CWE-74

High likelihood

Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')

Parent: CWE-707 - Improper Neutralization

The product constructs all or part of a command, data structure, or record using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify how it is parsed or interpreted when it is sent to a downstream component.

4,795 vulnerabilities with CWE-74
CVE-2025-14638 HIGH
itsourcecode Online Pet Shop Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-14637 HIGH
isourcecode Online Pet Shop Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-14623 HIGH
Code-projects Student File Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-14622 HIGH
Student File Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-14621 HIGH
Code-Projects Student File Mgmt - SQL Injection
CVSS 7.3
CVE-2025-14620 HIGH
Code-projects Student File Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-14619 HIGH
Code-projects Student File Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-14590 HIGH
Prison Management System 2.0 - SQL Injection
CVSS 7.3
CVE-2025-14589 MEDIUM
Prison Management System 2.0 - SQL Injection
CVSS 6.3
CVE-2025-14588 HIGH
iourcecode Student Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-14587 HIGH
itsourcecode Online Pet Shop Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-14585 HIGH
itsourcecode COVID Tracking System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-14584 HIGH
itsourcecode COVID Tracking System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-14578 HIGH
itsourcecode Student Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-14571 HIGH
projectworlds Advanced Library Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-14570 HIGH
Projectworlds Advanced Library Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-14568 MEDIUM
haxxorsid Stock-Management-System <fbbbf213e9c93b87183a3891f77e3cc7...
CVSS 6.3
CVE-2025-14566 HIGH
kidaze CourseSelectionSystem < 2017-06-18 - SQL Injection via USN Parameter in reg.php
CVSS 7.3
CVE-2025-14565 HIGH
kidaze CourseSelectionSystem < 2017-06-18 - SQL Injection via Username Parameter in login1.php
CVSS 7.3
CVE-2025-14537 HIGH
Code-projects Class and Exam Timetable Management 1.0 - SQL Injection
CVSS 7.3
CVE-2025-14536 HIGH
Class and Exam Timetable Management 1.0 - SQL Injection
CVSS 7.3
CVE-2025-14531 MEDIUM
code-projects Rental Management System 2.0 - CRLF Injection
CVSS 4.3
CVE-2025-14529 HIGH
Campcodes Retro Basketball Shoes Online Store 1.0 - SQL Injection
CVSS 7.3
CVE-2025-14527 HIGH
Projectworlds Advanced Library Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-14515 HIGH
Campcodes Supplier Management System 1.0 - SQL Injection
CVSS 7.3
Details
Vulnerabilities 4,795
Exploit Likelihood High