CWE-89
High likelihoodImproper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
The product constructs all or part of an SQL command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended SQL command when it is sent to a downstream component. Without sufficient removal or quoting of SQL syntax in user-controllable inputs, the generated SQL query can cause those inputs to be interpreted as SQL instead of ordinary user data.
19,544 vulnerabilities with CWE-89
CVE-2025-14637
HIGH
isourcecode Online Pet Shop Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-14623
HIGH
Code-projects Student File Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-14622
HIGH
Student File Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-14621
HIGH
Code-Projects Student File Mgmt - SQL Injection
CVSS 7.3
CVE-2025-14620
HIGH
Code-projects Student File Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-14619
HIGH
Code-projects Student File Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-14590
HIGH
Prison Management System 2.0 - SQL Injection
CVSS 7.3
CVE-2025-14589
MEDIUM
Prison Management System 2.0 - SQL Injection
CVSS 6.3
CVE-2025-14588
HIGH
iourcecode Student Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-14587
HIGH
itsourcecode Online Pet Shop Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-14477
MEDIUM
The 404 Solution <3.1.0 - SQL Injection
CVSS 4.9
CVE-2025-14050
MEDIUM
Design Import/Export plugin <2.2 - SQL Injection
CVSS 4.9
CVE-2025-13089
HIGH
WP Directory Kit <1.4.7 - SQL Injection
CVSS 7.5
CVE-2025-13077
HIGH
Payamito SMS WooCommerce <1.3.5 - SQL Injection
CVSS 7.5
CVE-2025-10738
CRITICAL
URL Shortener Plugin For WordPress <3.0.7 - SQL Injection
CVSS 9.8
CVE-2025-10289
MEDIUM
Filter & Grids plugin <3.2.0 - SQL Injection
CVSS 5.9
CVE-2025-14585
HIGH
itsourcecode COVID Tracking System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-14584
HIGH
itsourcecode COVID Tracking System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-14578
HIGH
itsourcecode Student Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-14571
HIGH
projectworlds Advanced Library Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-14570
HIGH
Projectworlds Advanced Library Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-14568
MEDIUM
haxxorsid Stock-Management-System <fbbbf213e9c93b87183a3891f77e3cc7...
CVSS 6.3
CVE-2025-14566
HIGH
kidaze CourseSelectionSystem < 2017-06-18 - SQL Injection via USN Parameter in reg.php
CVSS 7.3
CVE-2025-14565
HIGH
kidaze CourseSelectionSystem < 2017-06-18 - SQL Injection via Username Parameter in login1.php
CVSS 7.3
CVE-2025-14169
HIGH
FunnelKit - Funnel Builder for WooCommerce Checkout <3.13.1.5 - SQL...
CVSS 7.5
Details
Vulnerabilities
19,544
Exploit Likelihood
High