CWE-89
MITRE ↗Improper Neutralization of Special Elements used in an SQL Command (SQL Injection)
A security flaw has been discovered in code-projects Simple Content Management System 1.0. Affected by this issue is som
A vulnerability was detected in SourceCodester Pharmacy Sales and Inventory System 1.0. This issue affects some unknown
A flaw has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. Impacted is an unknown function of the
Sourcecodester Online Thesis Archiving System v1.0 is vulnerale to SQL injection in the file /otas/view_archive.php.
A vulnerability has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. The affected element is an unk
A security flaw has been discovered in PHPGurukul Daily Expense Tracking System 1.1. Affected is an unknown function of
SourceCodester Simple Music Cloud Community System v1.0 is vulnerable to SQL Injection in the file /music/view_music.php
SourceCodester Simple Music Cloud Community System v1.0 is vulnerable to SQL Injection in the file /music/view_playlist.
A weakness has been identified in QueryMine sms up to 7ab5a9ea196209611134525ffc18de25c57d9593. Impacted is an unknown f
A flaw has been found in dameng100 muucmf 1.9.5.20260309. Impacted is the function getListByPage of the file /index/Sear
A vulnerability was identified in ProjectsAndPrograms School Management System up to 6b6fae5426044f89c08d0dd101c7fa71f90
A vulnerability has been found in Metasoft 美特软件 MetaCRM up to 6.4.0. This vulnerability affects the function Statement.e
A vulnerability was determined in KLiK SocialMediaWebsite up to 1.0.1. This vulnerability affects unknown code of the fi
A vulnerability was determined in liyupi yu-picture up to a053632c41340152bf75b66b3c543d129123d8ec. This impacts the fun
A vulnerability was detected in code-projects Employee Management System 1.0. This vulnerability affects unknown code of
A weakness has been identified in code-projects Inventory Management System 1.0. Affected is an unknown function of the
A vulnerability was detected in CodePanda Source canteen_management_system 1.0. Affected by this issue is some unknown f
A flaw has been found in itsourcecode Construction Management System 1.0. This affects an unknown part of the file /exec
A vulnerability has been found in itsourcecode Construction Management System 1.0. This vulnerability affects unknown co
A vulnerability was found in itsourcecode Construction Management System 1.0. This issue affects some unknown processing
A vulnerability was determined in itsourcecode Courier Management System 1.0. Impacted is an unknown function of the fil
A vulnerability was identified in itsourcecode Courier Management System 1.0. The affected element is an unknown functio
A security flaw has been discovered in SourceCodester Pharmacy Sales and Inventory System 1.0. Impacted is an unknown fu
A weakness has been identified in SourceCodester Pharmacy Sales and Inventory System 1.0. The affected element is an unk
A security flaw has been discovered in SourceCodester Pharmacy Sales and Inventory System 1.0. This affects an unknown p
A weakness has been identified in SourceCodester Pharmacy Sales and Inventory System 1.0. This vulnerability affects unk
A security vulnerability has been detected in SourceCodester Pharmacy Sales and Inventory System 1.0. This issue affects
A flaw has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. The affected element is an unknown func
A vulnerability has been found in code-projects Online Lot Reservation System up to 1.0. The impacted element is an unkn
A weakness has been identified in SourceCodester Pharmacy Sales and Inventory System 1.0. This impacts an unknown functi
A vulnerability was detected in SourceCodester Pharmacy Sales and Inventory System 1.0. Affected by this vulnerability i
A security flaw has been discovered in dubydu sqlite-mcp up to 0.1.0. The affected element is the function extract_to_js
A security flaw has been discovered in SourceCodester Pizzafy Ecommerce System 1.0. This affects the function delete_car
A weakness has been identified in SourceCodester Pizzafy Ecommerce System 1.0. This vulnerability affects the function d
A security vulnerability has been detected in SourceCodester Pizzafy Ecommerce System 1.0. This issue affects the functi
A vulnerability was detected in SourceCodester Pizzafy Ecommerce System 1.0. Impacted is the function Login of the file
A flaw has been found in SourceCodester Pizzafy Ecommerce System 1.0. The affected element is the function get_cart_coun
A security vulnerability has been detected in EyouCMS up to 1.7.9. The affected element is the function GetSortData of t
A vulnerability has been found in SourceCodester Hotel Management System 1.0. This impacts an unknown function of the fi
A weakness has been identified in SourceCodester Advanced School Management System 1.0. The affected element is an unkno
A flaw has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. This impacts an unknown function of the
A vulnerability has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. Affected is an unknown functio
A vulnerability was identified in itsourcecode Electronic Judging System 1.0. This affects an unknown part of the file /
A weakness has been identified in itsourcecode Courier Management System 1.0. This affects an unknown function of the fi
A vulnerability was determined in code-projects Online Hospital Management System 1.0. This affects an unknown function
A flaw has been found in Jinher OA 1.0. The affected element is an unknown function of the file /C6/JHSoft.Web.PlanSumma
A flaw has been found in Acrel Electrical ECEMS Enterprise Microgrid Energy Efficiency Management System 1.3.0. The impa
A vulnerability has been found in Acrel Electrical EEMS Enterprise Power Operation and Maintenance Cloud Platform 1.3.0.
A vulnerability was determined in Shandong Hoteam Software PDM Product Data Management System up to 8.3.9. This affects
A vulnerability was found in SourceCodester Pharmacy Sales and Inventory System 1.0. This affects an unknown part of the
Frequently Asked Questions
What is CWE-89?
CWE-89 (Improper Neutralization of Special Elements used in an SQL Command (SQL Injection)) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-89?
There are 24,110 CVE records associated with CWE-89 in our database. Of these, 4444 are critical severity, 7116 are high severity, and 4287 are medium severity.
How can I protect against CWE-89 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-89 using AI-powered security agents.
Detect CWE-89 Vulnerabilities
CyberStrike's AI agents automatically detect improper neutralization of special elements used in an sql command (sql injection) vulnerabilities across your infrastructure.
Get Started