Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8873

8873 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-8968 itsourcecode Online Tour and Travel Management System disapprove_user.php sql injection — Online Tour and Travel Management System 7.3 High2025-08-14
CVE-2025-8967 itsourcecode Online Tour and Travel Management System packages.php sql injection — Online Tour and Travel Management System 7.3 High2025-08-14
CVE-2025-8966 itsourcecode Online Tour and Travel Management System tax.php sql injection — Online Tour and Travel Management System 7.3 High2025-08-14
CVE-2025-55674 Apache Superset: Improper SQL authorisation, parse not checking for specific engine functions — Apache Superset 6.5AIMediumAI2025-08-14
CVE-2025-8960 Campcodes Online Flight Booking Management System save_airlines.php sql injection — Online Flight Booking Management System 7.3 High2025-08-14
CVE-2025-54707 WordPress MDTF Plugin <= 1.3.3.7 - SQL Injection Vulnerability — MDTF 9.3 Critical2025-08-14
CVE-2025-54678 WordPress Easy Form Builder Plugin <= 3.8.15 - SQL Injection Vulnerability — Easy Form Builder 9.3 Critical2025-08-14
CVE-2025-54669 WordPress MapSVG Plugin < 8.7.4 - SQL Injection Vulnerability — MapSVG 9.3 Critical2025-08-14
CVE-2025-30998 WordPress WP Links Page plugin <= 4.9.6 - SQL Injection vulnerability — WP Links Page 8.5 High2025-08-14
CVE-2025-39510 WordPress Pinterest Automatic Pin plugin < 4.19.0 - SQL Injection vulnerability — Pinterest Automatic Pin 8.5 High2025-08-14
CVE-2025-49033 WordPress ProfileGrid plugin <= 5.9.5.3 - SQL Injection vulnerability — ProfileGrid 8.5 High2025-08-14
CVE-2025-49059 WordPress CleverReach® WP Plugin <= 1.5.20 - SQL Injection Vulnerability — CleverReach® WP 9.3 Critical2025-08-14
CVE-2025-49267 WordPress Frontend Admin by DynamiApps plugin <= 3.28.3 - SQL Injection vulnerability — Frontend Admin by DynamiApps 8.5 High2025-08-14
CVE-2025-52720 WordPress Super Store Finder Plugin <= 7.5 - SQL Injection Vulnerability — Super Store Finder 9.3 Critical2025-08-14
CVE-2025-52820 WordPress WooCommerce Point Of Sale (POS) <= 1.4 - SQL Injection Vulnerability — WooCommerce Point Of Sale (POS) 8.5 High2025-08-14
CVE-2025-52823 WordPress Cube Portfolio Plugin <= 1.16.8 - SQL Injection Vulnerability — Cube Portfolio 8.5 High2025-08-14
CVE-2025-8957 Campcodes Online Flight Booking Management System flights.php sql injection — Online Flight Booking Management System 7.3 High2025-08-14
CVE-2025-8955 PHPGurukul Hospital Management System edit-doctor.php sql injection — Hospital Management System 7.3 High2025-08-14
CVE-2025-8954 PHPGurukul Hospital Management System doctor-specilization.php sql injection — Hospital Management System 7.3 High2025-08-14
CVE-2025-8953 SourceCodester COVID 19 Testing Management System check_availability.php sql injection — COVID 19 Testing Management System 7.3 High2025-08-14
CVE-2025-8952 Campcodes Online Flight Booking Management System Login ajax.php sql injection — Online Flight Booking Management System 7.3 High2025-08-14
CVE-2025-8951 PHPGurukul Teachers Record Management System search.php sql injection — Teachers Record Management System 7.3 High2025-08-14
CVE-2025-8950 Campcodes Online Recruitment Management System index.php sql injection — Online Recruitment Management System 7.3 High2025-08-14
CVE-2025-8948 projectworlds Visitor Management System front.php sql injection — Visitor Management System 7.3 High2025-08-14
CVE-2025-8947 projectworlds Visitor Management System query_data.php sql injection — Visitor Management System 7.3 High2025-08-14
CVE-2025-8946 projectworlds Online Notes Sharing Platform login.php sql injection — Online Notes Sharing Platform 7.3 High2025-08-14
CVE-2025-8936 1000 Projects Sales Management System dordupdate.php sql injection — Sales Management System 7.3 High2025-08-14
CVE-2025-8935 1000 Projects Sales Management System custcmp.php sql injection — Sales Management System 7.3 High2025-08-14
CVE-2025-8932 1000 Projects Sales Management System sales.php sql injection — Sales Management System 7.3 High2025-08-14
CVE-2025-8931 code-projects Medical Store Management System ChangePassword.java sql injection — Medical Store Management System 6.3 Medium2025-08-14

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8873 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.