Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8862

8862 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-14285 code-projects Employee Profile Management System edit_personnel.php sql injection — Employee Profile Management System 7.3 High2025-12-09
CVE-2025-14259 Jihai Jshop MiniProgram Mall System api.html sql injection — Jshop MiniProgram Mall System 6.3 Medium2025-12-08
CVE-2025-14258 itsourcecode Student Management System newsubject.php sql injection — Student Management System 7.3 High2025-12-08
CVE-2025-14257 itsourcecode Student Management System newrecord.php sql injection — Student Management System 7.3 High2025-12-08
CVE-2025-14256 itsourcecode Student Management System newcurriculm.php sql injection — Student Management System 7.3 High2025-12-08
CVE-2025-14251 code-projects Online Ordering System Admin Login admin sql injection — Online Ordering System 7.3 High2025-12-08
CVE-2025-14250 code-projects Online Ordering System user_contact.php sql injection — Online Ordering System 7.3 High2025-12-08
CVE-2025-14249 code-projects Online Ordering System user_school.php sql injection — Online Ordering System 7.3 High2025-12-08
CVE-2025-14248 code-projects Simple Shopping Cart adminlogin.php sql injection — Simple Shopping Cart 7.3 High2025-12-08
CVE-2025-14247 code-projects Simple Shopping Cart additems.php sql injection — Simple Shopping Cart 6.3 Medium2025-12-08
CVE-2025-14246 code-projects Simple Shopping Cart settings.php sql injection — Simple Shopping Cart 6.3 Medium2025-12-08
CVE-2025-14245 IdeaCMS Coupon.php whereRaw sql injection — IdeaCMS 7.3 High2025-12-08
CVE-2025-14230 code-projects Daily Time Recording System add_payroll.php sql injection — Daily Time Recording System 6.3 Medium2025-12-08
CVE-2025-14227 Philipinho Simple-PHP-Blog edit.php sql injection — Simple-PHP-Blog 6.3 Medium2025-12-08
CVE-2025-14226 itsourcecode Student Management System edit_user.php sql injection — Student Management System 7.3 High2025-12-08
CVE-2025-14223 code-projects Simple Leave Manager request.php sql injection — Simple Leave Manager 7.3 High2025-12-08
CVE-2025-14255 Galaxy Software Services|Vitals ESP - SQL Injection — Vitals ESP 6.5 Medium2025-12-08
CVE-2025-14254 Galaxy Software Services|Vitals ESP - SQL Injection — Vitals ESP 6.5 Medium2025-12-08
CVE-2025-14222 code-projects Employee Profile Management System print_personnel_report.php sql injection — Employee Profile Management System 6.3 Medium2025-12-08
CVE-2025-14218 code-projects Currency Exchange System editotheraccount.php sql injection — Currency Exchange System 7.3 High2025-12-08
CVE-2025-14217 code-projects Currency Exchange System edittrns.php sql injection — Currency Exchange System 7.3 High2025-12-08
CVE-2025-14216 code-projects Currency Exchange System viewserial.php sql injection — Currency Exchange System 7.3 High2025-12-08
CVE-2025-14215 code-projects Currency Exchange System edit.php sql injection — Currency Exchange System 7.3 High2025-12-08
CVE-2025-14214 itsourcecode Student Information System section_edit1.php sql injection — Student Information System 6.3 Medium2025-12-08
CVE-2025-14212 projectworlds Advanced Library Management System member_search.php sql injection — Advanced Library Management System 7.3 High2025-12-08
CVE-2025-14211 projectworlds Advanced Library Management System delete_book.php sql injection — Advanced Library Management System 7.3 High2025-12-08
CVE-2025-14210 projectworlds Advanced Library Management System delete_member.php sql injection — Advanced Library Management System 7.3 High2025-12-08
CVE-2025-14209 Campcodes School File Management System update_query.php sql injection — School File Management System 7.3 High2025-12-08
CVE-2025-14207 tushar-2223 Hotel-Management-System invoiceprint.php sql injection — Hotel-Management-System 7.3 High2025-12-08
CVE-2025-14203 code-projects Question Paper Generator selectquestionuser.php sql injection — Question Paper Generator 6.3 Medium2025-12-07

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8862 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.