CWE-74

High likelihood

Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')

Parent: CWE-707 - Improper Neutralization

The product constructs all or part of a command, data structure, or record using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify how it is parsed or interpreted when it is sent to a downstream component.

4,805 vulnerabilities with CWE-74
CVE-2025-8329 HIGH
code-projects Vehicle Management 1.0 - SQL Injection via company Parameter in filter3.php
CVSS 7.3
CVE-2025-8328 HIGH
code-projects Exam Form Submission 1.0 - SQL Injection via USN Parameter
CVSS 7.3
CVE-2025-8327 HIGH
code-projects Exam Form Submission 1.0 - SQL Injection via /admin/delete_s8.php ID Parameter
CVSS 7.3
CVE-2025-50578 CRITICAL
LinuxServer.io heimdall 2.6.3-ls307 - Host Header Injection and Open Redirect
CVSS 9.8
CVE-2025-8326 HIGH
code-projects Exam Form Submission 1.0 - SQL Injection via /admin/delete_s7.php ID Parameter
CVSS 7.3
CVE-2025-43267 MEDIUM
macOS Sequoia <15.6 - Info Disclosure
CVSS 5.5
CVE-2025-8274 HIGH
Campcodes Online Recruitment Management System 1.0 - SQL Injection via ID Parameter in /admin/ajax.php
CVSS 7.3
CVE-2025-8273 HIGH
code-projects Exam Form Submission 1.0 - SQL Injection via credits Parameter in /admin/update_s8.php
CVSS 7.3
CVE-2025-8272 HIGH
code-projects Exam Form Submission 1.0 - SQL Injection via /admin/update_fst.php Credits Parameter
CVSS 7.3
CVE-2025-8271 HIGH
code-projects Exam Form Submission 1.0 - SQL Injection via /admin/delete_s3.php ID Parameter
CVSS 7.3
CVE-2025-8270 HIGH
code-projects Exam Form Submission 1.0 - SQL Injection via /admin/delete_s2.php ID Parameter
CVSS 7.3
CVE-2025-8269 HIGH
code-projects Exam Form Submission 1.0 - SQL Injection via /admin/delete_s1.php ID Parameter
CVSS 7.3
CVE-2025-8254 MEDIUM
Campcodes Courier Management System 1.0 - SQL Injection via ID Parameter in view_parcel.php
CVSS 6.3
CVE-2025-8253 HIGH
code-projects Exam Form Submission 1.0 - SQL Injection via /admin/delete_s6.php ID Parameter
CVSS 7.3
CVE-2025-8252 HIGH
code-projects Exam Form Submission 1.0 - SQL Injection via /admin/delete_s5.php ID Parameter
CVSS 7.3
CVE-2025-8251 HIGH
code-projects Exam Form Submission 1.0 - SQL Injection via /admin/delete_s4.php ID Parameter
CVSS 7.3
CVE-2025-8250 HIGH
code-projects Exam Form Submission 1.0 - SQL Injection via credits Parameter
CVSS 7.3
CVE-2025-8249 HIGH
code-projects Exam Form Submission 1.0 - SQL Injection via /admin/update_s3.php Credits Parameter
CVSS 7.3
CVE-2025-8248 HIGH
Online Ordering System 1.0 - SQL Injection via Firstname Parameter in Signup
CVSS 7.3
CVE-2025-8247 MEDIUM
Projectworlds Online Admission System 1.0 - SQL Injection via /admin.php markof Parameter
CVSS 6.3
CVE-2025-8241 HIGH
1000projects ABC Courier Management System 1.0 - SQL Injection via From Parameter in report.php
CVSS 7.3
CVE-2025-8240 HIGH
code-projects Exam Form Submission 1.0 - SQL Injection via Phone Parameter
CVSS 7.3
CVE-2025-8239 HIGH
code-projects Exam Form Submission 1.0 - SQL Injection via Email Parameter
CVSS 7.3
CVE-2025-8238 HIGH
code-projects Exam Form Submission 1.0 - SQL Injection via /admin/update_s2.php Credits Parameter
CVSS 7.3
CVE-2025-8237 HIGH
code-projects Exam Form Submission 1.0 - SQL Injection via /admin/update_s1.php Credits Parameter
CVSS 7.3
Details
Vulnerabilities 4,805
Exploit Likelihood High