CWE-74

High likelihood

Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')

Parent: CWE-707 - Improper Neutralization

The product constructs all or part of a command, data structure, or record using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify how it is parsed or interpreted when it is sent to a downstream component.

4,136 vulnerabilities with CWE-74
CVE-2026-3818 HIGH
Tiandy Easy7 CMS 7.17.0 - SQL Injection
CVSS 7.3
CVE-2026-3813 MEDIUM
opencc JFlow - Code Injection
CVSS 6.3
CVE-2026-3806 MEDIUM
janobe Resort Reservation System 1.0 - SQL Injection
CVSS 6.3
CVE-2026-3798 MEDIUM
Comfast CF-AC100 2.6.0.8 - Command Injection
CVSS 4.7
CVE-2026-3793 MEDIUM
SourceCodester Sales and Inventory System 1.0 - SQL Injection
CVSS 6.3
CVE-2026-3792 MEDIUM
SourceCodester Sales and Inventory System 1.0 - SQL Injection
CVSS 6.3
CVE-2026-3791 MEDIUM
SourceCodester Sales and Inventory System 1.0 - SQL Injection
CVSS 6.3
CVE-2026-3790 MEDIUM
SourceCodester Sales and Inventory System 1.0 - SQL Injection
CVSS 6.3
CVE-2026-3786 MEDIUM
EasyCMS <1.6 - SQL Injection
CVSS 6.3
CVE-2026-3785 MEDIUM
EasyCMS <=1.6 - SQL Injection
CVSS 6.3
CVE-2026-3771 MEDIUM
janobe Resort Reservation System 1.0 - SQL Injection
CVSS 6.3
CVE-2026-3767 MEDIUM
itsourcecode sanitize 1.0 - SQL Injection
CVSS 6.3
CVE-2026-3765 HIGH
itsourcecode University Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2026-3760 HIGH
itsourcecode University Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2026-3759 HIGH
Online Art Gallery Shop 1.0 - SQL Injection
CVSS 7.3
CVE-2026-3758 HIGH
Online Art Gallery Shop 1.0 - SQL Injection
CVSS 7.3
CVE-2026-3757 HIGH
Online Art Gallery Shop 1.0 - SQL Injection
CVSS 7.3
CVE-2026-3756 MEDIUM
SourceCodester Sales and Inventory System <1.0 - SQL Injection
CVSS 6.3
CVE-2026-3755 MEDIUM
SourceCodester Sales and Inventory System 1.0 - SQL Injection
CVSS 6.3
CVE-2026-3754 MEDIUM
SourceCodester Sales and Inventory System 1.0 - SQL Injection
CVSS 6.3
CVE-2026-3753 MEDIUM
SourceCodester Sales and Inventory System <1.0 - SQL Injection
CVSS 6.3
CVE-2026-3752 MEDIUM
SourceCodester Employee Task Management System <1.0 - SQL Injection
CVSS 4.7
CVE-2026-3751 MEDIUM
SourceCodester Employee Task Management System 1.0 - SQL Injection
CVSS 4.7
CVE-2026-3747 HIGH
itsourcecode University Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2026-3746 HIGH
SourceCodester Tourism Website 1.0 - SQL Injection
CVSS 7.3
Details
Vulnerabilities 4,136
Exploit Likelihood High