Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8864

8864 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-11515 code-projects Online Complaint Site register-complaint.php sql injection — Online Complaint Site 6.3 Medium2025-10-09
CVE-2025-11514 code-projects Online Complaint Site index.php sql injection — Online Complaint Site 6.3 Medium2025-10-09
CVE-2025-11513 code-projects E-Commerce Website supplier_update.php sql injection — E-Commerce Website 7.3 High2025-10-08
CVE-2025-11511 code-projects E-Commerce Website supplier_add.php sql injection — E-Commerce Website 6.3 Medium2025-10-08
CVE-2025-11509 code-projects E-Commerce Website product_add.php sql injection — E-Commerce Website 6.3 Medium2025-10-08
CVE-2025-11507 PHPGurukul Beauty Parlour Management System search-invoices.php sql injection — Beauty Parlour Management System 7.3 High2025-10-08
CVE-2025-11506 PHPGurukul Beauty Parlour Management System search-appointment.php sql injection — Beauty Parlour Management System 7.3 High2025-10-08
CVE-2025-11505 PHPGurukul Beauty Parlour Management System new-appointment.php sql injection — Beauty Parlour Management System 7.3 High2025-10-08
CVE-2025-11503 PHPGurukul Beauty Parlour Management System manage-services.php sql injection — Beauty Parlour Management System 7.3 High2025-10-08
CVE-2025-11487 SourceCodester Farm Management System uploadProduct.php sql injection — Farm Management System 6.3 Medium2025-10-08
CVE-2025-11486 SourceCodester Farm Management System buyNow.php sql injection — Farm Management System 6.3 Medium2025-10-08
CVE-2025-11481 varunsardana004 Blood-Bank-And-Donation-Management-System donate_blood.php sql injection — Blood-Bank-And-Donation-Management-System 6.3 Medium2025-10-08
CVE-2025-11480 SourceCodester Simple E-Commerce Bookstore register.php sql injection — Simple E-Commerce Bookstore 7.3 High2025-10-08
CVE-2025-11479 SourceCodester Wedding Reservation Management System function.php insertReservation sql injection — Wedding Reservation Management System 7.3 High2025-10-08
CVE-2025-11478 SourceCodester Farm Management System myCart.php sql injection — Farm Management System 6.3 Medium2025-10-08
CVE-2025-11477 SourceCodester Wedding Reservation Management System global.php sql injection — Wedding Reservation Management System 7.3 High2025-10-08
CVE-2025-11476 SourceCodester Simple E-Commerce Bookstore index.php sql injection — Simple E-Commerce Bookstore 7.3 High2025-10-08
CVE-2025-11475 projectworlds Advanced Library Management System view_member.php sql injection — Advanced Library Management System 7.3 High2025-10-08
CVE-2025-11474 SourceCodester Hotel and Lodge Management System edit_booking.php sql injection — Hotel and Lodge Management System 6.3 Medium2025-10-08
CVE-2025-11473 SourceCodester Hotel and Lodge Management System edit_curr.php sql injection — Hotel and Lodge Management System 7.3 High2025-10-08
CVE-2025-11472 SourceCodester Hotel and Lodge Management System edit_room.php sql injection — Hotel and Lodge Management System 7.3 High2025-10-08
CVE-2025-11471 SourceCodester Hotel and Lodge Management System edit_customer.php sql injection — Hotel and Lodge Management System 7.3 High2025-10-08
CVE-2025-10649 Welcart e-Commerce <= 2.11.21 - Authenticated (Author+) SQL Injection via Cookie — Welcart e-Commerce 6.5 Medium2025-10-08
CVE-2025-10351 SQL injection vulnerability in Melis Platform — Melis Platform 9.8AICriticalAI2025-10-08
CVE-2025-11469 SourceCodester Hotel and Lodge Management System save_customer.php sql injection — Hotel and Lodge Management System 6.3 Medium2025-10-08
CVE-2025-11434 itsourcecode Student Transcript Processing System login.php sql injection — Student Transcript Processing System 7.3 High2025-10-08
CVE-2025-11432 itsourcecode Leave Management System reset.php sql injection — Leave Management System 7.3 High2025-10-08
CVE-2025-11204 RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login <= 6.0.6.2 - Authenticated (Administrator+) SQL Injection — RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login 7.2 High2025-10-08
CVE-2025-11431 code-projects Web-Based Inventory and POS System transaction.php sql injection — Web-Based Inventory and POS System 6.3 Medium2025-10-08
CVE-2025-11430 SourceCodester Simple E-Commerce Bookstore cart.php sql injection — Simple E-Commerce Bookstore 7.3 High2025-10-08

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8864 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.