CWE-74
High likelihoodImproper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
The product constructs all or part of a command, data structure, or record using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify how it is parsed or interpreted when it is sent to a downstream component.
4,795 vulnerabilities with CWE-74
CVE-2025-11479
HIGH
Wedding Reservation Management System 1.0 - SQL Injection via insertReservation Function
CVSS 7.3
CVE-2025-11478
MEDIUM
SourceCodester Farm Management System 1.0 - SQL Injection
CVSS 6.3
CVE-2025-11477
HIGH
Wedding Reservation Management System 1.0 - SQL Injection via User Argument in global.php
CVSS 7.3
CVE-2025-11476
HIGH
SourceCodester Simple E-Commerce Bookstore 1.0 - SQL Injection
CVSS 7.3
CVE-2025-11475
HIGH
Advanced Library Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-11474
MEDIUM
SourceCodester Hotel and Lodge Management System 1.0 - SQL Injection
CVSS 6.3
CVE-2025-11473
HIGH
SourceCodester Hotel and Lodge Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-11472
HIGH
SourceCodester Hotel and Lodge Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-11471
HIGH
SourceCodester Hotel and Lodge Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-11469
MEDIUM
SourceCodester Hotel and Lodge Management System 1.0 - SQL Injection
CVSS 6.3
CVE-2025-11445
MEDIUM
Kilo Code < 4.86.0 - Remote Code Execution via Prompt Handler
CVSS 6.3
CVE-2025-11434
HIGH
itsourcecode Student Transcript Processing System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-11432
HIGH
itsourcecode Leave Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-11431
MEDIUM
Code-projects Web-Based Inventory & POS System 1.0 - SQL Injection
CVSS 6.3
CVE-2025-11430
HIGH
SourceCodester Simple E-Commerce Bookstore 1.0 - SQL Injection
CVSS 7.3
CVE-2025-11424
HIGH
Code-projects Web-Based Inventory & POS System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-11422
HIGH
Campcodes Advanced Online Voting Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-11420
HIGH
code-projects E-Commerce Website 1.0 - SQL Injection
CVSS 7.3
CVE-2025-11416
HIGH
PHPGurukul Beauty Parlour Management System 1.1 - SQL Injection
CVSS 7.3
CVE-2025-11415
HIGH
PHPGurukul Beauty Parlour Management System 1.1 - SQL Injection
CVSS 7.3
CVE-2025-11410
MEDIUM
Campcodes Advanced Online Voting Management System 1.0 - SQL Injection
CVSS 6.3
CVE-2025-11409
MEDIUM
Campcodes AOVMS 1.0 - SQL Injection
CVSS 6.3
CVE-2025-11405
MEDIUM
SourceCodester Hotel and Lodge Management System 1.0 - SQL Injection
CVSS 6.3
CVE-2025-11404
MEDIUM
SourceCodester Hotel and Lodge Management System 1.0 - SQL Injection
CVSS 6.3
CVE-2025-11403
MEDIUM
SourceCodester Hotel and Lodge Management System 1.0 - SQL Injection
CVSS 6.3
Details
Vulnerabilities
4,795
Exploit Likelihood
High