CVE-2026-62059High· 7.6▾ TwilightImproper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Ultimate Member Ultimate Member ultimate-member allows Blind SQL Injection.This issue affects Ultimate Member: from n/a through 2.13.1.
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 41.8 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Stakeholder-Specific Vulnerability Categorization from CISA's ADP record at CVE.org: whether exploitation is observed, whether an attack can be automated, and how much of the system is at stake.
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Ultimate Member Ultimate Member ultimate-member allows Blind SQL Injection.This issue affects Ultimate Member: from n/a through 2.13.1.
Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2025-15409High· 7.3A vulnerability was determined in code-projects Online Guitar Store 1.0
CVE-2025-15407High· 7.3A vulnerability has been found in code-projects Online Guitar Store 1.0
CVE-2025-15408High· 7.3A vulnerability was found in code-projects Online Guitar Store 1.0
CVE-2025-15410High· 7.3A vulnerability was identified in code-projects Online Guitar Store 1.0
CVE-2025-15212Medium· 6.3A vulnerability was detected in code-projects Refugee Food Management System 1.0
CVE-2025-14258High· 7.3A vulnerability has been found in itsourcecode Student Management System 1.0