VulnSea

CWE-89

CVEs classified under CWE-89, newest first.

813 CVEsRSS

CVE-2026-34185High· 8.8
5mo ago

AlanWeb SCADA is vulnerable to SQL Injection across most scripts and input parameters

AlanWeb SCADA is vulnerable to SQL Injection across most scripts and input parameters. Because no protections are in place, an authenticated attacker can inject arbitrary SQL commands, potentially gaining full control over the database. …

▾ Twilighthydrosystem.poznan · control_systemEPSS 0.47%via NVD
CVE-2026-33088Critical· 9.8
5mo ago

Movable Type provided by Six Apart Ltd

Movable Type provided by Six Apart Ltd. contains an SQL Injection vulnerability which may allow an attacker to execute an arbitrary SQL statement.

▾ Midnightsixapart · movable_typeEPSS 0.45%via NVD
CVE-2026-24913High· 8.8
5mo ago

SQL Injection vulnerability exists in MATCHA INVOICE 2.6.6 and earlier

SQL Injection vulnerability exists in MATCHA INVOICE 2.6.6 and earlier. If this vulnerability is exploited, information stored in the database may be obtained or altered by a user who can log in to the product.

▾ Twilighticz · matcha_invoiceEPSS 0.30%via NVD
CVE-2026-5736High· 7.3
5mo ago

A vulnerability was identified in PowerJob 5.1.0/5.1.1/5.1.2

A vulnerability was identified in PowerJob 5.1.0/5.1.1/5.1.2. Impacted is an unknown function of the file powerjob-server/powerjob-server-starter/src/main/java/tech/powerjob/server/web/controller/InstanceController.java of the component …

▾ TwilightEPSS 0.43%via NVD
CVE-2026-5719Medium· 6.3
5mo ago

A flaw has been found in itsourcecode Construction Management System 1.0

A flaw has been found in itsourcecode Construction Management System 1.0. This affects an unknown function of the file /borrowedtool.php. Executing a manipulation of the argument code can lead to sql injection. It is possible to launch t…

▾ SunlitEPSS 0.32%via NVD
CVE-2026-5681Medium· 6.3
5mo ago

A flaw has been found in itsourcecode sanitize or validate this input 1.0

A flaw has been found in itsourcecode sanitize or validate this input 1.0. This impacts an unknown function of the file /borrowedequip.php of the component Parameter Handler. This manipulation of the argument emp_id causes sql injection.…

▾ SunlitEPSS 0.32%via NVD
CVE-2026-5675Medium· 6.3
5mo ago

A vulnerability was found in itsourcecode Construction Management System 1.0

A vulnerability was found in itsourcecode Construction Management System 1.0. This affects an unknown part of the file /borrowed_tool.php of the component Parameter Handler. The manipulation of the argument emp results in sql injection. …

▾ SunlitEPSS 0.32%via NVD
CVE-2026-5672High· 7.3
5mo ago

A vulnerability has been found in code-projects Simple IT Discussion Forum 1.0

A vulnerability has been found in code-projects Simple IT Discussion Forum 1.0. Affected by this issue is some unknown functionality of the file /edit-category.php of the component Parameter Handler. The manipulation of the argument cat_…

▾ TwilightEPSS 0.41%via NVD
CVE-2026-5636Medium· 6.3
5mo ago

A weakness has been identified in PHPGurukul Online Shopping Portal Project 2.1

A weakness has been identified in PHPGurukul Online Shopping Portal Project 2.1. This affects an unknown part of the file /cancelorder.php of the component Parameter Handler. This manipulation of the argument oid causes sql injection. Th…

▾ SunlitEPSS 0.32%via NVD
CVE-2026-5635Medium· 6.3
5mo ago

A security flaw has been discovered in PHPGurukul Online Shopping Portal Project 2.1

A security flaw has been discovered in PHPGurukul Online Shopping Portal Project 2.1. Affected by this issue is some unknown functionality of the file /categorywise-products.php of the component Parameter Handler. The manipulation of the…

▾ SunlitEPSS 0.32%via NVD
CVE-2026-5620Medium· 6.3
5mo ago

A vulnerability has been found in itsourcecode Construction Management System 1.0

A vulnerability has been found in itsourcecode Construction Management System 1.0. Affected is an unknown function of the file /borrowed_equip_report.php of the component Parameter Handler. The manipulation of the argument Home leads to …

▾ SunlitEPSS 0.33%via NVD
CVE-2026-5565High· 7.3
5mo ago

A security vulnerability has been detected in code-projects Simple Laundry System 1.0

A security vulnerability has been detected in code-projects Simple Laundry System 1.0. Affected by this issue is some unknown functionality of the file /delmemberinfo.php of the component Parameter Handler. Such manipulation of the argum…

▾ TwilightEPSS 0.41%via NVD
CVE-2026-30520Medium· 5.4
6mo ago

A Blind SQL Injection vulnerability exists in SourceCodester Loan Management System v1.0

A Blind SQL Injection vulnerability exists in SourceCodester Loan Management System v1.0. The vulnerability is located in the ajax.php file (specifically the save_loan action). The application fails to properly sanitize user input suppli…

▾ Sunlitoretnom23 · loan_management_systemEPSS 0.26%via NVD
CVE-2026-34220Critical· 9.8PoC
6mo ago

MikroORM is a TypeScript ORM for Node.js based on Data Mapper, Unit of Work and Identity Map patterns

MikroORM is a TypeScript ORM for Node.js based on Data Mapper, Unit of Work and Identity Map patterns. Prior to versions 6.6.10 and 7.0.6, there is a SQL injection vulnerability when specially crafted objects are interpreted as raw SQL q…

▾ Abyssalmikro-orm · mikroormEPSS 0.47%via NVD
CVE-2026-5198High· 7.3
6mo ago

A vulnerability was determined in code-projects Student Membership System 1.0

A vulnerability was determined in code-projects Student Membership System 1.0. The impacted element is an unknown function of the file /admin/index.php of the component Admin Login. This manipulation of the argument username/password cau…

▾ TwilightEPSS 0.41%via NVD
CVE-2026-27876Critical· 9.1PoC
6mo ago

A chained attack via SQL Expressions and a Grafana Enterprise plugin can lead to a remote arbitrary code execution impact (RCE)

A chained attack via SQL Expressions and a Grafana Enterprise plugin can lead to a remote arbitrary code execution impact (RCE). This is enabled by a feature in Grafana (OSS), so all users are always recommended to update to avoid future…

▾ AbyssalEPSS 1.4%via NVD
CVE-2026-23921High· 8.8PoC
6mo ago

A low privilege Zabbix user with API access can exploit a blind SQL injection vulnerability in include/classes/api/CApiService.php to execute arbitrary SQL selects via the sortfield parameter

A low privilege Zabbix user with API access can exploit a blind SQL injection vulnerability in include/classes/api/CApiService.php to execute arbitrary SQL selects via the sortfield parameter. Although query results are not returned dire…

▾ Midnightzabbix · zabbixEPSS 3.5%via NVD
CVE-2026-31844High· 8.8PoC
6mo ago

An authenticated SQL Injection vulnerability (CWE-89) exists in the Koha staff interface in the /cgi-bin/koha/suggestion/suggestion.pl endpoint due to improper validation of the displayby parameter used by the GetDistinctValues functiona…

An authenticated SQL Injection vulnerability (CWE-89) exists in the Koha staff interface in the /cgi-bin/koha/suggestion/suggestion.pl endpoint due to improper validation of the displayby parameter used by the GetDistinctValues functiona…

▾ Midnightkoha · kohaEPSS 0.57%via NVD
CVE-2026-3843Critical· 9.8
6mo ago

Nefteprodukttekhnika BUK TS-G Gas Station Automation System 2.9.1 on Linux contains a SQL Injection vulnerability (CWE-89) in the system configuration module

Nefteprodukttekhnika BUK TS-G Gas Station Automation System 2.9.1 on Linux contains a SQL Injection vulnerability (CWE-89) in the system configuration module. A remote attacker can send specially crafted HTTP POST requests to the /php/re…

▾ Midnightbukts · buk_ts-g_gas_station_automation_systemEPSS 0.94%via NVD
CVE-2026-20003Medium· 4.9
6mo ago

A vulnerability in the REST API of Cisco Secure FMC Software could allow an authenticated, remote attacker to conduct SQL injection attacks on an affected system. This vulnerability is due to inadequate validation of user-supplied inp…

A vulnerability in the REST API of Cisco Secure FMC Software could allow an authenticated, remote attacker to conduct SQL injection attacks on an affected system. This vulnerability is due to inadequate validation of user-supplied inp…

▾ Sunlitcisco · secure_firewall_management_centerEPSS 0.28%via NVD
CVE-2026-20002High· 8.1
6mo ago

A vulnerability in the web-based management interface of Cisco Secure FMC Software could allow an authenticated, remote attacker to conduct SQL injection attacks on an affected system. This vulnerability is due to inadequate validatio…

A vulnerability in the web-based management interface of Cisco Secure FMC Software could allow an authenticated, remote attacker to conduct SQL injection attacks on an affected system. This vulnerability is due to inadequate validatio…

▾ Twilightcisco · secure_firewall_management_centerEPSS 0.35%via NVD
CVE-2025-70152Critical· 9.8PoC
7mo ago

code-projects Community Project Scholars Tracking System 1.0 is vulnerable to SQL Injection in the admin user management endpoints /admin/save_user.php and /admin/update_user.php

code-projects Community Project Scholars Tracking System 1.0 is vulnerable to SQL Injection in the admin user management endpoints /admin/save_user.php and /admin/update_user.php. These endpoints lack authentication checks and directly c…

▾ Abyssalfabian · scholars_tracking_systemEPSS 0.45%via NVD
CVE-2025-70149Critical· 9.8PoC
7mo ago

CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in print_membership_card.php via the ID parameter.

CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in print_membership_card.php via the ID parameter.

▾ Abyssalcodeastro · membership_management_systemEPSS 0.39%via NVD
CVE-2026-1312Medium· 5.4PoC
7mo ago

An issue was discovered in 6.0 before 6.0.2, 5.2 before 5.2.11, and 4.2 before 4.2.28. `.QuerySet.order_by()` is subject to SQL injection in column aliases containing periods when the same alias is, using a suitably crafted dictionary, w…

An issue was discovered in 6.0 before 6.0.2, 5.2 before 5.2.11, and 4.2 before 4.2.28. `.QuerySet.order_by()` is subject to SQL injection in column aliases containing periods when the same alias is, using a suitably crafted dictionary, w…

▾ Twilightdjangoproject · djangoEPSS 0.85%via NVD
CVE-2026-1287Medium· 5.4
7mo ago

An issue was discovered in 6.0 before 6.0.2, 5.2 before 5.2.11, and 4.2 before 4.2.28. `FilteredRelation` is subject to SQL injection in column aliases via control characters, using a suitably crafted dictionary, with dictionary expansio…

An issue was discovered in 6.0 before 6.0.2, 5.2 before 5.2.11, and 4.2 before 4.2.28. `FilteredRelation` is subject to SQL injection in column aliases via control characters, using a suitably crafted dictionary, with dictionary expansio…

▾ Sunlitdjangoproject · djangoEPSS 0.80%via NVD
CVE-2026-1207Medium· 5.4PoC
7mo ago

An issue was discovered in 6.0 before 6.0.2, 5.2 before 5.2.11, and 4.2 before 4.2.28. Raster lookups on ``RasterField`` (only implemented on PostGIS) allows remote attackers to inject SQL via the band index parameter. Earlier, unsupport…

An issue was discovered in 6.0 before 6.0.2, 5.2 before 5.2.11, and 4.2 before 4.2.28. Raster lookups on ``RasterField`` (only implemented on PostGIS) allows remote attackers to inject SQL via the band index parameter. Earlier, unsupport…

▾ Twilightdjangoproject · djangoEPSS 13%via NVD
CVE-2026-0603High· 8.3PoC
8mo ago

A flaw was found in Hibernate

A flaw was found in Hibernate. A remote attacker with low privileges could exploit a second-order SQL injection vulnerability by providing specially crafted, unsanitized non-alphanumeric characters in the ID column when the InlineIdsOrCl…

▾ MidnightRed Hat · Red Hat JBoss EAP 7.4 ELS for RHEL 8EPSS 0.87%via NVD
CVE-2025-30628High· 8.5
9mo ago

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in AA-Team Amazon Affiliates Addon for WPBakery Page Builder (formerly Visual Composer) allows SQL Injection.This issue affects Amazon Aff…

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in AA-Team Amazon Affiliates Addon for WPBakery Page Builder (formerly Visual Composer) allows SQL Injection.This issue affects Amazon Aff…

▾ TwilightEPSS 0.25%via NVD
CVE-2025-28949High· 8.5
9mo ago

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Codedraft Mediabay - WordPress Media Library Folders allows Blind SQL Injection.This issue affects Mediabay - WordPress Media Library F…

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Codedraft Mediabay - WordPress Media Library Folders allows Blind SQL Injection.This issue affects Mediabay - WordPress Media Library F…

▾ TwilightEPSS 0.24%via NVD
CVE-2025-15392Medium· 6.3
9mo ago

A weakness has been identified in Kohana KodiCMS up to 13.82.135

A weakness has been identified in Kohana KodiCMS up to 13.82.135. This affects the function like of the file cms/modules/pages/classes/kodicms/model/page.php of the component Search API Endpoint. Executing manipulation of the argument ke…

▾ Sunlitkodicms-kohana · kodicmsEPSS 0.29%via NVD
CWE-89 vulnerabilities (CVEs) — page 23 · VulnSea