CWE-89

High likelihood

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

Parent: CWE-943 - Improper Neutralization of Special Elements in Data Query Logic

The product constructs all or part of an SQL command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended SQL command when it is sent to a downstream component. Without sufficient removal or quoting of SQL syntax in user-controllable inputs, the generated SQL query can cause those inputs to be interpreted as SQL instead of ordinary user data.

19,612 vulnerabilities with CWE-89
CVE-2025-52822 HIGH
Iqonic Design WP Roadmap <2.1.3 - SQL Injection
CVSS 8.5
CVE-2025-52821 HIGH
Video List Manager <1.7 - SQL Injection
CVSS 8.5
CVE-2025-46179 CRITICAL
CloudClassroom-PHP Project 1.0 - SQL Injection via askquery.php squeryx Parameter
CVSS 9.8
CVE-2025-6344 HIGH
Code-projects Online Shoe Store 1.0 - SQL Injection
CVSS 7.3
CVE-2025-6343 HIGH
code-projects Online Shoe Store 1.0 - SQL Injection
CVSS 7.3
CVE-2025-6342 HIGH
code-projects Online Shoe Store 1.0 - SQL Injection
CVSS 7.3
CVE-2025-32753 MEDIUM
Dell PowerScale OneFS 9.5.0.0-9.10.0.1 - Authenticated SQL Injection
CVSS 5.3
CVE-2025-6339 HIGH
Ponaravindb Hospital Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-6333 MEDIUM
PHPGurukul Directory Management System 2.0 - SQL Injection
CVSS 6.3
CVE-2025-6332 MEDIUM
PHPGurukul Directory Management System 2.0 - SQL Injection
CVSS 6.3
CVE-2025-6331 MEDIUM
PHPGurukul Directory Management System 1.0 - SQL Injection
CVSS 6.3
CVE-2025-6330 HIGH
PHPGurukul Directory Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-6323 HIGH
PHPGurukul Pre-School Enrollment System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-6322 HIGH
PHPGurukul Pre-School Enrollment System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-6321 MEDIUM
PHPGurukul Pre-School Enrollment System 1.0 - SQL Injection
CVSS 6.3
CVE-2025-6320 MEDIUM
PHPGurukul Pre-School Enrollment System 1.0 - SQL Injection
CVSS 6.3
CVE-2025-6319 MEDIUM
PHPGurukul Pre-School Enrollment System 1.0 - SQL Injection
CVSS 6.3
CVE-2025-6318 HIGH
PHPGurukul Pre-School Enrollment System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-6317 HIGH
code-projects Online Shoe Store 1.0 - SQL Injection
CVSS 7.3
CVE-2025-6316 HIGH
code-projects Online Shoe Store 1.0 - SQL Injection
CVSS 7.3
CVE-2025-6315 HIGH
code-projects Online Shoe Store 1.0 - SQL Injection
CVSS 7.3
CVE-2025-6314 HIGH
Campcodes Sales & Inventory System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-6313 HIGH
Campcodes Sales & Inventory System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-6312 HIGH
Campcodes Sales & Inventory System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-6311 HIGH
Campcodes Sales and Inventory System 1.0 - SQL Injection
CVSS 7.3
Details
Vulnerabilities 19,612
Exploit Likelihood High