Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8873

8873 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-4488 itsourcecode Gym Management System ajax.php sql injection — Gym Management System 7.3 High2025-05-09
CVE-2025-4487 itsourcecode Gym Management System ajax.php sql injection — Gym Management System 7.3 High2025-05-09
CVE-2025-4486 itsourcecode Gym Management System ajax.php sql injection — Gym Management System 7.3 High2025-05-09
CVE-2025-4485 itsourcecode Gym Management System ajax.php sql injection — Gym Management System 7.3 High2025-05-09
CVE-2025-4484 itsourcecode Gym Management System ajax.php sql injection — Gym Management System 7.3 High2025-05-09
CVE-2025-4483 itsourcecode Gym Management System view_pdetails.php sql injection — Gym Management System 7.3 High2025-05-09
CVE-2025-4482 Project Worlds Student Project Allocation System forgot_password_sql.php sql injection — Student Project Allocation System 7.3 High2025-05-09
CVE-2025-4481 SourceCodester Apartment Visitor Management System search-result.php sql injection — Apartment Visitor Management System 7.3 High2025-05-09
CVE-2025-4467 SourceCodester Online Student Clearance System edit-admin.php sql injection — Online Student Clearance System 7.3 High2025-05-09
CVE-2025-4466 itsourcecode Gym Management System ajax.php sql injection — Gym Management System 7.3 High2025-05-09
CVE-2025-4465 itsourcecode Gym Management System ajax.php sql injection — Gym Management System 7.3 High2025-05-09
CVE-2025-4464 itsourcecode Gym Management System ajax.php sql injection — Gym Management System 7.3 High2025-05-09
CVE-2025-4463 itsourcecode Gym Management System ajax.php sql injection — Gym Management System 7.3 High2025-05-09
CVE-2025-4459 code-projects Patient Record Management System fecalysis_form.php sql injection — Patient Record Management System 6.3 Medium2025-05-09
CVE-2025-4458 code-projects Patient Record Management System edit_upatient.php sql injection — Patient Record Management System 6.3 Medium2025-05-09
CVE-2025-4457 Project Worlds Car Rental Project approve.php sql injection — Car Rental Project 7.3 High2025-05-09
CVE-2025-4456 Project Worlds Car Rental Project signup.php sql injection — Car Rental Project 7.3 High2025-05-09
CVE-2025-46828 Unauthenticated SQL Injection on get_socios.php endpoint — WeGIA 9.8AICriticalAI2025-05-07
CVE-2025-47657 WordPress Productive Commerce plugin <= 1.1.40 - SQL Injection vulnerability — Productive Commerce 9.3 Critical2025-05-07
CVE-2025-47643 WordPress ELEX Product Feed for WooCommerce <= 3.1.2 - SQL Injection Vulnerability — ELEX Product Feed for WooCommerce 7.6 High2025-05-07
CVE-2025-47587 WordPress YaySMTP plugin <= 2.6.4 - SQL Injection Vulnerability — YaySMTP 7.6 High2025-05-07
CVE-2025-47544 WordPress Dynamic Pricing With Discount Rules for WooCommerce plugin <= 4.5.8 - SQL Injection Vulnerability — Dynamic Pricing With Discount Rules for WooCommerce 7.6 High2025-05-07
CVE-2025-47538 WordPress Cart tracking for WooCommerce plugin <= 1.0.17 - SQL Injection Vulnerability — Cart tracking for WooCommerce 7.6 High2025-05-07
CVE-2025-47537 WordPress PDF Invoice Builder for WooCommerce plugin <= 5.3.8 - SQL Injection Vulnerability — PDF Invoice Builder for WooCommerce 7.6 High2025-05-07
CVE-2025-47490 WordPress Ultimate WP Mail plugin <= 1.3.4 - SQL Injection Vulnerability — Ultimate WP Mail 8.5 High2025-05-07
CVE-2025-47460 WordPress TrackShip for WooCommerce plugin <= 1.9.1 - SQL Injection Vulnerability — TrackShip for WooCommerce 7.6 High2025-05-07
CVE-2025-0668 BOINC Server Multiple SQL Injections — BOINC Server 5.4AIMediumAI2025-05-07
CVE-2025-0853 PGS Core <= 5.8.0 - Unauthenticated SQL Injection — PGS Core 7.5 High2025-05-06
CVE-2025-4363 itsourcecode Gym Management System ajax.php sql injection — Gym Management System 7.3 High2025-05-06
CVE-2025-4362 itsourcecode Gym Management System ajax.php sql injection — Gym Management System 7.3 High2025-05-06

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8873 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.