CWE-74

High likelihood

Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')

Parent: CWE-707 - Improper Neutralization

The product constructs all or part of a command, data structure, or record using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify how it is parsed or interpreted when it is sent to a downstream component.

4,795 vulnerabilities with CWE-74
CVE-2025-11479 HIGH
Wedding Reservation Management System 1.0 - SQL Injection via insertReservation Function
CVSS 7.3
CVE-2025-11478 MEDIUM
SourceCodester Farm Management System 1.0 - SQL Injection
CVSS 6.3
CVE-2025-11477 HIGH
Wedding Reservation Management System 1.0 - SQL Injection via User Argument in global.php
CVSS 7.3
CVE-2025-11476 HIGH
SourceCodester Simple E-Commerce Bookstore 1.0 - SQL Injection
CVSS 7.3
CVE-2025-11475 HIGH
Advanced Library Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-11474 MEDIUM
SourceCodester Hotel and Lodge Management System 1.0 - SQL Injection
CVSS 6.3
CVE-2025-11473 HIGH
SourceCodester Hotel and Lodge Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-11472 HIGH
SourceCodester Hotel and Lodge Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-11471 HIGH
SourceCodester Hotel and Lodge Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-11469 MEDIUM
SourceCodester Hotel and Lodge Management System 1.0 - SQL Injection
CVSS 6.3
CVE-2025-11445 MEDIUM
Kilo Code < 4.86.0 - Remote Code Execution via Prompt Handler
CVSS 6.3
CVE-2025-11434 HIGH
itsourcecode Student Transcript Processing System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-11432 HIGH
itsourcecode Leave Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-11431 MEDIUM
Code-projects Web-Based Inventory & POS System 1.0 - SQL Injection
CVSS 6.3
CVE-2025-11430 HIGH
SourceCodester Simple E-Commerce Bookstore 1.0 - SQL Injection
CVSS 7.3
CVE-2025-11424 HIGH
Code-projects Web-Based Inventory & POS System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-11422 HIGH
Campcodes Advanced Online Voting Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-11420 HIGH
code-projects E-Commerce Website 1.0 - SQL Injection
CVSS 7.3
CVE-2025-11416 HIGH
PHPGurukul Beauty Parlour Management System 1.1 - SQL Injection
CVSS 7.3
CVE-2025-11415 HIGH
PHPGurukul Beauty Parlour Management System 1.1 - SQL Injection
CVSS 7.3
CVE-2025-11410 MEDIUM
Campcodes Advanced Online Voting Management System 1.0 - SQL Injection
CVSS 6.3
CVE-2025-11409 MEDIUM
Campcodes AOVMS 1.0 - SQL Injection
CVSS 6.3
CVE-2025-11405 MEDIUM
SourceCodester Hotel and Lodge Management System 1.0 - SQL Injection
CVSS 6.3
CVE-2025-11404 MEDIUM
SourceCodester Hotel and Lodge Management System 1.0 - SQL Injection
CVSS 6.3
CVE-2025-11403 MEDIUM
SourceCodester Hotel and Lodge Management System 1.0 - SQL Injection
CVSS 6.3
Details
Vulnerabilities 4,795
Exploit Likelihood High