CWE-74
High likelihoodImproper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
The product constructs all or part of a command, data structure, or record using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify how it is parsed or interpreted when it is sent to a downstream component.
4,807 vulnerabilities with CWE-74
CVE-2025-7409
HIGH
code-projects Mobile Shop 1.0 - SQL Injection
CVSS 7.3
CVE-2025-7220
HIGH
Campcodes Payroll Management System 1.0 - SQL Injection via ID Parameter in /ajax.php
CVSS 7.3
CVE-2025-7219
HIGH
Campcodes Payroll Management System 1.0 - SQL Injection via /ajax.php ID Parameter
CVSS 7.3
CVE-2025-7218
HIGH
Campcodes Payroll Management System 1.0 - SQL Injection via /ajax.php ID Parameter
CVSS 7.3
CVE-2025-7217
HIGH
Campcodes Payroll Management System 1.0 - SQL Injection via /ajax.php ID Parameter
CVSS 7.3
CVE-2025-7212
MEDIUM
Insurance Management System <= 1.0 - SQL Injection via agent_id Parameter in insertAgent.php
CVSS 6.3
CVE-2025-7211
HIGH
LifeStyle Store 1.0 - SQL Injection via /cart_add.php ID Parameter
CVSS 7.3
CVE-2025-7200
MEDIUM
krishna9772 pharmacy_management_system < 2024-03-06 - SQL Injection via med_name/med_cat/ex_date Parameters
CVSS 6.3
CVE-2025-7199
HIGH
code-projects Library System 1.0 - SQL Injection via /notapprove.php ID Parameter
CVSS 7.3
CVE-2025-7198
HIGH
Jonnys Liquor 1.0 - SQL Injection via Drink Parameter
CVSS 7.3
CVE-2025-7197
HIGH
Jonnys Liquor 1.0 - SQL Injection via ID Parameter in /admin/delete-row.php
CVSS 7.3
CVE-2025-7196
HIGH
Jonnys Liquor 1.0 - SQL Injection via Search Parameter
CVSS 7.3
CVE-2025-7193
HIGH
Agri-Trading Online Shopping System <= 1.0 - SQL Injection via Supplier Parameter
CVSS 7.3
CVE-2025-7192
MEDIUM
D-Link DIR-645 Firmware < 1.05b01 - Remote Command Injection via ssdpcgi_main
CVSS 6.3
CVE-2025-7191
HIGH
code-projects Student Enrollment System 1.0 - SQL Injection via Username Parameter in login.php
CVSS 7.3
CVE-2025-7189
MEDIUM
code-projects Chat System 1.0 - SQL Injection via msg Parameter in send_message.php
CVSS 6.3
CVE-2025-7188
MEDIUM
code-projects Chat System 1.0 - SQL Injection via ID Parameter in addmember.php
CVSS 6.3
CVE-2025-7187
MEDIUM
code-projects Chat System 1.0 - SQL Injection via fetch_member.php ID Parameter
CVSS 6.3
CVE-2025-7186
MEDIUM
code-projects Chat System 1.0 - SQL Injection via ID Parameter in fetch_chat.php
CVSS 6.3
CVE-2025-7185
HIGH
code-projects Library System 1.0 - SQL Injection via /approve.php ID Parameter
CVSS 7.3
CVE-2025-7184
HIGH
code-projects Library System 1.0 - SQL Injection via Search Parameter
CVSS 7.3
CVE-2025-7183
HIGH
Campcodes Sales and Inventory System 1.0 - SQL Injection via Customer Parameter
CVSS 7.3
CVE-2025-7180
HIGH
Staff Audit System 1.0 - SQL Injection via User Parameter in Login
CVSS 7.3
CVE-2025-7179
HIGH
code-projects Library System 1.0 - SQL Injection via Username Parameter in add-teacher.php
CVSS 7.3
CVE-2025-7178
HIGH
code-projects Food Distributor Site 1.0 - SQL Injection via Username Parameter
CVSS 7.3
Details
Vulnerabilities
4,807
Exploit Likelihood
High