System candidates_delete.php sql injection — Advanced Online Voting System 6.3 Medium2025-07-07
CVE-2025-7147 CodeAstro Patient Record Management System login.php sql injection — Patient Record Management System 7.3 High2025-07-07
CVE-2025-7138 SourceCodester Best Salon Management System admin-profile.php sql injection — Best Salon Management System 6.3 Medium2025-07-07
CVE-2025-7137 SourceCodester Best Salon Management System schedule-staff.php sql injection — Best Salon Management System 6.3 Medium2025-07-07
CVE-2025-53529 WeGIA allows SQL Injection in html/funcionario/profile_funcionario.php (id_funcionario parameter) — WeGIA 9.8 Critical2025-07-07
CVE-2025-53527 WeGIA allows Time-Based Blind SQL Injection in the relatorio_geracao.php endpoint — WeGIA 9.8AICriticalAI2025-07-07
CVE-2025-7136 Campcodes Online Recruitment Management System view_vacancy.php sql injection — Online Recruitment Management System 7.3 High2025-07-07
CVE-2025-7135 Campcodes Online Recruitment Management System ajax.php sql injection — Online Recruitment Management System 7.3 High2025-07-07
CVE-2025-7134 Campcodes Online Recruitment Management System ajax.php sql injection — Online Recruitment Management System 7.3 High2025-07-07
CVE-2025-7132 Campcodes Payroll Management System ajax.php sql injection — Payroll Management System 7.3 High2025-07-07
CVE-2025-7131 Campcodes Payroll Management System ajax.php sql injection — Payroll Management System 7.3 High2025-07-07
CVE-2025-7130 Campcodes Payroll Management System ajax.php sql injection — Payroll Management System 7.3 High2025-07-07
CVE-2025-7129 Campcodes Payroll Management System ajax.php sql injection — Payroll Management System 7.3 High2025-07-07
CVE-2025-7128 Campcodes Payroll Management System ajax.php sql injection — Payroll Management System 7.3 High2025-07-07
CVE-2025-7127 itsourcecode Employee Management System changepassword.php sql injection — Employee Management System 4.7 Medium2025-07-07
CVE-2025-7126 itsourcecode Employee Management System adminprofile.php sql injection — Employee Management System 6.3 Medium2025-07-07
CVE-2025-7125 itsourcecode Employee Management System editempeducation.php sql injection — Employee Management System 6.3 Medium2025-07-07
CVE-2025-7123 Campcodes Complaint Management System complaint-details.php sql injection — Complaint Management System 4.7 Medium2025-07-07
CVE-2025-7122 Campcodes Complaint Management System index.php sql injection — Complaint Management System 7.3 High2025-07-07
CVE-2025-7121 Campcodes Complaint Management System complaint-details.php sql injection — Complaint Management System 6.3 Medium2025-07-07
CVE-2025-7120 Campcodes Complaint Management System check_availability.php sql injection — Complaint Management System 7.3 High2025-07-07
CVE-2025-7119 Campcodes Complaint Management System index.php sql injection — Complaint Management System 7.3 High2025-07-07
CVE-2025-7102 BoyunCMS Server.php sql injection — BoyunCMS 6.3 Medium2025-07-07
CVE-2025-24780 WordPress Printcart Web to Print Product Designer for WooCommerce plugin <= 2.4.0 - SQL Injection Vulnerability — Printcart Web to Print Product Designer for WooCommerce 8.5 High2025-07-04
CVE-2025-28983 WordPress Click & Pledge Connect plugin <= 25.04010101-WP6.8 - Privilege Escalation via SQL Injection vulnerability — Click & Pledge Connect 9.8 Critical2025-07-04
CVE-2025-32297 WordPress Simple Link Directory Pro plugin < 14.8.1 - SQL Injection Vulnerability — Simple Link Directory 8.5 High2025-07-04
CVE-2025-49870 WordPress Paid Member Subscriptions plugin <= 2.15.1 - SQL Injection Vulnerability — Paid Member Subscriptions 7.5 High2025-07-04
CVE-2025-52830 WordPress bSecure – Your Universal Checkout plugin <= 1.7.9 - SQL Injection Vulnerability — bSecure – Your Universal Checkout 9.3 Critical2025-07-04

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8863 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.