Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Improper Neutralization of Special Elements used in an SQL Command (SQL Injection)

4,444
CRITICAL
7,116
HIGH
4,287
MEDIUM
104
LOW
16,171 CVEs · Page 130/324
6.3
CVE-2025-10844

A vulnerability has been found in Portabilis i-Educar up to 2.10. Affected by this issue is some unknown functionality o

6.3
CVE-2025-10845

A vulnerability was found in Portabilis i-Educar up to 2.10. This affects an unknown part of the file /module/Componente

6.3
CVE-2025-10846

A vulnerability was determined in Portabilis i-Educar up to 2.10. This vulnerability affects unknown code of the file /m

6.3
CVE-2025-10848

A vulnerability was identified in Campcodes Society Membership Information System 1.0. This issue affects some unknown p

6.3
CVE-2025-11038

A weakness has been identified in itsourcecode Online Clinic Management System 1.0. Affected is an unknown function of t

6.3
CVE-2025-11041

A vulnerability has been found in itsourcecode Open Source Job Portal 1.0. Affected by this issue is some unknown functi

6.3
CVE-2025-11054

A security vulnerability has been detected in itsourcecode Open Source Job Portal 1.0. This impacts an unknown function

6.3
CVE-2025-11056

A flaw has been found in ProjectsAndPrograms School Management System 1.0. Affected by this vulnerability is an unknown

6.3
CVE-2025-11088

A weakness has been identified in itsourcecode Open Source Job Portal 1.0. Impacted is an unknown function of the file /

6.3
CVE-2025-11090

A vulnerability was identified in itsourcecode Open Source Job Portal 1.0. Affected is an unknown function of the file /

6.3
CVE-2025-11104

A vulnerability was detected in CodeAstro Electricity Billing System 1.0. Affected by this issue is some unknown functio

6.3
CVE-2025-11113

A vulnerability was detected in CodeAstro Online Leave Application 1.0. Affected is an unknown function of the file /sig

6.3
CVE-2025-11114

A flaw has been found in CodeAstro Online Leave Application 1.0. Affected by this vulnerability is an unknown functional

6.3
CVE-2025-11288

A security flaw has been discovered in CRMEB up to 5.6. This issue affects some unknown processing of the file /adminapi

6.3
CVE-2025-11319

A weakness has been identified in nahiduddinahammed Hospital-Management-System-Website up to e6562429e14b2f88bd2139cae16

6.3
CVE-2025-11330

A vulnerability has been found in PHPGurukul Beauty Parlour Management System 1.1. The affected element is an unknown fu

6.3
CVE-2025-11357

A security flaw has been discovered in code-projects Simple Banking System 1.0. This issue affects some unknown processi

6.3
CVE-2025-11358

A weakness has been identified in code-projects Simple Banking System 1.0. Impacted is an unknown function of the file /

6.3
CVE-2025-11359

A security vulnerability has been detected in code-projects Simple Banking System 1.0. The affected element is an unknow

6.3
CVE-2025-11399

A security vulnerability has been detected in SourceCodester Hotel and Lodge Management System 1.0. This affects an unkn

6.3
CVE-2025-11400

A vulnerability was detected in SourceCodester Hotel and Lodge Management System 1.0. This impacts an unknown function o

6.3
CVE-2025-11401

A flaw has been found in SourceCodester Hotel and Lodge Management System 1.0. Affected is an unknown function of the fi

6.3
CVE-2025-11402

A vulnerability has been found in SourceCodester Hotel and Lodge Management System 1.0. Affected by this vulnerability i

6.3
CVE-2025-11403

A vulnerability was found in SourceCodester Hotel and Lodge Management System 1.0. Affected by this issue is some unknow

6.3
CVE-2025-11404

A vulnerability was determined in SourceCodester Hotel and Lodge Management System 1.0. This affects an unknown part of

6.3
CVE-2025-11405

A vulnerability was identified in SourceCodester Hotel and Lodge Management System 1.0. This vulnerability affects unkno

6.3
CVE-2025-11409

A vulnerability was detected in Campcodes Advanced Online Voting Management System 1.0. The impacted element is an unkno

6.3
CVE-2025-11410

A flaw has been found in Campcodes Advanced Online Voting Management System 1.0. This affects an unknown function of the

6.3
CVE-2025-11431

A vulnerability was determined in code-projects Web-Based Inventory and POS System 1.0. The impacted element is an unkno

6.3
CVE-2025-11469

A weakness has been identified in SourceCodester Hotel and Lodge Management System 1.0. The affected element is an unkno

6.3
CVE-2025-11474

A vulnerability was found in SourceCodester Hotel and Lodge Management System 1.0. Affected by this vulnerability is an

6.3
CVE-2025-11478

A weakness has been identified in SourceCodester Farm Management System 1.0. This issue affects some unknown processing

6.3
CVE-2025-11481

A flaw has been found in varunsardana004 Blood-Bank-And-Donation-Management-System up to dc9e0393d826fbc85fad9755b5bc12c

6.3
CVE-2025-11486

A vulnerability was identified in SourceCodester Farm Management System 1.0. Affected by this vulnerability is an unknow

6.3
CVE-2025-11487

A security flaw has been discovered in SourceCodester Farm Management System 1.0. Affected by this issue is some unknown

6.3
CVE-2025-11509

A vulnerability was detected in code-projects E-Commerce Website 1.0. This impacts an unknown function of the file /page

6.3
CVE-2025-11511

A flaw has been found in code-projects E-Commerce Website 1.0. Affected is an unknown function of the file /pages/suppli

6.3
CVE-2025-11514

A vulnerability was identified in code-projects Online Complaint Site 1.0. This vulnerability affects unknown code of th

6.3
CVE-2025-11515

A security flaw has been discovered in code-projects Online Complaint Site 1.0. This issue affects some unknown processi

6.3
CVE-2025-11516

A weakness has been identified in code-projects Online Complaint Site 1.0. Impacted is an unknown function of the file /

6.3
CVE-2025-11530

A weakness has been identified in code-projects Online Complaint Site 1.0. Affected is an unknown function of the file /

6.3
CVE-2025-11551

A vulnerability was determined in code-projects Student Result Manager 1.0. This affects an unknown function of the file

6.3
CVE-2025-11552

A vulnerability was identified in code-projects Online Complaint Site 1.0. This impacts an unknown function of the file

6.3
CVE-2025-11553

A weakness has been identified in code-projects Courier Management System 1.0. Affected by this vulnerability is an unkn

6.3
CVE-2025-11588

A vulnerability was identified in CodeAstro Gym Management System 1.0. This impacts an unknown function of the file /cus

6.3
CVE-2025-11589

A security flaw has been discovered in CodeAstro Gym Management System 1.0. Affected is an unknown function of the file

6.3
CVE-2025-11590

A weakness has been identified in CodeAstro Gym Management System 1.0. Affected by this vulnerability is an unknown func

6.3
CVE-2025-11591

A security vulnerability has been detected in CodeAstro Gym Management System 1.0. Affected by this issue is some unknow

6.3
CVE-2025-11592

A vulnerability was detected in CodeAstro Gym Management System 1.0. This affects an unknown part of the file /admin/edi

6.3
CVE-2025-11593

A flaw has been found in CodeAstro Gym Management System 1.0. This vulnerability affects unknown code of the file /admin

Frequently Asked Questions

What is CWE-89?

CWE-89 (Improper Neutralization of Special Elements used in an SQL Command (SQL Injection)) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-89?

There are 24,110 CVE records associated with CWE-89 in our database. Of these, 4444 are critical severity, 7116 are high severity, and 4287 are medium severity.

How can I protect against CWE-89 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-89 using AI-powered security agents.

Detect CWE-89 Vulnerabilities

CyberStrike's AI agents automatically detect improper neutralization of special elements used in an sql command (sql injection) vulnerabilities across your infrastructure.

Get Started