CWE-89
MITRE ↗Improper Neutralization of Special Elements used in an SQL Command (SQL Injection)
A security vulnerability has been detected in code-projects Feedback System 1.0. Impacted is an unknown function of the
A flaw has been found in SourceCodester Comment System 1.0. This issue affects some unknown processing of the file post_
A vulnerability was found in SourceCodester SUP Online Shopping 1.0. The affected element is an unknown function of the
A vulnerability was determined in SourceCodester SUP Online Shopping 1.0. The impacted element is an unknown function of
A vulnerability was identified in SourceCodester SUP Online Shopping 1.0. This affects an unknown function of the file /
A security flaw has been discovered in SourceCodester SUP Online Shopping 1.0. This impacts an unknown function of the f
A weakness has been identified in CodeAstro Leave Management System 1.0. Affected is an unknown function of the file /lo
A security vulnerability has been detected in zyx0814 FilePress up to 2.2.0. Affected by this vulnerability is an unknow
Prison Management System Using PHP v1.0 was discovered to contain a SQL injection vulnerability via the username on the
SQL Injection in MuuCMF T6 v1.9.4.20260115 allows an unauthenticated attacker to compromise the entire database, achieve
A vulnerability was determined in Oinone Pamirs up to 7.2.0. Affected by this issue is the function RSQLToSQLNodeConnect
A security flaw has been discovered in linlinjava litemall up to 1.8.0. This impacts the function list of the file litem
A flaw has been found in projectworlds hospital-management-system-in-php 1.0. Affected by this vulnerability is the func
A flaw has been found in SourceCodester Hospitals Patient Records Management System 1.0. The impacted element is an unkn
A vulnerability has been found in SourceCodester Hospitals Patient Records Management System 1.0. This affects an unknow
A flaw has been found in projectworlds Online Art Gallery Shop 1.0. Impacted is an unknown function of the file /admin/a
A vulnerability has been found in itsourcecode Electronic Judging System 1.0. This affects an unknown part of the file /
A vulnerability was found in SourceCodester Simple POS and Inventory System 1.0. The impacted element is an unknown func
A vulnerability was found in Tiandy Easy7 Integrated Management Platform 7.17.0. This vulnerability affects unknown code
A weakness has been identified in yashpokharna2555 StudentManagementSystem cb2f558ddf8d19396de0f92abf2d224d46a0a203. The
A security vulnerability has been detected in yashpokharna2555 StudentManagementSystem cb2f558ddf8d19396de0f92abf2d224d4
A vulnerability was found in yashpokharna2555 StudentManagementSystem up to cb2f558ddf8d19396de0f92abf2d224d46a0a203. Af
A vulnerability was detected in Acrel Electrical EEMS Enterprise Power Operation and Maintenance Cloud Platform 3000WEBV
A vulnerability has been found in itsourcecode Electronic Judging System 1.0. This affects an unknown part of the file /
A vulnerability was found in itsourcecode Electronic Judging System 1.0. This vulnerability affects unknown code of the
A vulnerability was identified in itsourcecode Electronic Judging System 1.0. Impacted is an unknown function of the fil
A vulnerability was found in Shenzhen Sixun Software Sixun Shanghui Group Business Management System 10. Affected by thi
A vulnerability was identified in Das Parking Management System 停车场管理系统 6.2.0. This affects the function xp_cmdshell of
A security flaw has been discovered in Das Parking Management System 停车场管理系统 6.2.0. This vulnerability affects unknown c
A vulnerability was detected in itsourcecode Student Transcript Processing System 1.0. This affects an unknown part of t
A flaw has been found in itsourcecode Student Transcript Processing System 1.0. This vulnerability affects unknown code
A vulnerability has been found in itsourcecode Student Transcript Processing System 1.0. This issue affects some unknown
A security vulnerability has been detected in code-projects Project Management System 1.0. Affected is an unknown functi
A vulnerability has been found in itsourcecode Courier Management System 1.0. Impacted is an unknown function of the fil
A vulnerability was detected in code-projects Student Details Management System 1.0. This affects an unknown function of
A flaw has been found in sambitraj STUDENT-MANAGEMENT-SYSTEM 1.0. This impacts an unknown function of the component Logi
A vulnerability was detected in code-projects Online Music Site 1.0. This vulnerability affects unknown code of the file
A security flaw has been discovered in SourceCodester Hospitals Patient Records Management System 1.0. This impacts an u
A weakness has been identified in SourceCodester Hospitals Patient Records Management System 1.0. Affected is an unknown
A security vulnerability has been detected in code-projects Online Hospital Management System 1.0. Affected by this vuln
A flaw has been found in code-projects Online Hospital Management System 1.php. This impacts the function login_user of
A vulnerability was detected in raisulislamg4 student_management_system_by_php up to 310d950e09013d5133c6b9210aff9444382
A flaw has been found in raisulislamg4 student_management_system_by_php up to 310d950e09013d5133c6b9210aff9444382d16d1.
A vulnerability has been found in raisulislamg4 student_management_system_by_php up to 310d950e09013d5133c6b9210aff94443
A vulnerability was identified in itsourcecode Online Blood Bank Management System 1.0. Impacted is an unknown function
A security flaw has been discovered in itsourcecode Online Blood Bank Management System 1.0. The affected element is an
A weakness has been identified in itsourcecode Online House Rental System 1.0. The impacted element is an unknown functi
A security vulnerability has been detected in itsourcecode Online House Rental System 1.0. This affects an unknown funct
A vulnerability was detected in itsourcecode Online House Rental System 1.0. This impacts an unknown function of the fil
A vulnerability was detected in CodeAstro Online Job Portal 1.0. The impacted element is an unknown function of the file
Frequently Asked Questions
What is CWE-89?
CWE-89 (Improper Neutralization of Special Elements used in an SQL Command (SQL Injection)) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-89?
There are 24,110 CVE records associated with CWE-89 in our database. Of these, 4444 are critical severity, 7116 are high severity, and 4287 are medium severity.
How can I protect against CWE-89 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-89 using AI-powered security agents.
Detect CWE-89 Vulnerabilities
CyberStrike's AI agents automatically detect improper neutralization of special elements used in an sql command (sql injection) vulnerabilities across your infrastructure.
Get Started